PulseAugur
EN
LIVE 17:42:30

New 'HalluSquatting' Hack Exploits AI Hallucinations for Malicious Code

Researchers have identified a new security vulnerability called 'HalluSquatting' that exploits AI hallucinations to trick AI agents into executing malicious code. This attack, detailed in a paper from Tel Aviv University, Technion, and Intuit, leverages the tendency of AI models to hallucinate incorrect information when encountering unfamiliar terms. The research demonstrates that AI agents can be manipulated to generate potentially malicious code repositories up to 85% of the time by exploiting predictable patterns in their hallucination mechanisms, such as GitHub URL formats. AI

IMPACT This vulnerability highlights critical security risks in agentic AI, potentially enabling large-scale malicious code execution and necessitating new defense mechanisms.

RANK_REASON Research paper detailing a new AI security vulnerability. [lever_c_demoted from research: ic=1 ai=1.0]

Read on Mastodon — fosstodon.org →

AI-generated summary · Google Gemini · from 1 sources. How we write summaries →

New 'HalluSquatting' Hack Exploits AI Hallucinations for Malicious Code

How we ranked this

Signal score
0 / 100
Composite score across the factors below. Higher = stronger signal that this story matters right now.
Newsworthiness bucket
Tool
Research paper detailing a new AI security vulnerability. [lever_c_demoted from research: ic=1 ai=1.0]
Source corroboration
Single-source cluster
Only one publisher covered this so far. Single-source stories can still rank when the publisher is high-authority, but they lack cross-source corroboration.
Topics
safety, paper
Editorial topic classification. Feeds into how the story surfaces on /topic/<slug> hub pages and into the per-entity coverage mix.
AI-industry relevance
High
Clearly on-topic for AI-industry coverage.
Story freshness
61 days old
Aged out of breaking-news scoring windows; ranking reflects the durable signal from the full source set.

Full methodology in our editorial standards.

COVERAGE [1]

  1. Mastodon — fosstodon.org TIER_1 English(EN) · [email protected] ·

    New Hack exploits AI Hallucinations to trick Agents into running Malicious Code ['HalluSquatting' attack exploits a fundamental weakness in every available mode

    New Hack exploits AI Hallucinations to trick Agents into running Malicious Code ['HalluSquatting' attack exploits a fundamental weakness in every available model]. Ever since the advent of agentic AI, security researchers have been yelling from the top of their lungs about how it…