Remix.run Logo
Russian infostealer sends commands to public LLM to craft requests on the fly(bleepingcomputer.com)
3 points by pogue 8 hours ago | 1 comments
pogue 8 hours ago | parent [-]

Going through a public HuggingFace API of Qwen 2.5-Coder-32B-Instruct it makes requests to generate strings to steal info. I can imagine this will be a nightmare for AV companies going forward if malware becomes completely dynamic and can't be discovered via a signature of the file's hash.