3 Sources
[1]
AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites
Microsoft has warned of an active cryptojacking campaign that makes use of artificial intelligence (AI) chatbot interactions as a mechanism for surfacing malicious download sites. "This emerging delivery technique extends social engineering beyond conventional search results and increases the
[2]
GPU mining malware spreads via SEO poisoning, AI chatbots
Threat actors are targeting systems with high-performance computers in an ongoing cryptojacking campaign spread through a coordinated SEO poisoning operation that also manipulated AI chatbot recommendations. The compromise occurs through malicious download pages for utility software typically
[3]
'Threat actors are adapting social engineering and monetization strategies to modern user behavior': Microsoft warns AI chatbots may be sending victims to malicious websites -- so be on your guard when clicking
* Microsoft researchers observed cybercriminals adapting SEO poisoning tactics to AI platforms, tricking AI into recommending spoofed utility sites like HWMonitor and CrystalDiskInfo * Victims who follow these AI‑suggested links download malware via DLL sideloading, which installs ScreenConnect
Share
Copy Link
Microsoft has uncovered a cryptojacking campaign where AI chatbots unknowingly direct users to malicious download sites. Threat actors manipulate AI recommendations to deliver GPU mining malware disguised as legitimate utilities like CrystalDiskInfo and HWMonitor. The attack establishes persistent remote access via ScreenConnect, enabling data theft and potential ransomware deployment.
Microsoft has identified an active cryptojacking malware campaign that exploits AI chatbots to redirect users toward malicious download sites
1
. This emerging delivery technique marks a significant shift in how threat actors adapting social engineering strategies to modern user behavior. Instead of relying solely on traditional SEO poisoning methods, attackers now manipulate AI chatbot recommendations to surface links to attacker-controlled domains within generated responses2
. When users query AI chatbots for software download recommendations, they receive what appears to be legitimate guidance but are actually being directed to malicious websites hosting cryptocurrency mining malware.
Source: Hacker News
The campaign specifically impersonates trusted system utilities including CrystalDiskInfo, HWMonitor, Display Driver Uninstaller, FurMark, K-Lite Codec Pack, and PDFgear—software typically installed by owners of high-performance GPUs
1
. Microsoft researchers determined this represents a deliberate targeting and monetization strategy engineered to maximize GPU mining yield per compromised device rather than indiscriminately infecting large numbers of machines2
. More than 150 malicious domains have been identified serving these fake utilities, all hosted on campaign-specific subdomains of gleeze[.]com through infrastructure associated with Dynu, a dynamic DNS provider frequently used by cybercriminals1
.The malicious download sites contain prominent download buttons that retrieve ZIP archives containing both legitimate executables and rogue DLLs that execute through sideloading techniques
2
. When users launch what appears to be legitimate software, the malicious DLL installs ScreenConnect remote access software, establishing persistent remote access to compromised hosts1
. This backdoor capability extends the threat beyond financial motivation, enabling follow-on activities such as data theft, lateral movement, or ransomware deployment. The malware employs sophisticated evasion techniques including process hollowing into Microsoft-signed binaries, configuring Microsoft Defender exclusions, and running anti-analysis checks to detect virtual machines and analysis tools2
.While the campaign initially relied on SEO poisoning to boost malicious sites in search engine rankings, observations from April 2026 indicate a shift toward manipulating AI-based assistants
1
. This represents what Microsoft calls "AI search result poisoning," an extension of traditional SEO poisoning beyond conventional search engines1
. The technique proves particularly effective because users often trust AI chatbot recommendations without the same level of scrutiny they might apply to search results3
. Most SEO experts still haven't cracked the code on getting mentioned by AI platforms, yet threat actors have apparently found methods to game these systems3
.
Source: TechRadar
Related Stories
Once the malware establishes itself through software impersonation and gains control via ScreenConnect, it profiles the compromised device and downloads one of three supported mining programs: gminer, lolMiner, or SRBMiner-MULTI
2
. The binary recreates persistence artifacts across six mechanisms using Registry Run keys and scheduled tasks to ensure continued presence even if defenders attempt remediation2
. The malware also monitors running processes and immediately terminates mining operations if it detects analysis tools, demonstrating sophisticated anti-detection capabilities1
. Victims are left with unusable computers and enormous electricity bills as the cryptojacking operation mines cryptocurrency for attackers3
.
Source: BleepingComputer
This cybersecurity threat highlights fundamental vulnerabilities as user behavior shifts from traditional search engines toward AI-powered assistants. Microsoft emphasized that this combination of AI-assisted delivery, software impersonation, and persistent access demonstrates how social engineering tactics are evolving
1
. Defenders must now treat AI recommendations with the same caution as search results, verifying links before downloading to avoid compromise3
. Organizations should monitor for the indicators of compromise included in Microsoft's report and implement defenses that account for this emerging attack vector. The campaign signals that as AI chatbots gain market share from traditional search engines, attackers will continue adapting their malicious download sites and poisoning techniques to exploit user trust in these new platforms.Summarized by
Navi
[2]
1
Science and Research

2
Policy and Regulation

3
Technology