Bleepingcomputer SesameOp Backdoor Exploits OpenAI API for Covert Cyber Operations
Article Content
Browse articles
Microsoft's Detection and Response Team (DART) discovered a new backdoor malware named SesameOp, which utilizes the OpenAI Assistants API for command-and-control (C2) communications. This malware allows attackers to maintain persistent access to compromised environments and manage devices covertly, marking a significant shift in cyber-espionage tactics by repurposing legitimate AI infrastructure. The backdoor was identified during an investigation into a cyberattack that began in July 2025.
Ask AI about this cluster
Answers cite the sources they use
Updated 182d ago How this analysis works
More articles in this cluster (14)
Following this threat?
Track BlackCat, Sesameop and Microsoft in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Storm-0501 Cybercrime Group Targets Azure with Ransomware Tactics Storm-0501, a financially motivated cybercrime group, has been active since 2021 and is known for conducting ransomware operations using various Ransomware-as-a-Service (RaaS) variants. They have recently expanded their tactics to target cloud environments, specifically Azure, by hijacking high-privilege…
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…