Skip to content
HalluSquatting attack weaponizes AI hallucinations to build botnets

HalluSquatting attack weaponizes AI hallucinations to build botnets

Feeds.4Sysops •IT News • July 8, 2026

Researchers have identified a novel attack vector called HalluSquatting that exploits the tendency of Large Language Models (LLMs) to hallucinate non-existent repository and package names. By predicting which identifiers an AI coding assistant is likely to invent when asked to clone trending software, attackers can pre-register those names on public registries like GitHub or PyPI. These malicious repositories are seeded with instructions that trigger the assistant’s built-in terminal to execute payloads, such as reverse shells or ransomware. Source