AI-Driven Malware Causes Real-World Harm and Evades Detection
September 21, 2026
oecd:2026-09-21-5982View source ↗
What happened
Researchers have discovered multiple malware samples, including CLOSEDQUORUM and PROMPTFLUX, that use AI models for autonomous control, adaptive behavior, and self-rewriting to evade detection. These AI-powered malware have been used in live attacks, resulting in data and credential theft, highlighting a new wave of cyber threats.
Reported impact
- Affected parties
- Not publicly disclosed
- Harm type
- Not publicly disclosed
- Scale
- Not publicly disclosed
- Financial impact
- Not publicly disclosed
- Regulatory action
- Not publicly disclosed
Classification
Relevant governance controls
Governance control mapping is not available for this record.
- No controls mapped
Not publicly disclosed
Control mapping is analytical. It does not state that any control would have prevented the incident.
Sources and evidence
OECD AI Incidents Monitor
AI-Driven Malware Causes Real-World Harm and Evades Detection
2026-09-21