News Room
16
Share
Cisco Talos Uncovers 'CLOSEDQUORUM' Malware Using Autonomous Multi-LLM Decision Engines
criticalAI Cyber Attacks

Cisco Talos Uncovers 'CLOSEDQUORUM' Malware Using Autonomous Multi-LLM Decision Engines

Researchers have identified a sophisticated new Windows malware, CLOSEDQUORUM, that leverages four distinct AI chatbots to autonomously execute credential theft and cryptocurrency exfiltration.

₿

Encrygma is selling the entire Full Cyber Weapon Research of Cisco Talos Uncovers 'CLOSEDQUORUM' Malware Using Autonomous Multi-LLM Decision Engines for ₿ 0.10 BTC. Contact us.

07 October 2026Last updated 07 October 20264 min readCisco Talos
E
Encrygma AI Cyber Weapons Advisory Services : ₿ 0.10 BTCWe sell the full cyber research about this cyber weapon, including full source code, technical blueprints, exploits, implants and control and command dashboards. Consult with us · Telegram

Executive Takeaway — TL;DR

Category:
AI Cyber Attacks
Severity:
Critical
Actor Type:
APT
Geography:
Global
Confidence:
Confirmed
Source:
Cisco Talos
Read Time:
4 min

Executive Summary

Cisco Talos researchers have recently identified a groundbreaking evolution in malicious software: CLOSEDQUORUM. Unlike traditional malware that relies on hardcoded logic or human-operated command-and-control (C2) servers, CLOSEDQUORUM utilizes an integrated, autonomous decision-making engine powered by multiple Large Language Models (LLMs). This shift marks a transition from AI as a mere productivity tool for attackers to AI as a core component of the attack infrastructure itself.

Threat Analysis

CLOSEDQUORUM is designed to operate with minimal human intervention. By querying multiple AI services—specifically DeepSeek, Qwen, Mistral, and Google Gemini—the malware can adapt its tactics in real-time based on the environment it infects. This redundancy ensures that if one AI service is blocked or unavailable, the malware seamlessly pivots to another, maintaining its operational tempo. The malware focuses primarily on the theft of sensitive credentials and cryptocurrency assets.

Technical Details

The malware was detected using Cisco Talos’s new CAIRN (Cognitive Artifact Intelligence Research Network) framework, which identifies digital fingerprints left by AI-integrated code. CLOSEDQUORUM functions by sending environmental data to the aforementioned LLMs, which then provide instructions on the next malicious step. The malware evaluates the responses from these models for reliability before execution, effectively creating a 'consensus' mechanism that minimizes the risk of triggering security alerts or failing to execute commands. This autonomous loop allows the malware to perform complex tasks like network mapping and privilege escalation without manual input.

Attribution Assessment

While the specific threat actor behind CLOSEDQUORUM remains under investigation, the sophistication of the integration suggests a highly capable group with the resources to maintain persistent API access to multiple frontier AI models. The use of diverse, international LLMs indicates an attempt to bypass regional restrictions and ensure high availability for the malware's decision-making process.

Implications

The emergence of CLOSEDQUORUM signals a critical shift in the threat landscape. As AI-powered malware becomes more autonomous, the time window for defenders to respond to an active breach is shrinking. Traditional signature-based detection is increasingly ineffective against malware that can dynamically rewrite its own logic or adapt its behavior based on LLM-generated advice.

Recommendations

Organizations must prioritize the implementation of AI-aware security monitoring. Security teams should: 1) Deploy behavioral analytics that can detect anomalous API traffic patterns associated with unauthorized LLM queries. 2) Utilize frameworks like CAIRN to audit internal systems for AI-integrated malicious artifacts. 3) Strengthen endpoint detection and response (EDR) policies to restrict unauthorized outbound connections to AI service providers from sensitive production environments.

Professional Spy Phones — ZERO-CLICK Spyware: Samsung Galaxy and iPhone hardware-modified with a dedicated implant for remote surveillance, lawful interception, and corporate compliance monitoring.
ENCRYGMA

Need Zero Click Spyware for Android and iOS?

Encrygma delivers serverless, offline, quantum-safe encrypted communications built for executives, agencies, and operators facing zero-click spyware and advanced mobile surveillance threats.

Request a demo