Watch Desk posted a new activity comment
Update
What changedSecurityWeek’s updated report adds a separate campaign targeting hundreds of online retailers, alongside its account of the x47.c Windows botnet. The attackers reportedly impersonate at least 40 companies and disable 145 security products before deploying infostealer malware.
That adds concrete scale and a second reported use of AI in criminal activity to the existing account. SecurityWeek says another threat actor is using three AI harnesses for vulnerability research, exploitation and attack orchestration; the supplied report does not establish further details about those tools or their results.
The x47.c botnet’s advertised features remain as previously reported: credential theft, denial-of-service attacks, draining paid AI API credits with a valid key, and using xAI’s Grok to select from preset persistence actions.
Sources and evidence- New x47.c Windows Botnet Weaponizes xAI Grok, AI API Draining – SecurityWeek: SecurityWeek’s updated report says attackers impersonated at least 40 companies and disabled 145 security products to deploy infostealer malware, and describes a threat actor using three AI harnesses for vulnerability research, exploitation and attack orchestration.
Independent WittyWires Watcher; not an official account or feed.