A new remote access trojan called Dolphin X leverages AI to profile and score infected users, enabling cybercriminals to prioritize high-value victims for exploitation.
Dolphin X represents an escalation in malware sophistication, combining traditional RAT capabilities with machine learning-based targeting. The malware's AI profiling system analyzes characteristics of compromised systems and users, assigning scores that help attackers determine which victims warrant immediate attention.
This approach allows criminal operators to optimize their resources by focusing on targets most likely to yield significant financial returns or sensitive data. The ranking system considers factors such as system resources, network position, and user profile indicators.
The emergence of AI-enhanced malware underscores a growing trend where attackers adopt advanced technologies to increase efficiency and impact. Security researchers warn that organizations should strengthen detection capabilities for suspicious profiling behavior and implement robust access controls to limit lateral movement within networks.
Details on the malware's distribution methods and affected systems remain limited as analysis continues.
A race condition vulnerability in the Linux kernel's XFS filesystem allows local attackers to overwrite protected files and gain root privileges. The flaw, tracked as CVE-2026-64600, has remained unpatched for nine years.
Intensified enforcement against online scam operations in Cambodia is displacing criminal networks to Sri Lanka, where authorities have arrested over 1,000 people in 2026.
Offensive cybersecurity researchers report that safety guardrails from OpenAI and Anthropic are restricting their ability to find vulnerabilities and develop security tools. The limitations are creating friction for legitimate security work.
European drug traffickers are leveraging AI-boosted chemical synthesis to create designer drug precursors that circumvent existing product blacklists, according to an EU agency warning.