Cisco Talos discovers malware that uses multiple AI models to autonomously decide actions
Cisco's Talos Threat Intelligence group has identified malware that employs a "hive mind" approach, using multiple AI models including Claude Code, Codex, Cursor, and Gemini to vote on its next actions without human intervention. The team released an open-source toolkit called CAIRN to detect this emerging category of AI-integrated malware.