Skip to content
Agentic AI Security Hub
Back to feed
Severity: HighIncidentMCP/tool abuse

Threat actor weaponizes Google Gemini CLI tool as autonomous hacking agent for botnet command & control

Global

Live intelligence. Items are aggregated from public sources and summarised automatically. Always verify against the linked source before acting.

A Russian-speaking attacker exploited Google's open-source Gemini CLI to automate hacking operations and control a botnet. The incident demonstrates how LLM-based command-line tools can be repurposed as agents for malicious infrastructure orchestration when adequate safety guardrails are absent.

What to do

Restrict or sandbox access to LLM CLI tools in environments hosting sensitive systems, and monitor for anomalous API calls from AI agents.

#Gemini CLI abuse#agentic LLM#botnet#autonomous exploitation#threat actor TTP