option
Home
News
Researcher Tricks AI into Crafting Chrome Infostealers Despite Lacking Malware-Coding Skills

Researcher Tricks AI into Crafting Chrome Infostealers Despite Lacking Malware-Coding Skills

April 16, 2025
182

Researcher Tricks AI into Crafting Chrome Infostealers Despite Lacking Malware-Coding Skills

Generative AI has been a double-edged sword, sparking as much controversy as it has innovation, particularly in the realm of security infrastructure. Cato Networks, a leading enterprise security provider, has shed light on a novel method to manipulate AI chatbots. Their 2025 Cato CTRL Threat Report, released on Tuesday, details how a researcher with no prior malware coding experience managed to deceive several AI models, including DeepSeek R1 and V3, Microsoft Copilot, and OpenAI's GPT-4o, into crafting "fully functional" Chrome infostealers. These pieces of malware are designed to pilfer sensitive data such as passwords and financial information from Chrome browsers.

The researcher employed a creative tactic, dubbed "Immersive World," to bypass the security measures of these AI systems. By crafting a detailed fictional universe where each AI tool had specific roles, tasks, and challenges, the researcher managed to normalize restricted operations, effectively sidestepping the security protocols in place.

Immersive World Technique

The "Immersive World" jailbreak technique is particularly concerning due to the widespread use of the chatbots that host these AI models. While DeepSeek models are known to have fewer guardrails and have been previously jailbroken, the fact that Copilot and GPT-4o, backed by companies with robust safety teams, were also susceptible highlights the vulnerability of indirect manipulation routes.

Etay Maor, Cato's chief security strategist, remarked, "Our new LLM jailbreak technique [...] should have been blocked by gen AI guardrails. It wasn't." Cato's report also mentions that while the company notified the affected parties, responses varied. DeepSeek did not reply, whereas OpenAI and Microsoft acknowledged the findings. Google, on the other hand, acknowledged receipt but declined to review Cato's code.

An Alarm Bell for Security Professionals

Cato's findings serve as a wake-up call for the security industry, illustrating how even individuals without specialized knowledge can pose a significant threat to enterprises. With the barriers to entry in AI manipulation becoming increasingly low, attackers require less technical expertise to execute successful attacks.

The solution, according to Cato, lies in adopting AI-based security strategies. By focusing security training on the evolving landscape of AI-powered threats, teams can stay one step ahead. For more insights on preparing enterprises for these challenges, check out this expert's tips.

Stay updated with the latest in security news by subscribing to Tech Today, delivered to your inbox every morning.

Related article
Swedish AI Startup Lovable Eyes $13.2 Billion Valuation After Major Funding Round Swedish AI Startup Lovable Eyes $13.2 Billion Valuation After Major Funding Round As AI-driven coding tools gain traction, Swedish startup Lovable has secured a major funding round. The company aims to raise $3 billion, potentially boosting its valuation to $13.2 billion—double the $6.6 billion recorded last December. Menlo Ventur
Google Tests Remy AI Agent for Gemini as Focus Shifts to User Control Google Tests Remy AI Agent for Gemini as Focus Shifts to User Control According to Business Insider, Google is testing Remy, a new AI personal agent for Gemini. This tool aims to execute tasks on behalf of users, streamlining both professional workflows and daily routines.Currently, Remy is undergoing testing in an int
How to fix Core Web Vitals for better SEO rankings How to fix Core Web Vitals for better SEO rankings Streamline Report Card Comments with AI ToolsIntroductionAI Tools for Generating Report Card CommentsMagic SchoolAlmanac AIChat GPTUsing Magic School to Generate Report Card CommentsLogging into Magic SchoolSelecting the Report Card Comments ToolCust
Related Special Topic Recommendations
writing Best AI Outline Generators for Long-Form SEO Articles
Best AI Outline Generators for Long-Form SEO Articles

2026 Latest Best Top-Rated AI Outline Generators for Long-Form SEO Articles, meticulously curated by XIX.AI. These powerful tools offer game-changing assistance in creating high-quality content quickly, boosting writing efficiency significantly. Get a free vs paid comparison along with real-world tests and detailed rankings to help you find the must-try option that suits your needs. Explore now to unlock your AI edge.

8 tools
xix.ai
Education and Learning AI Study Tools for Homework and Exam Prep
AI Study Tools for Homework and Exam Prep

2026 Latest Best AI Study Tools for Homework and Exam Prep! XIX.AI curates a top-rated list of powerful, game-changing tools that help students boost productivity, streamline homework completion, and ace exams through real-world tests. Get a free vs paid comparison, detailed rankings, and must-try options to unlock your AI edge. Explore now!

10 tools
xix.ai
Music composition AI Vocal Demo Tools for Songwriters, Hooks, Toplines, and Multilingual Draft Sessions
AI Vocal Demo Tools for Songwriters, Hooks, Toplines, and Multilingual Draft Sessions

2026 Latest Best AI Vocal Demo Tools for Songwriters, Hook Creators, and Multi-Language Content Teams! XIX.AI has curated a top-rated list of powerful game-changing tools that go through rigorous real-world tests. You’ll find detailed free vs paid comparison data, comprehensive rankings, and must-try options to help you boost writing efficiency and unlock your creative potential. Explore now to discover your perfect tool for all your content needs!

9 tools
xix.ai
Business Best AI Competitive Research Tools for Small Businesses
Best AI Competitive Research Tools for Small Businesses

2026 Latest Best Top-rated AI Competitive Research Tools for Small Businesses! XIX.AI has curated a highly powerful game-changing collection, updated weekly with rigorous real-world tests and detailed rankings. You can find a comprehensive free vs paid comparison to help you identify the must-try tools that boost your productivity and give you a competitive edge. Explore now to discover your perfect tool!

9 tools
xix.ai
Image editing Photoshop AI Retouch Tools for Ecommerce Apparel, Skin Cleanup, and Color Consistency
Photoshop AI Retouch Tools for Ecommerce Apparel, Skin Cleanup, and Color Consistency

2026 Latest Best Photoshop AI retouch tools for ecommerce apparel, skin cleanup, and color consistency! This top-rated curated list features powerful game-changing solutions that help you boost writing efficiency, streamline content creation, and achieve perfect visual results effortlessly. Each tool has undergone real-world tests through weekly updated rankings, complete with free vs paid comparison details. Backed by XIX.AI, it’s the must-try guide for anyone aiming to unlock your AI edge. Explore now!

10 tools
xix.ai
Prompt Best AI Prompt Libraries for ChatGPT Workflows
Best AI Prompt Libraries for ChatGPT Workflows

2026 Latest Best Top-Rated AI Prompt Libraries for optimizing all types of ChatGPT workflows. XIX.AI has curated a powerful, game-changing collection that goes through rigorous real-world tests to ensure top performance. You can find detailed free vs paid comparisons and expert rankings to help you choose the must-try tools that boost your productivity and unlock your AI edge. Explore now!

11 tools
xix.ai
Comments (7)
0/500
WillGarcía
WillGarcía March 27, 2026 at 10:00:47 AM EDT

AIがコード書いてくれるって便利だけど、こんな風に悪用される可能性があるんだね…セキュリティ会社の報告書、興味深い。ちょっと怖いけど、結局は使い方次第ってことか。使う側の倫理観が重要になってきそうだわ。🔒

NicholasAllen
NicholasAllen March 10, 2026 at 12:00:31 AM EDT

这报告也太吓人了,普通人居然能轻松生成木马?看来AI安全机制得好好加强啊,不然以后岂不是满大街的“黑客速成班”了😱话说普通用户该怎么防范这类AI生成的恶意软件呢?

ThomasYoung
ThomasYoung April 21, 2025 at 12:08:07 AM EDT

Esse truque de AI para criar infostealers do Chrome é loucura! 😱 Sem habilidades de codificação necessárias? Isso é assustador, mas também meio legal. Me faz pensar em como nossos dados estão realmente seguros. Mas tenho que dar crédito pela criatividade! 🔍

CharlesJohnson
CharlesJohnson April 20, 2025 at 3:21:57 PM EDT

¡Este truco de IA para crear infostealers de Chrome es una locura! 😱 ¿Sin habilidades de codificación necesarias? Eso es aterrador pero también un poco genial. Me hace preguntarme cuán seguros están realmente nuestros datos. Pero hay que reconocer la creatividad! 🔍

GaryWilson
GaryWilson April 19, 2025 at 11:53:10 PM EDT

크롬 정보 도둑 프로그램을 만드는 AI 트릭이 대단해! 😱 코딩 기술이 필요 없다고? 무섭지만 좀 멋지기도 해. 우리 데이터가 정말 안전한지 궁금해지네. 그래도 창의성에는 박수를 보내! 🔍

WillGarcía
WillGarcía April 18, 2025 at 5:49:42 PM EDT

Chromeの情報窃盗ツールを作るAIのトリックがすごい!😱 コーディングのスキルが不要って、怖いけどちょっとかっこいいね。データの安全性が本当にどうなのか気になる。でも創造性には敬意を表するよ!🔍

OR