AI

Google says attackers used AI agents to steal credentials in under six hours

The Google Threat Intelligence Group released a report detailing how threat actors used a multi-agent AI framework to compromise thousands of credentials

Google says attackers used AI agents to steal credentials in under six hours

Key takeaways

  • Threat actors used a multi-agent AI framework to compromise thousands of credentials in under six hours.
  • The autonomous framework was assembled from an AI coding chatbot, a prompt, and agent instructions, running troubleshooting and IP rotation without an operator.
  • A China-linked espionage group attempted to use Gemini to design an automated penetration testing framework, but Google disabled the assets.
  • The criminal group UNC6780 (TeamPCP) has run compromises across PyPI, npm, and Docker Hub, dropping credential stealers into hidden directories like .claude and .cursor.
  • Every threat actor is now assumed to be using AI in some capacity and benefiting from its speed.

The Google Threat Intelligence Group released a report detailing how threat actors used a multi-agent AI framework to compromise thousands of credentials in under six hours. Mandiant investigators traced the campaign to a suspected financially motivated actor that built an autonomous framework using an AI coding chatbot, a prompt, and agent instructions. The report highlights a shift toward reducing human involvement in cyberattacks, shrinking the response window for defenders.

Autonomous AI agents are dramatically shrinking the window defenders have to react to cyberattacks.

In their words

“Criminals, like the ones who conducted a mass exploitation campaign in just six hours, will gravitate to attacks that are faster than we can respond to”
John Hultquist, chief analyst at Google Threat Intelligence Group

By the numbers

6 hours
Time taken by attackers to compromise thousands of credentials
Q2
Quarter of activity tracked in the GTIG report

How it unfolded

  1. March UNC6780 poisoned the LiteLLM gateway
  2. April Attacker provisioned GPU instances via exposed GitHub token
  3. May GTIG report documented first AI-built working zero-day exploit
  4. today Google Threat Intelligence Group released its adversarial AI report

Turn stories like this into views

Ravenclip finds the AI news, makes the video, and posts it before attention moves on.

Start my channel

Source: Siliconangle

Common questions

What happened with Threat actors?
Threat actors used a multi-agent AI framework to compromise thousands of credentials in under six hours.
Where can I read the original report?
Read the full report at Siliconangle.

More in AI