Who’s Really Shopping? Retail Fraud in the Age of Agentic AI

2026-03-21T08:51:40Z8f832438a9a765f395e1cfc91cfd162504447f4b2f37617b77c773eaf8bcce27
agentic-aiai-malwarebeyondtrustchromecve-2026-0628cve-2026-1731espionageiranian-threat-actorsllm-guardrailsprompt-fuzzingprompt-injectionretail-fraudunit42wiper-attacks

What happened

Unit 42 collection (March 2026) highlighting emergent AI-enabled threat trends and active exploitation: multiple research posts show widespread fragility of LLM guardrails (prompt fuzzing, AI-judge bypass, web-based indirect prompt injection) and growing weaponization of AI in malware and retail fraud. The feed also documents active nation‑state and criminal activity — Iranian-linked groups (Boggy Serpens, Handala Hack/Void Manticore) increasing wiper attacks and social-engineering misuse of Intune, a long-running espionage cluster (CL-UNK-1068), and suspected China-linked operations targeting

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
paloalto_unit42
Record identifier
8f832438a9a765f395e1cfc91cfd162504447f4b2f37617b77c773eaf8bcce27
Enrichment time
2026-03-21T08:51:40Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.