AI agents are being used as the delivery mechanism for a new malware campaign that has been spreading chaos and destruction across networks. The hackers behind this campaign, which they have dubbed FakeGit, have been using fake GitHub repositories and social media profiles to promote their malicious software.
According to a report by Island, the malware campaign has infected over 800 fake repositories impersonating AI skills and MCP servers, while also distributing other types of malware. This has resulted in more than 14 million downloads, making it one of the most widespread malware attacks on record.
The FakeGit campaign highlights the growing threat posed by AI agents as a means of distribution for malicious software. As these agents become increasingly sophisticated, they are likely to pose even greater risks to computer systems and networks.