ThreatsDay Details GhostJacking AI Attacks, EtherHiding ClickFix
TL;DR. A new cybersecurity report identifies 'GhostJacking' as a novel attack vector targeting AI systems through prompt poisoning and data manipulation. - GhostJacking exploits data supply chains and AI model training to compromise outputs. - The report also details 'EtherHiding ClickFix,' a vulnerability in browser extensions that allows crypto wallet theft. - Adversaries leverage identity exposure to establish active attack paths across various domains.
- GhostJacking represents a new class of AI attacks involving prompt poisoning and data manipulation.
- EtherHiding ClickFix is a separate vulnerability enabling crypto wallet theft via malicious browser extensions.
- The report highlights the interconnectedness of identity exposure and cyberattack chains.