AI Tool Masquerades as Malware: Cybersecurity Alert
2025-06-01

Cisco Talos has uncovered new threats disguised as legitimate AI tool installers, including CyberLock ransomware, Lucky_Gh0$t ransomware, and a destructive malware called "Numero." CyberLock encrypts specific files, falsely claiming ransom payments fund humanitarian aid. Lucky_Gh0$t is a Yashma ransomware variant. Numero manipulates the Windows GUI, rendering systems unusable. Attackers use SEO poisoning and social media to spread these threats, posing a significant risk to businesses seeking AI solutions. Organizations should meticulously verify sources and rely on reputable vendors.
Tech