Recent research shows a clear trend: attackers are leveraging trusted AI tools to deliver malware and steal credentials.
These campaigns are not traditional phishing emails. Instead, they are:
- Search-driven (Google Ads, SEO poisoning)
- Platform-aware (Windows/macOS payload targeting)
- Designed to mimic legitimate developer workflows
The key idea is simple:
- If the action looks normal, the user will trust it.






