Cisco Talos reported that threat actors are increasingly using cloud AI tools such as Claude Code, CodeX, Cursor, and Gemini to support malicious operations, after analyzing prompt artifacts recovered from compromised endpoints. The research found three dominant use cases: AI as a malware and software engineering assistant, AI as a criminal force multiplier, and AI as an accelerator for vulnerability research and penetration-testing-style activity. Talos said existing model guardrails were often ineffective, with actors bypassing them through false ownership claims, bug-bounty or CTF pretexts, task decomposition across sessions, persistent persona conditioning, semantic evasion, or by moving to uncensored models.
Case studies showed AI being used to help build DDoS tooling targeting Android TV devices, bulk email validation and phishing-adjacent infrastructure based on PowerMTA and Node.js, credential-harvesting workflows including abuse of exposed .git/config files and React2Shell techniques, and cryptojacking campaigns that used weak Deluge and qBittorrent credentials to deploy XMRig. Talos also documented AI-enabled scam and cryptocurrency theft activity, including a russophone scam chatbot, a hispanophone actor using an autonomous OpenClaw-based agent called Alex to target Telegram Mini Apps and TON wallets, and autonomous offensive frameworks such as Hephaestus; the firm warned that AI is lowering barriers for novice attackers while enabling more capable operators to scale intrusion, fraud, and exploitation pipelines faster.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
Cisco Talos published a data-driven analysis of how threat actors are weaponizing AI, based on prompt logs and endpoint artifacts from tools including Claude Code, CodeX, Cursor, and Gemini. The report identified major patterns including malicious software engineering, criminal force multiplication, and vulnerability research acceleration.
OASIS Security disclosed the Hephaestus automated attack framework, describing Claude AI-powered attacks targeting government and educational institutions in Indonesia. The reference indicates a distinct campaign or operational framework separate from the Tubely/Astute Software activity and Talos's broader AI weaponization research.
Talos linked tubely[.]com to a documented history of non-consensual contact harvesting and tied the later 2026 operation to the same operator identity, Astute Software. The historical activity is explicitly dated to 2009 to 2011 in the source.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
6 references tracked. Mallory keeps watching after this page renders.
hackread.com
Open sourcetheregister.com
Open sourceinfosecurity-magazine.com
Open sourceblog.talosintelligence.com
Open sourcecyberveille.ch
Open sourceoasis-security.io
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.