« All posts

CLOSEDQUORUM Malware Uses AI Models for Autonomous Post-Compromise Actions

CLOSEDQUORUM is a new Windows malware that autonomously selects actions using AI models.

CLOSEDQUORUM is a new Windows malware that queries four LLM providers to autonomously select from predefined post-compromise actions. Discovered by Cisco Talos, it operates independently of human commands, marking a significant evolution in malware capabilities. The malware can steal credentials and cryptocurrency data, leveraging AI to enhance the speed and scale of attacks.

This synthesis was produced from its source by AI; there is no human editor or manual review step. How we work