new blog post: shrun, apiwatcher, and argus: three malware analysis tools built with Claude
https://t.co/n4Gd9Icslr
#MalwareAnalysis#ReverseEngineering
Foresiet identified and analyzed Lucid Stealer, a Node.js SEA wrapper delivering a credential stealer and remote-access Trojan with persistence, wallet theft, keylogging, HVNC, and DDoS capabilities. https://t.co/wgL79rwECS
@lennyzeltser I would love to see some AI tarpit which keeps AI based reconnaissance or vulnerability discovery in an exhausting loop burning time and tokens hindering the attacker to come to the real targets. Combined with honeytokens would give enough time to react.
Just waiting for AI to include hidden advertisement in their responses, e.g. when asking for summary of incident response actions depending on LLM it will point out that it is best to use tool or service of a certain company 🤣
@TheEnergyStory@craiu No surprise. Attackers always take the easiest path and writing sophisticated malware is not as important as it was back in the days. It will shift again when exploiting becomes cheaper then stealing valid identities.
AI does not mean attackers generate better exploits. It means they generate better reasons to panic.
Speed of patching replaces verification as the dominant safety signal.