First LLM-as-C2 Malware CLOSEDQUORUM Discovered
Cisco Talos uncovered CLOSEDQUORUM, reportedly the first malware using multiple LLMs as voting judges to autonomously decide C2 commands, with credential theft and Discord-based data exfiltration.
2026-09-23 ~ 2026-09-24 · 2 related posts
- Inside CLOSEDQUORUM: AI-Voting C2, Credential Theft, Discord Exfiltration and Detection Signals — TechNadu · 2026-09-23
- Cisco Talos finds CLOSEDQUORUM, first 'LLM-as-C2' malware that automates the attack chain — ChuckDBrooks · 2026-09-24