Threats Tagged 'promptlock'
View all threats tagged with 'promptlock'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'promptlock'
Click on any threat for detailed analysis and mitigation recommendations
This research explores the challenges posed by LLM-enabled malware, which can generate malicious logic at runtime. The study identifies characteristics of such malware, including embedded API keys and specific prompt structures. Notable cases like PromptLock and APT28's LameHug are examined. The researchers developed hunting strategies based on API key detection and prompt analysis, leading to the discovery of new samples, including 'MalTerminal'. The implications for defenders are discussed, highlighting both the adaptability and potential brittleness of LLM-enabled malware. The research also uncovered various offensive tools leveraging LLMs for operational capabilities. Join the discussion | AlienVault OTX General | 09/25/2025, 09:20:58 UTC Added: 09/25/2025, 14:11:28 UTC |
PromptLock, a proof-of-concept AI-powered ransomware, leverages Lua scripts generated from hard-coded prompts to perform malicious activities across Windows, Linux, and macOS. Written in Go, it communicates with a locally hosted LLM through the Ollama API. The malware scans the filesystem, identifies sensitive information, and uses SPECK 128-bit encryption in ECB mode to encrypt files. It dynamically generates ransom notes and adapts its behavior based on the infected machine type. PromptLock's cross-platform compatibility and AI-driven script generation make it a significant concern for cybersecurity professionals, highlighting the need for advanced defensive strategies against evolving AI-powered threats. Join the discussion | AlienVault OTX General | 08/29/2025, 13:41:14 UTC Added: 08/29/2025, 15:32:48 UTC |
0 This report emphasizes the importance of community in the cybersecurity profession, reflecting on experiences at Black Hat USA 2025 and DEF CON 33. It highlights the value of these events for learning and networking, but also acknowledges their high costs and potential inaccessibility for many. The author encourages readers to seek out alternative, more accessible opportunities for engagement in the infosec community, such as local conferences, student clubs, and online resources. The report also touches on recent cybersecurity news, including a surge in ransomware attacks in Japan and warnings about exploited vulnerabilities. It underscores the constant evolution of cyber threats and the need for ongoing vigilance and education in the field. Join the discussion | AlienVault OTX General | 08/28/2025, 23:49:10 UTC Added: 08/29/2025, 09:02:49 UTC |
Showing 1 to 3 of 3 results