logoalt Hacker News

smokeltoday at 6:23 AM4 repliesview on HN

The academic paper is here: https://arxiv.org/abs/2606.03811

It's not fully described how things work exactly, but apparently it does not transfer entire LLMs as part of the worm. Now that would be interesting :)


Replies

tiborsaastoday at 1:12 PM

The abstract says:

> The worm parasitically uses compromised machines to run open-weight large language models (LLMs) to sustain its reasoning, or extend its reach for further attacks.

show 1 reply
a1otoday at 10:50 AM

I think an approach could be to use some engineered security issue or however people build botnets, and give it some AI llm that is small and minimal but comes with instructions to download models from hugging face, and some other minimal prompts and descriptions of tools. Then it could use this to grow in infected computers and try find more capable and vulnerable computers to run better capable models and also devise some minimal communication between the different points of the botnet. Perhaps set itself a goal to dominate the biggest amount of compute and have some other goal. Would be curious to see what happens.

m3kw9today at 1:38 PM

When the worm makes someone's machine start to sound like a leaf blower, you are found out.

hamburgererrortoday at 7:10 AM

In the abstract, what does it mean "the attacker's marginal cost per new infection is zero"?

show 1 reply