EudorIACyber Intelligence
Operational monitoring Newsletter IT EN
← Back to intelligence
Technical advisory

Новиот Windows malware ClosedQuorum користи вештачка интелигенција за одлуки при напад

Official source
EudorIA operational summary

What it means

Priority 65/100

ClosedQuorum è un malware Windows che utilizza modelli di intelligenza artificiale per prendere decisioni autonomamente durante un attacco. Funziona senza intervento umano, raccogliendo informazioni durante la fase di esplorazione e utilizzando un sistema di voto per determinare le prossime azioni. I dati rubati vengono inviati agli operatori tramite webhook Discord. Non è stato confermato un sfruttamento attivo in rete.

Why it matters

Per le PMI italiane, il rischio è la perdita di dati sensibili e la compromissione della reputazione aziendale. L'automatizzazione degli attacchi aumenta la velocità e la scalabilità delle operazioni di cybercrime, rendendo necessario un'adeguata difesa.

Potential operational benefits

  • Riduzione della superficie esposta
  • Miglioramento della rilevazione degli attacchi
  • Aumento della risposta ai comportamenti anomali
Indications to confirm against the customer's technical and organisational perimeter.
Relevant controlsFirewall NGFW / IPSEDR / XDRMonitoraggio / SIEMPatch managementSegmentazione di rete
AudienceSOCIT
Information centre

Translation in progress

MKD-CIRT

The official content is available in the original language. The Italian version will be published once automated checks are complete.

Text acquired from the source

Нов malware за Windows, наречен ClosedQuorum, користи модели на вештачка интелигенција како Google Gemini, DeepSeek, Qwen и Mistral за автономно одредување на активностите што треба да ги преземе во фазите по компромитирањето на системот. Malware-от, базиран на Go, функционира без команди од човечки оператор, користејќи информации собрани при извидување и систем на гласање за да […] The post Новиот Windows malware ClosedQuorum користи вештачка интелигенција за одлуки при напад appeared first on MKD-CIRT | Национален центар за одговор на компјутерски инциденти .

Source
MKD-CIRT Macedonia del Nord
Publishing entity
MKD-CIRT
Entity type
National CSIRT
Area
Europe · MK
Original language
mk · translation in preparation
Publication
23/09/2026 11:18
MITRE ATT&CK
T1486, T1059, T1078
Stated country
MK
Open the original source