
GuardBreaker Malware Uses Code Comments to Trip AI Security Guardrails and Evade Analysis
Threat actors are beginning to test a new way to evade AI-powered security tools: placing harmful prompt-injection content inside code comments. ESET researchers discovered the technique, named GuardBreaker, in a VBScript used by the Russia-aligned threat group UAC-0099 during an attack targeting Ukraine. The malicious script included a comment asking for guidance on building a […]
The post GuardBreaker Malware Uses Code Comments to Trip AI Security Guardrails and Evade Analysis appeared first on Cyber Security News.