Threats · 81 days ago
The sample tries to stop analysis, not just hide from it. It plants fake system messages inside itself so an AI triage tool starts treating hostile content as instructions and may abort, refuse, or sanitize its own findings.
SentinelLabs says the macOS Rust backdoor, tracked as macOS.Gaslight, embeds 38 fabricated system messages aimed at AI-assisted triage. The implant still behaves like a backdoor and infostealer, with shell access, browser data theft, keychain access, and Telegram-based command traffic.
The shift matters because captured malware can now interfere with the workflow meant to examine it. If the triage model accepts sample content as guidance, the attacker can suppress the very output defenders rely on to decide what happened.
3 sources covering this story
New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis
SentinelOne details Gaslight, a Rust-based macOS implant linked to North Korea-aligned actors that uses prompt injection to hinder AI triage.
New macOS malware embeds fake errors to confuse AI analysis tools
A newly discovered macOS malware dubbed "Gaslight" is designed to confuse AI-assisted malware analysis tools by hiding prompt injection strings and fake debugging data within the executable.
macOS Backdoor Uses Prompt Injection to Evade AI Triage
SentinelLabs found a North Korea-linked macOS backdoor using prompt injection on AI triage tools
Part of the PlainSec briefing for 2026-06-26