Lead dispatch

The Closed Quorum: Inside the first reported autonomous AI C2 implant

Cisco Talos documented CLOSEDQUORUM, a Windows implant it describes as the first publicly reported autonomous AI command-and-control (C2) malware, discovered via its CAIRN project. The binary delegates its next-action decisions to a quorum of up to four commercial LLMs (DeepSeek, Qwen, Mistral, and Google Gemini) queried in sequence, executing their chosen actions to harvest credentials and crypto wallets without a human operator or dedicated C2 server; Talos has no confirmation of in-the-wild deployment but linked the developer to carding forum postings.

autonomous-agent · ai-c2 · malware · data-exfiltration · tool-abuse
llm · ai-agents · windows

The wire · latest

More filters

Disrupting a coordinated model-distillation campaign

OpenAI reported disrupting a coordinated adversarial-distillation campaign that extracted protected chain-of-thought reasoning from its models by copying encrypted reasoning blocks from one conversation and asking a weaker same-provider model to decrypt and transcribe them. Activity began July 1, 2026, spiked to 16,000 requests from over 4,000 users on July 24–25, and was disrupted by July 28; OpenAI attributes a core cluster to individuals associated with Moonshot AI (developer of Kimi). Independent researchers (arXiv:2608.09867) separately documented the cross-model encrypted-reasoning interchangeability flaw enabling decryption jailbreaks, PII/credential recovery, and invisible prompt injection. Details →

Disrupting a coordinated model-distillation campaign

OpenAI reported disrupting a coordinated adversarial model-distillation campaign it attributes to individuals associated with China's Moonshot AI (developer of Kimi), which ran through July 2026. The operators manipulated model interactions to reproduce protected internal reasoning at scale — including copying encrypted reasoning from one conversation and asking a model in another to decrypt and transcribe it — with spikes of 16,000 requests across 4,000+ users on July 24-25 and related prompt-pattern activity across 15,000+ accounts. OpenAI says no encryption was broken or database compromised, and it enforced mitigations and account actions by July 28. Details →
See the API docs to pull all 1292 items →

How the wire is made

Poll & cluster

Internet is crawled for AI security news and near-duplicate coverage is embedded and grouped into durable items.

Curate

AI Agent filters for agentic-AI relevance, classifies and tags each item, scores severity for threats, and writes the summary.

Read the full methodology →

Every item here is one machine-curated intelligence object, not a headline.

Read the wire for free. There is a small charge to ask the index questions.

The wire, open

The complete curated feed, no key required.

Subscribe to the RSS feed

The vector desk

Query the index by meaning, not just keyword.

  • GET /api/items?tags=&minSeverity=&itemType=
  • GET /api/search?q= — keyword
  • GET /api/semantic?q= — vector
Preview semantic search