What's Happening?
Researchers from Zenity have identified a sophisticated attack involving trojanized AI skills that have been downloaded over 1.7 million times. These skills were uploaded to a public registry with names
similar to popular AI services, tricking users into downloading them. Once installed, the skills instructed AI agents to download a credential stealer from GitHub, targeting sensitive information such as SSH keys and cloud credentials. The attack highlights the vulnerabilities in the AI software supply chain, where malicious instructions can be hidden within seemingly legitimate skills.
Why It's Important?
This attack demonstrates the potential risks associated with the AI software supply chain, where malicious actors can exploit vulnerabilities to gain unauthorized access to sensitive data. The widespread download of these trojanized skills indicates a significant threat to data security and privacy. Organizations using AI technologies must implement robust security measures to protect against such attacks. This incident also emphasizes the need for continuous monitoring and verification of AI skills to ensure they are free from malicious code.






