CVE-2025-33073
Sfruttamento noto · CISA KEV
CVSS 8.8 HIGH: improper access control in Windows SMB allows an authorized attacker to elevate privileges over a network. EPSS 37% (97º percentile).
Data di correzione federale CISA 10 nov · data superata
Malware e strumenti · Cryptojacking
La campagna si è spostata verso un percorso di fiducia più pulito. Gli utenti non vengono più indirizzati solo tramite risultati di ricerca avvelenati; le risposte dei chatbot AI ora consegnano loro direttamente link di download controllati dagli attacker, il che fa sembrare la falsa utility una normale raccomandazione e aiuta il lure a raggiungere sistemi Windows ricchi di GPU.
4 fonti · 27 mag
Sfruttamento noto · CISA KEV
CVSS 8.8 HIGH: improper access control in Windows SMB allows an authorized attacker to elevate privileges over a network. EPSS 37% (97º percentile).
Data di correzione federale CISA 10 nov · data superata
Help Net Security
AI chatbot recommendations lure users to cryptojacking malware sites - Help Net Security
Microsoft warned of a cryptojacking campaign using AI chatbot responses and poisoned search results to spread malware targeting GPU systems.
originaleBleepingComputer
GPU mining malware spreads via SEO poisoning, AI chatbots
Threat actors are targeting systems with high-performance computers in an ongoing cryptojacking campaign spread through a coordinated SEO poisoning operation that also manipulated AI chatbot recommendations.
originaleThe Hacker News
AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites
Microsoft uncovered 150+ AI-assisted cryptojacking domains using fake software downloads to deploy persistent malware.
originalePart of the PlainSec briefing for 2026-05-27
Every edition of this story: Le risposte del chatbot ora forniscono lure di cryptojacking