A New Tool Found Malware That’s Guided by an AI Hive Mind—No Humans in Sight

Security researchers have identified a new malware framework called CAIRN that tracks AI-integrated cyber threats. The study highlights the emergence of 'CLOSEDQUORUM,' a malware strain that uses multiple large language models to autonomously plan attacks.
Why it matters
This represents a shift in cybersecurity where AI is being used by malicious actors to create autonomous, self-directing malware.
They're calling the framework Cognitive Artifact Intelligence Research Network, or CAIRN, named after the stacks of stones that hikers set up on trails to mark the path or emphasize something about a certain spot. As malware authors expand their use of AI services, Cisco Talos researchers have used CAIRN to identify a hacking tool with fully autonomous command-and-control infrastructure. Dubbed CLOSEDQUORUM, the malware plotted its moves within a target system by polling up to four large language models (LLMs) about what it should do and taking its directives from that hive mind.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in