Malicious AI Skill Compromises 26,000 Users by Bypassing Security Checks

Malicious AI Skill Compromises 26,000 Users by Bypassing Security Checks

16h ago ThehackernewsFeeds.4SysopsCybersecuritynewsCsoonline 79% similarity 66.0
Share:

Article Content

Browse articles
ThreatCluster

A security experiment revealed that a malicious AI agent skill, named 'brand-landingpage', successfully bypassed security checks and reached over 26,000 users. The skill was designed to appear legitimate, targeting non-technical corporate users. By hosting malicious instructions externally, the attackers evaded detection by major security scanners from Cisco, Nvidia, and others. The skill initially collected users' email addresses but could have been used to compromise systems further. Researchers from AIR conducted this test to highlight vulnerabilities in AI agent ecosystems, emphasizing that skills should be treated as part of the software supply chain. The experiment demonstrated that security assessments based solely on static reviews are insufficient. No agents were harmed during the research, and AIR stated that the malicious behavior could change after trust was granted.

Key Points: • A malicious AI skill reached over 26,000 users by bypassing security checks. • The skill exploited external hosting for malicious instructions, evading detection. • Security assessments need to evolve to address dynamic behaviors of AI skills.

ThreatCluster AI

Timeline

2026-06-23
Malicious AI skill launched via Instagram ad
The 'brand-landingpage' skill was promoted through an Instagram ad, attracting over 26,000 users.
Feeds.4Sysops
2026-06-24
Security experiment reveals vulnerabilities
AIR's experiment showed that the malicious skill could bypass security scanners and change behavior post-installation.
Csoonline
2026-06-24
Research highlights AI skill risks
The experiment indicated that AI skills should be treated as part of the enterprise software supply chain.
Cybersecuritynews

Community

Browse all →