Grok, Copilot Used as Covert Malware Relay
A new cyber threat involves hackers exploiting Grok and Microsoft’s Copilot to turn these AI tools into covert channels for malware communication. The technique, revealed by Check Point Research, allows attackers to mask malicious traffic as regular enterprise data. These AI platforms are often trusted and permitted by corporate networks, making them ideal for this purpose. Attackers can drive Grok and Copilot to fetch URLs and deliver structured responses, establishing two-way communication without needing an API key or account. The malware collects data from infected systems, disguises it within legitimate-looking websites, and prompts the AI to summarize the page. This misuse of AI hints at a growing trend towards AI-driven malware, where AI not only assists in development but also plays a role in execution. Cybersecurity experts are urged to focus on AI traffic for threat detection. For more in-depth coverage on this topic, read the full article:
Hackers Can Leverage Grok and Copilot for Stealthy Malware Communication and Control
