LIVE NEWS
  • China’s economy picks up in June on rebounding U.S. exports: analysts
  • Sinner and Sabalenka answer doubters on Wimbledon Day one | Tennis
  • China cracks down on rule-bending offshore investments
  • Select Navy reserve aviators eligible for up to $40,000 in annual bonuses
  • US government wants to have a useful quantum computer by 2028
  • LIVE: Netherlands vs Morocco – FIFA World Cup 2026
  • CryptoQuant Flags Rising Bitcoin Whale Share On Gate As BTC Holds Below $60,000
  • Djinn Stealer Targets Cloud and AI Credentials
Prime Reports
  • Home
  • Popular Now
  • Crypto
  • Cybersecurity
  • Economy
  • Geopolitics
  • Global Markets
  • Politics
  • See More
    • Artificial Intelligence
    • Climate Risks
    • Defense
    • Healthcare Innovation
    • Science
    • Technology
    • World
Prime Reports
  • Home
  • Popular Now
  • Crypto
  • Cybersecurity
  • Economy
  • Geopolitics
  • Global Markets
  • Politics
  • Artificial Intelligence
  • Climate Risks
  • Defense
  • Healthcare Innovation
  • Science
  • Technology
  • World
Home»Cybersecurity»Djinn Stealer Targets Cloud and AI Credentials
Cybersecurity

Djinn Stealer Targets Cloud and AI Credentials

primereportsBy primereportsJune 29, 2026No Comments5 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Djinn Stealer Targets Cloud and AI Credentials
Share
Facebook Twitter LinkedIn Pinterest Email


Vulnerabilities in remote monitoring and management (RMM) tools can give attackers a direct path into enterprise environments, often with the same trusted access that IT administrators rely on to remotely manage systems. A recent intrusion campaign shows how quickly attackers can leverage that access to deploy malware and establish a broad foothold across enterprise networks.

The attack began with the threat actor exploiting CVE-2026-48558, a critical authentication bypass vulnerability in SimpleHelp, an RMM platform used by more than 6,000 organizations to manage millions of endpoint devices, eventually delivering a second-stage payload dubbed Djinn Stealer.

Researchers at Blackpoint Cyber’s Adversary Pursuit Group (APG) who investigated the incident observed the attacker exploiting the flaw on an Internet-facing SimpleHelp server and obtaining an authenticated technician session, giving them the same remote management capabilities as a legitimate IT administrator.

Related:In Less Than 24 Hours, Attackers Weaponize Cisco CUCM Flaw

Once inside, the attackers mass deployed an obfuscated JavaScript loader that Blackpoint is tracking as TaskWeaver. The attackers disguised TaskWeaver as a benign file named jsquery.js and hosted it on temporary Cloudflare infrastructure. Blackpoint found the threat actor using the malware to fingerprint compromised systems, establish communications with a command-and-control (C2) server, and retrieve Djinn Stealer.

The malware, as Blackpoint noted in its blog, “is built to strip a developer’s machine of everything valuable in a single pass.” This includes cloud credentials, SSH keys, API keys, service account credentials, and other infrastructure secrets. Blackpoint observed the malware targeting credentials for package registries and build-tool ecosystems including npm, Yarn, NuGet, Composer, Maven, and PyPI. An attacker with such credentials could access private packages, publish malicious software, alter dependencies, and execute other supply chain attacks, the security vendor noted.

According to Blackpoint, Djinn Stealer is designed to collect and package stolen data on the endpoint, then encrypt it using AES-256-GCM before exfiltration, with the encryption key itself protected by RSA-2048.

Most notably, Blackpoint found Djinn Stealer equipped to search for credentials associated with AI development tools and agents, including local configuration files for services such as Claude, Gemini, Codex, Cline, OpenCode, and Kilo. 

“Many of these tools rely on the Model Context Protocol (MCP) to connect an AI assistant to external tools and data on the developer’s behalf, including source repositories, databases, cloud accounts, and internal APIs,” according to Blackpoint’s report. Such credentials could allow an attacker to access and manipulate data and cloud infrastructure with the same privileges as the developer or the AI agent itself. 

Related:EdTech Attackers Shift From Schools to Their Software Suppliers

“As AI becomes embedded across development, administration, and business workflows, credentials associated with these platforms are becoming increasingly valuable to threat actors,” notes Nevan Beal, principal MDR analyst at Blackpoint. 

Djinn Stealer, he says, stands out not simply for how it targets AI related data. It is notable also because its collection rules cover a broad and comparatively uncommon range of AI development tools alongside CI/CD credentials, package registry authentication, cloud configurations, source-control access, and traditional browser and wallet data. “This breadth suggests a deliberate focus on the identities and integrations that connect modern developers and administrators to the wider enterprise.”

An Increasing Focus on Development & Admin Systems

For security teams, the intrusion campaign is a reminder of how attackers are increasingly focusing on trusted administrative and development infrastructure to amplify the impact of a single compromise. Another recent example is a breach at Danish pharmaceutical giant Novo Nordisk, where a threat actor used an initial foothold via a single GitHub access token to escalate privileges and steal 1.3TB of sensitive data.

Related:Attackers Hit Cisco SD-WAN Flaw 2 Months Before Disclosure

The broader lesson for security teams is that modern intrusions increasingly target environments that provide downstream access, Beal points out. 

“The compromise of a trusted RMM platform, combined with Djinn Stealer’s focus on portable credentials, reflects an operational strategy built around amplification,” he says. By targeting administrative infrastructure, cloud access, development tooling, and software delivery systems, threat actors can turn one successful intrusion into access across customer tenants, production environments, and interconnected services, he notes.

Sam Decker, threat intelligence engineer at Blackpoint, says the company has not been able to attribute the intrusion to any specific threat actor at the moment. However, the architecture of TaskWeaver and Djinn Stealer reflect “a capable, deliberate operation focused on discovering and collecting high value secrets,” he says. The threat actor leaned on typosquatted Microsoft infrastructure to blend in, with the initial command-and-control server (C2) masquerading as legitimate Microsoft Dev Tunnels and the exfiltration user agent crafted to look like normal Microsoft telemetry collection, Decker adds.

“Based on what we saw, this appeared to be opportunistic scanning for Internet-exposed, vulnerable SimpleHelp instances rather than going after specific targets,” he says. “We didn’t see any of our other customers impacted, but it’s very possible that other exposed instances were hit by the same actor.”

Don’t miss the latest Dark Reading Confidential podcast, Do CISOs Need a Code of Ethics? Kickbacks, no-show jobs, “dirty” VCs, and shelf ware — industry expert Robert “RSnake” Hansen explains why he thinks it’s time for a CISO code of ethics. It could ensure cybersecurity bosses aren’t engaged in self-dealing that could risk enterprise, and even national, security. Listen now!



Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleStrategy launches capital framework with $2.55B reserve and BTC sales plan By Investing.com
Next Article CryptoQuant Flags Rising Bitcoin Whale Share On Gate As BTC Holds Below $60,000
primereports
  • Website

Related Posts

Cybersecurity

WhatsApp is Finally Getting Usernames to Help Keep Phone Numbers Private

June 29, 2026
Cybersecurity

‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access

June 29, 2026
Cybersecurity

Week in review: Fortibleed campaign’s impact on orgs, Cisco Unified CM flaw exploited

June 28, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Paxton’s win over Cornyn sets up high-stakes Texas clash with Talarico

May 28, 202616 Views

Global Resources Outlook 2024 | UNEP

December 6, 202510 Views

Texas Democrat Talarico claims voting laws are rigged ahead of Paxton race

May 28, 20269 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Latest Reviews

Subscribe to Updates

Get the latest tech news from FooBar about tech, design and biz.

PrimeReports.org
Independent global news, analysis & insights.

PrimeReports.org brings you in-depth coverage of geopolitics, markets, technology and risk – with context that helps you understand what really matters.

Editorially independent · Opinions are those of the authors and not investment advice.
Facebook X (Twitter) LinkedIn YouTube
Key Sections
  • World
  • Geopolitics
  • Cybersecurity
  • Popular Now
  • Crypto
  • Artificial Intelligence
All Categories
  • Artificial Intelligence
  • Climate Risks
  • Crypto
  • Cybersecurity
  • Defense
  • Economy
  • Geopolitics
  • Global Markets
  • Healthcare Innovation
  • Politics
  • Popular Now
  • Science
  • Technology
  • World
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms & Conditions
  • Disclaimer
  • Cookie Policy
  • DMCA / Copyright Notice
  • Editorial Policy

Sign up for Prime Reports Briefing – essential stories and analysis in your inbox.

By subscribing you agree to our Privacy Policy. You can opt out anytime.
Latest Stories
  • China’s economy picks up in June on rebounding U.S. exports: analysts
  • Sinner and Sabalenka answer doubters on Wimbledon Day one | Tennis
  • China cracks down on rule-bending offshore investments
© 2026 PrimeReports.org. All rights reserved.
Privacy Terms Contact

Type above and press Enter to search. Press Esc to cancel.