
The Hacker News
July 20, 20261 min read
A solo Russian-speaking threat actor known as "bandcampro" outsourced a chunk of their operations to Google's open-source Gemini CLI artificial intelligence (AI) and commandeered a live botnet. The findings come from an analysis of 200 Gemini CLI session logs between March 19 and April 21, 2026, which found the threat actor using AI, among other things, to crack passwords, set up a residential
Read what's here, then head to the original whenever you're ready - never required.
Continue Reading on The Hacker NewsNew ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack
The Hacker News July 21, 2026