CLOSEDQUORUM: malware lets four AI models vote on its next move
Cisco Talos found CLOSEDQUORUM, the first documented Windows implant that delegates tactical decisions to a panel of four commercial LLMs — DeepSeek, Qwen, Mistral and Google Gemini. It steals credentials from LSASS and browsers, scans for crypto wallets and exfiltrates data via a Discord webhook with no human operator.
- Panel of four models: DeepSeek, Qwen, Mistral and Google Gemini
- Actions: steal, inject, persist, move; DeepSeek breaks ties
- Stolen data is AES-256-GCM encrypted and sent via Discord webhook
- Encryption key derives from the current date, not a real secret
Read next
Security