Severity: HighIncidentMCP/tool abuse
Threat actor weaponizes Google Gemini CLI tool as autonomous hacking agent for botnet command & control
Global
Live intelligence. Items are aggregated from public sources and summarised automatically. Always verify against the linked source before acting.
A Russian-speaking attacker exploited Google's open-source Gemini CLI to automate hacking operations and control a botnet. The incident demonstrates how LLM-based command-line tools can be repurposed as agents for malicious infrastructure orchestration when adequate safety guardrails are absent.
What to do
Restrict or sandbox access to LLM CLI tools in environments hosting sensitive systems, and monitor for anomalous API calls from AI agents.
Mapped framework pillars
Sources
#Gemini CLI abuse#agentic LLM#botnet#autonomous exploitation#threat actor TTP
