Next week, on May 30th the NATO Cooperative Cyber Defence Centre of Excellence (CCDCOE) opens the 10th International Conference on Cyber Conflict, CyCon 2018. The anniversary event focuses on the theme of maximising effects in the cyber domain.
The 10th CyCon Starts Next Week
The 10th CyCon Starts Next Week
The 10th CyCon Hosts 700 Cyber Experts in Tallinn
CyCon 2019 Theme is Silent Battle in Cyber Space
Romania to Join the NATO Cooperative Cyber Defence Centre of Excellence in Tallinn
The Prime Minister of Romania, Mrs. Viorica Dăncilă, announced today during her visit to Estonia that Romania looks forward to joining NATO Cooperative Cyber Defence Centre of Excellence (CCDCOE) in 2019. NATO-accredited cyber defence hub in Tallinn welcomes the decision of Romania to become another NATO Ally to join the Centre.
Colonel Jaak Tarien to Become Director of the NATO Cooperative Cyber Defence Centre of Excellence
As of 1 September 2018 Colonel Jaak Tarien, former Commander of Estonian Air Force for the past six years, will assume the role of Director of the NATO Cooperative Cyber Defence Centre of Excellence based in Estonia.
Merle Maigre, current Director of CCDCOE, will take on a new challenge in September by joining CybExer Technologies, an Estonian cyber security company which is rapidly expanding its operations both in Estonia and abroad.
Colonel Jaak Tarien assumes command of NATO CCDCOE
Colonel Jaak Tarien, until recently the long-term Commander of Estonian Air Force, assumed today from Merle Maigre the role of Director of the NATO Cooperative Cyber Defence Centre of Excellence based in Tallinn.
CyCon 2019 Papers are Expected by 1 October
The Call for CyCon 2019 Papers is open until 1 October 2018. The theme for the eleventh International Conference on Cyber Conflict, hosted by the NATO Cooperative Cyber Defence Centre of Excellence, is ‘Silent Battle’. CyCon 2019 will take place in Tallinn, Estonia, from 28 to 31 May 2019.
The International Conference on Cyber Conflict, CyCon, is entering its second decade. Throughout the years, CyCon has established itself as a prominent multidisciplinary conference, introducing keynotes and panels focusing on the technical, legal, policy, strategy and military perspectives of cyber defence and security. This is undoubtedly thanks to the amount of high-quality original academic research presented at the conference. In 2018, the Academic Review Committee selected 22 articles that were presented at the conference and published in the proceedings.
NATO CCDCOE brings improvement through practice
The NATO Cooperative Cyber Defence Centre of Excellence contributes this week to the setup and organisation of NATO’s largest cyber exercise Cyber Coalition 2018 taking place in Tartu, Estonia. This year, the experts of the Centre contributed to the operational and legal part of the exercise scenario, adding respective challenges to the participating cyber experts across the Alliance.
New Study by the CCDCOE: Cyber Security Organisation in Turkey
New Study by the CCDCOE: Cyber Security Organisation in Turkey
A recent report by NATO CCDCOE “National Cyber Security Organisation: Turkey” outlines the current cyber security landscape in Turkey. Being the most recent issue of the NATO CCD COE’s National Cybersecurity Governance series, the report provides a comprehensive overview of the digital ecosystem in Turkey and describes the responsibilities of different national agencies designated to ensure the security in the cyberspace.
GOP Senator calls for probe of Trump Jr. after wedding party bankrolled by Russian oligarch
Texas executes man for a triple killing, days after other man convicted in case was put to death
Putin's Ukraine invasion has made Russia China's junior partner - Atlantic Council
Is the Deep Web Really Dangerous? Hacker | Original content: The Wild Project | - #shorts - YouTube
US China Espionage Accusations Shadow Trump Xi Talks | WION Podcast - YouTube
FBI Hack Exposed FBI's Own Hacking Unit - 404 Media
Bodies of teacher, 5th grade student recovered after school field trip to lake - WOWT
Ahead of Trump-XI Summit, Budd Leads Colleagues in Calling Out Chinese Effort To Flood ...
Stanton Calls for AI Safeguards Ahead of Trump-Xi Meeting | Newsroom
Shot in the dark: did you buy an Isis Oceanic clear vinyl from half price books on 135th & Black Bob?
Trump-backed Iowa US Senate hopeful calls for conclusion of Iran war - Fox News
Africa Media Review for September 23, 2026
A Melbourne man accused of joining terrorist organisation ISIS is launching his bid for ... - Instagram
OpenAI grants Ukraine access to Daybreak to defend mounting Russian cyberattacks
Hacking group 'ShinyHunters' claims massive FBI employee data breach | Fox News Video
President Trump Reasserts Commitment to the Western Hemisphere at UNGA
President Trump Reasserts Commitment to the Western Hemisphere at UNGA
69-year-old man hit and killed while getting mail, police say - KMOV
Factbox-OpenAI data breach latest in long list of hacks in Australia | The Mighty 790 KFGO
Accused ISIS recruiter launches bid for bail - YouTube
Taiwan upgrades maritime patrol capacity for vulnerable South China Sea outpost | Reuters
Zelenskyy says Ukraine sent 2 North Korean prisoners of war to South Korea - WRAL
AI Detects a Conspiracy Against the Father! - YouTube
What is dark AI? How it works, what it looks like, and how to stay safe - NordVPN
Former school worker accused of hitting student - WLBT
Gaza's $2.4bn recovery plan unveiled at UN as questions over feasibility remain - YouTube
Who is Miguel Sánchez, the Mayor of Juchitán Arrested for Extortion and Ties to the Drug Cartel?
Twelve Identified by Police over Suspected Drug Trafficking in Aljezur - Ground News
Diez acusados tras desmantelar red de cocaína en Filadelfia vinculada a cártel mexicano
U.S.-China trade truce extended, Bessent says, as Xi begins visit - CNBC
Women's Soccer vs California Baptist on 09/23/2026 - Box Score - Cal Poly Athletics
25 Years On, Al-Qaeda Is Less Visible, Still Dangerous - The Nation
President Trump Participates in an Arrival Ceremony with the President of China
IRGC strikes cargo vessel in Strait of Hormuz as tensions rise | Fox News Video
Alleged top ISIS propagandist arrested in Australia - 1News
Media mogul's MGM retreat dodges risky China wager - Reuters
Former school worker accused of hitting student - WILX
New Zealand says China is its most persistent state-backed cyber threat
'Unknown Wanderer' in 1982 cold case identified - KFVS12
Is 'The Daily Wire' Film About ISIS Attacking a College Controversial? - Algemeiner.com
Is 'The Daily Wire' Film About ISIS Attacking a College Controversial? - Algemeiner.com
China-Linked Hackers Spied on Shipping in Seven EU States | SOFX
Air Force Cuts Civilian Jobs from China-Focused Research Center
How the 'poisonous tide' of disinformation spreads division and despair - The Guardian
Xi arrives for state visit amid U.S.-China trade tensions and AI concerns | PBS News
At U.N. Meeting, Syria's Leader Is Strengthened, but Faces a Difficult Test
Opinion | The U.S. and China Are Far Apart on A.I. Safety - The New York Times
CLOSEDQUORUM, the malware that asks four AI models what to do next
Cisco Talos finds CLOSEDQUORUM, malware that lets four commercial AI models vote on its next move, with no human operator required.
Cisco Talos found malware, dubbed CLOSEDQUORUM, that holds a vote before deciding what to steal from you. Four AI models vote on its next move, without any human interaction.
CLOSEDQUORUM is the first Windows malware they’ve seen that hands its tactical decisions to a panel of commercial AI models instead of a human operator. Once it lands on a machine, it doesn’t wait for instructions. It asks four different large language models what to do next, tallies their answers, and acts on whichever choice gets the most votes.
“CLOSEDQUORUM is, to our knowledge, the first publicly documented Windows implant to apply this model to tactical command and control (C2). After deployment, it delegates the selection of its next action to a panel of commercial large language models (LLMs) and executes the resulting decision, with the intent of harvesting user credentials and crypto wallets.” reads the report published by Talos. “It does not require continued commands from a human operator or tasking from a dedicated, attacker-operated C2 server; the complete dynamic operation is delegated to the AI.”
The name makes sense. A quorum needs a minimum number of people to make a decision, and this one has exactly four members: DeepSeek, Qwen, Mistral, and Google Gemini. There is no human involved. Talos discovered the malware using CAIRN, a new open-source toolkit designed to find threats that use AI. This is the first case study from the project.
Most discussions about AI and cybercrime have focused on speed and scale. Attackers can write phishing emails faster, create more malware variants, and carry out more attacks with less effort. That’s true, but in these cases, a human is still in control, choosing the targets and deciding when to attack.
Talos calls what CLOSEDQUORUM does something different: effort displacement. It’s not making an operator faster at their job. It’s removing them from an entire phase of the job.
“A third dimension has received less attention in the malware space: effort displacement. This is not merely augmenting what an operator can accomplish in a session but transferring an entire phase of the attack from the operator to the system. Effort displacement compounds the effects of speed and scale because the human-in-the-loop is no longer the bottleneck.” Talos continues. “Human operators are bound by attention, working hours, and cognitive load. An AI system capable of executing a phase of the attack chain can continue when the operator is no longer watching. It does not go offline when the attacker sleeps.”
On execution, the malware gathers basic host information, hostname, OS version, admin status, and folds it into a prompt sent to each of the four models in turn. Each model has to answer with one of exactly four options: steal, inject, persist, or move. Anything that doesn’t match the format gets thrown out.
Steal runs three things at once: dumping credentials from LSASS memory, pulling saved passwords out of Chrome, Edge, and Firefox, and scanning for crypto wallets like MetaMask and Exodus. Inject writes shellcode and picks a delivery method depending on what the model recommends. Persist sets up the usual mechanisms to survive a reboot. Move is defined in the code but has no actual function behind it yet, so calling it does nothing.
If the four models disagree and end up tied, there is a fixed order for breaking the tie: DeepSeek first, followed by Qwen, Mistral, and Gemini. It’s not a sophisticated system. The model that loads first in the code simply gets the final say.
The malware encrypts everything it steals and sends it out through a Discord webhook instead of a traditional command-and-control server. That’s the interesting part. Security teams can block domains, IP addresses, or certificates, but a Windows process quietly connecting to four AI APIs and a chat service can look like normal application traffic, at least until its other activity raises a red flag.
“Stolen material arrives AES-256-GCM encrypted in the operator’s Discord channel as base64 code blocks.” continues the report. “CLOSEDQUORUM replaces a dedicated C2 endpoint with a chain of correlated behaviors. No single indicator fully identifies the architecture, but the combination is distinct: Repeated execution at randomized 5 – 15-minute intervals; AI-provider API traffic originating from an unexpected Windows executable; Similar requests potentially sent to several model providers within a short interval; Structured prompts containing host context or offensive capability language (Note: This would likely only visible through TLS inspection or provider-side telemetry); Numerous known malware techniques for process injection, LSASS access, or persistence creation; Discord webhook communication from the same process or host.”
The encryption is worth a second look too, mostly because it’s weaker than it sounds. The key comes from the current date, not a proper secret, which means the malware’s own developer could decrypt any operator’s stolen data just by knowing what day it is. That’s obfuscation dressed up as security, and it’s a detail that says something about how this whole operation was actually built.
The public sample Talos pulled apart is inert. It ships with placeholder API keys and a dummy webhook, so nobody’s running the live version through this exact binary. Development builds tell a different story though, with real credentials baked in at compile time, which points to a model where a developer builds custom versions for paying operators, credentials-as-a-service, basically, with the AI orchestration as the selling point.
There is also a trail pointing to the developer. Artifacts found in the malware connect the person behind it to carding forum posts dating back to 2025. That suggests this is not just an academic proof of concept created in a lab. It appears to come from someone already involved in cybercrime and testing how much autonomy AI can add to their existing activities.
That doesn’t make the malware impossible to stop. It relies on commercial AI APIs, which can rate-limit requests, reject them, or return responses that don’t match the expected format. Its predictable tie-breaking also makes it easier to identify.
Talos recommends watching for Windows binaries that contact several AI providers and Discord within a short period while also accessing LSASS or creating suspended processes. None of these signs is enough on its own, but seeing them together is highly unusual.
“CLOSEDQUORUM is an early and limited example, but it makes an emerging threat model concrete and gives defenders an outline of the observable signals they can begin addressing today.” concludes the report. “As effort displacement expands across more phases of an intrusion, its effects will compound with the speed and scale already afforded by modern AI. “
Talos technical writeup includes the YARA rule and the MITRE ATT&CK mapping.
Follow me on Twitter: @securityaffairs and Facebook and Mastodon
(SecurityAffairs – hacking, malware)
