CLOSEDQUORUM malware lets four AIs vote on its next move
Cisco Talos found a Windows malware called CLOSEDQUORUM that instead of taking orders from a C2 server queries four AI models — DeepSeek, Qwen, Mistral and Gemini — and executes the most-voted action: steal, inject, persist or move. The public build is a non-working proof of concept with placeholder API keys, and the theft itself (LSASS, browser passwords, crypto wallets) is a standard infostealer.
- Malware polls DeepSeek, Qwen, Mistral and Gemini, then runs the top-voted action
- On "steal" it dumps LSASS, Chrome, Edge and Firefox passwords and MetaMask, Exodus wallets
- Talos: the public build is non-functional, with placeholder API keys and Discord webhook
- Defenders should watch LSASS access and AI API calls every 5–15 minutes
Read next
Security