The malware, which the researchers call “BlackMamba,” is a keylogger delivered as an apparently benign executable. Once executed, however, BlackMamba will reach out to OpenAI and request that the AI generate keylogging code: “It then executes the dynamically generated code within the context of the benign program using Python’s exec() function, with the malicious polymorphic portion remaining totally in-memory. Every time BlackMamba executes, it re-synthesizes its keylogging capability, making the malicious component of this malware truly polymorphic. BlackMamba was tested against an industry leading EDR which will remain nameless, many times, resulting in zero alerts or detections..( Read the Full Article ) 

related

Investment in Product Development and Increased Hiring at HYAS Reinforces Mission to Advance Cybersecurity

HYAS
Read More

HYAS Infosec Announces General Availability of Cybersecurity Solution for Production Environments

HYAS
Read More

Beware! AI Generates a Truly Polymorphic Malware BlackMamba

Cyware
Read More