Cybercriminals Use Fake AI Guides and Dev Tools to Spread AsyncRAT Malware
2026-06-11T14:52:17Z•4fb9041f7d1ea62a898ea365dc52e1bef47a637384b93ef5209097d2e18af438
AI-assisted malwareAsyncRATChromeEverest FormsSilabRATSniperDzVidaragentjackingphishingphpBBransomware/extortionvulnerability-managementzero-day
What happened
Multiple active campaigns and vulnerabilities reported: threat actors are distributing AsyncRAT via fake AI guides and malicious developer tools (with indicators of AI-assisted coding), while other campaigns push Vidar stealer via fake software videos and SilabRAT trojan for session/crypto theft. Law enforcement dismantled the SniperDz phishing-as-a-service platform. Research warns of new “agentjacking” attacks that can hijack AI coding agents. Vulnerability activity is high — Microsoft fixed ~200 CVEs (including three zero-days), Google patched Chrome CVE-2026-11645 (in-the-wild exploit), and
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- 4fb9041f7d1ea62a898ea365dc52e1bef47a637384b93ef5209097d2e18af438
- Enrichment time
- 2026-06-11T14:52:17Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.