Skip to content
AI Assistants Exploited as Covert Command-and-Control Channels

AI Assistants Exploited as Covert Command-and-Control Channels

First seen 18 Feb 2026, 15:24 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 16:10 UTC

AI assistants like Grok and Microsoft Copilot can be exploited to serve as covert command-and-control (C2) channels for cybercriminals. These platforms can be manipulated to fetch attacker-controlled URLs, allowing malicious traffic to blend into normal enterprise communications. This tactic enables threat actors to relay commands to infected machines and exfiltrate stolen data.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 183d ago How this analysis works

Timeline

2026-02-17
Research published on AI services being used as C2 proxies
2026-02-18
Infosecurity article reports on AI assistants' exploitation

More articles in this cluster (11)

Following this threat?

Track VoidLink in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed