DeFi Daily News
Tuesday, August 4, 2026
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home DeFi Web 3

rewrite this title AI Agents Could Be Turned Into Botnets Through Hallucinations, Researchers Warn – Decrypt

Jason Nelson by Jason Nelson
July 9, 2026
in Web 3
0 0
0
rewrite this title AI Agents Could Be Turned Into Botnets Through Hallucinations, Researchers Warn – Decrypt
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

In brief

Researchers introduced “Adversarial HalluSquatting,” an attack that exploits AI-generated hallucinations.
The technique tricks AI agents into trusting fake repositories or tools that contain malicious instructions.
Tests against popular AI coding assistants showed the method could lead to remote code execution in controlled experiments.

AI hallucinations may be more than incorrect answers—they could become a way for hackers to compromise computers, according to new research from Tel Aviv University, Technion, and Intuit.

In the paper, “Beware of Agentic Botnets: Scalable Untargeted Promptware Attacks via Universal and Transferable Adversarial HalluSquatting,” researchers demonstrated a technique that exploits AI models when they generate fake links to software repositories and other online resources.



“The growing adoption of agentic LLM applications has introduced a new threat previously named as promptware,” the researchers wrote. “While prior work has established that adversaries can exploit direct channels to LLM applications to apply promptware under weak threat models, many applications do not provide any direct channels that could be exploited for prompt injection beyond the Internet.”

Known as adversarial hallucination squatting or “HalluSquatting,” the attack involves predicting which fake resources AI models are likely to create, registering those names, and adding malicious instructions. If an AI agent later retrieves the hallucinated resource, it may treat the attacker-controlled content as legitimate.

The researchers said the threat emerges as AI assistants move beyond answering questions and gain the ability to interact with computers—accessing files, searching the web, writing code, and running commands.

Those abilities can create security gaps when agents act on information they retrieve without confirming whether the source is real.

“Ongoing studies have demonstrated various variants of Promptware attacks against real-world systems, including ChatGPT, Google Assistant, Copilot, and various additional applications,” they wrote. “These works demonstrated that Promptware can lead to financial, privacy, and safety impacts.”

Researchers warned the technique could allow attackers to build AI-enabled botnets. A botnet refers to a network of infected computers or devices controlled remotely by an attacker. Botnets are commonly used in cyberattacks, including denial-of-service attacks, cryptocurrency mining, malware distribution, and ransomware campaigns.

In testing, the researchers found AI-generated resource hallucinations occurred at rates as high as 85% in repository cloning scenarios and 100% in skill installation tests.

The team evaluated the technique against AI coding assistants and agents, including Cursor, GitHub Copilot, Gemini CLI, and OpenClaw.

HalluSquatting is similar to typosquatting, a cyberattack tactic where attackers register domain names resembling legitimate websites or software packages to trick users. Instead of exploiting human typing mistakes, HalluSquatting targets mistakes made by AI models.

The news comes as researchers continue to test how attackers can manipulate AI agents.

In April, Google researchers detailed malicious websites designed to hijack AI agents through indirect prompt injection attacks, including attempts to steal passwords, delete files, and manipulate payments. A separate study on the “CopyPasta” attack showed how hidden prompts inside developer files could manipulate AI coding assistants into spreading malicious code.

In June, an OpenClaw user reported facing more than 6,000 attempts from attackers attempting to trick the AI agent into leaking sensitive information.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website http://defi-daily.com and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: agentsBotnetsDecryptHallucinationsResearchersrewritetitleTurnedwarn
ShareTweetShare
Previous Post

rewrite this title Fisch Starshell Rod guide: How to get, stats, and more

Next Post

rewrite this title This new chip stacking technique could be the key to unlocking faster AI performance

Next Post
rewrite this title This new chip stacking technique could be the key to unlocking faster AI performance

rewrite this title This new chip stacking technique could be the key to unlocking faster AI performance

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
rewrite this title and make it good for SEOOakmark Fund U.S. Equity Market Q2 2026 Commentary

rewrite this title and make it good for SEOOakmark Fund U.S. Equity Market Q2 2026 Commentary

July 13, 2026
rewrite this title Michael Carrick: Man United have ‘great foundation’ before Arsenal ‘challenge’

rewrite this title Michael Carrick: Man United have ‘great foundation’ before Arsenal ‘challenge’

January 24, 2026
“The Sky Is Falling But I Feel Great Going Forward” – Boston Connor On Patriots Super Bowl Loss

“The Sky Is Falling But I Feel Great Going Forward” – Boston Connor On Patriots Super Bowl Loss

February 9, 2026
rewrite this title JFK Airport Guide – NerdWallet

rewrite this title JFK Airport Guide – NerdWallet

January 17, 2025
rewrite this title Interact Adds AI Features to Link Internal Comms to Business Value – UC Today

rewrite this title Interact Adds AI Features to Link Internal Comms to Business Value – UC Today

February 19, 2026
rewrite this title Aave DAO Faces Vote on Native BTC Collateral as Babylon Labs Files Temp Check

rewrite this title Aave DAO Faces Vote on Native BTC Collateral as Babylon Labs Files Temp Check

May 25, 2026
rewrite this title and make it good for SEOOil Price Today (August 4): Crude oil nears  as peace talks uncertainty loom after fresh attacks. What are experts saying?

rewrite this title and make it good for SEOOil Price Today (August 4): Crude oil nears $85 as peace talks uncertainty loom after fresh attacks. What are experts saying?

August 3, 2026
rewrite this title Samantha Morton on being replaced by Scarlett Johansson in Her: “It does hurt”

rewrite this title Samantha Morton on being replaced by Scarlett Johansson in Her: “It does hurt”

August 3, 2026
rewrite this title Marmot Researchers Turn to OnlyFans for Funding—And There Are Meme Coins Too – Decrypt

rewrite this title Marmot Researchers Turn to OnlyFans for Funding—And There Are Meme Coins Too – Decrypt

August 3, 2026
rewrite this title Meet the Investors, Founders, and Operators Taking the Stage at Our IMPACT Funders & Founders Event – Finovate

rewrite this title Meet the Investors, Founders, and Operators Taking the Stage at Our IMPACT Funders & Founders Event – Finovate

August 3, 2026
rewrite this title Week 31: A Peek Into This Past Week (+ the books I finished this past week!)

rewrite this title Week 31: A Peek Into This Past Week (+ the books I finished this past week!)

August 3, 2026
rewrite this title The ‘MLB active wins leaders’ quiz

rewrite this title The ‘MLB active wins leaders’ quiz

August 3, 2026
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.