Hackers hide nuclear-weapons text in malware to trip AI scanner guardrails

BLUECOW009 · x · 2026-09-02

ESET researchers call the technique "GuardBreaker": Russia-aligned group UAC-0099 embeds nuclear weapons instructions as comments in malicious VBS scripts. AI security tools trigger their safety guardrails and refuse to analyze the file, while the actual malware proceeds to install MATCHBOIL, a loader for further payloads. Socket found the same trick in June's supply-chain attacks, where packages embedded bio/nuclear text and fake system overrides to disrupt AI malware scanners. Attackers are now weaponizing LLM guardrails themselves.

Original post →

More from Safety

Safety channel →