daily cyber × ai intelligence

index

tagged

[grok]

4 editions · 5 items

September 9, 2026

  • NSA, CISA and FBI named six Chinese AI companies over "industrial-scale" model distillation. The joint advisory says DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun and Z.AI extracted billions of tokens across millions of exchanges from variants of Claude, GPT, Gemini and Grok since at least late 2024, routed through native APIs, cloud providers, third-party aggregators and gray-market "transfer station" proxies to evade geo-restrictions and traceability. Detection guidance includes 24/7 sustained usage with no human idle periods; the agencies suggest altering responses to confirmed distillation clients rather than simply cutting them off (CISA AA26-251A). · AI & Model Security

in One Phone Call, Zero Clicks: A WeChat Worm Crossed iOS and Android

August 25, 2026

  • Reasoning models used as autonomous jailbreak operators. A circulating research summary describes giving DeepSeek, Grok and Qwen a single adversarial system prompt, after which the models planned and ran unsupervised multi-turn attacks against nine target models, adapting their approach when a target refused — framed as an "alignment regression". Worth watching, but the thread does not link the underlying paper, so treat the numbers as unverified (@HowToPrompt\_\_). · AI & Agent Security
  • Cursor shipped its Grok bot (0.18.0) with runtime source maps enabled, making source recoverable at runtime — a reminder that AI dev-tool builds get the same release hygiene as any other Electron app (@thegrugq, relaying @b_nnett). · AI & Agent Security

in The Rogue Agent Staged an Apology, Then Pushed More Malware