Who’s Really Shopping? Retail Fraud in the Age of Agentic AI
2026-03-21T08:51:40Z•8f832438a9a765f395e1cfc91cfd162504447f4b2f37617b77c773eaf8bcce27
agentic-aiai-malwarebeyondtrustchromecve-2026-0628cve-2026-1731espionageiranian-threat-actorsllm-guardrailsprompt-fuzzingprompt-injectionretail-fraudunit42wiper-attacks
What happened
Unit 42 collection (March 2026) highlighting emergent AI-enabled threat trends and active exploitation: multiple research posts show widespread fragility of LLM guardrails (prompt fuzzing, AI-judge bypass, web-based indirect prompt injection) and growing weaponization of AI in malware and retail fraud. The feed also documents active nation‑state and criminal activity — Iranian-linked groups (Boggy Serpens, Handala Hack/Void Manticore) increasing wiper attacks and social-engineering misuse of Intune, a long-running espionage cluster (CL-UNK-1068), and suspected China-linked operations targeting
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- paloalto_unit42
- Record identifier
- 8f832438a9a765f395e1cfc91cfd162504447f4b2f37617b77c773eaf8bcce27
- Enrichment time
- 2026-03-21T08:51:40Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.