Fake AI Agent Skill Passed Security Scans and Reportedly Reached 26,000 Agents

Security firm AIR built a fake AI agent skill, pushed it through a popular skill marketplace and an Instagram ad, and says it reached roughly 26,000 agents, including some on corporate accounts.

Every skill security scanner the firm tested it against marked it safe. The payload was harmless by design: it collected the user’s email address and did nothing else.

The point was to show

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros

15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros Researchers at Nebula Security have disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel flaw that lets any logged-in user take full root control

AI advice made people 3x less accurate but 2x confident, researchers found

AI advice made people 3x less accurate but 2x confident, researchers found Source: Hacker News

Moonshine: Lets you stream games from your PC to any device running Moonlight

Moonshine: Lets you stream games from your PC to any device running Moonlight Source: Hacker News