GLOBEALERT
CYBERELEVATEDJul 6 · Jul 6, 2026, 6:33 AM

SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting Packing

The Hacker News

Scanners meant to catch malicious add-on "skills" for AI coding agents can be fooled by a few simple changes that leave the malware working, according to a new study from researchers at the Hong Kong University of Science and Technology. Their strongest trick slipped past every scanner tested more than 90% of the time, and the same team built a runtime checker that catches most of the

GlobeAlert aggregates and classifies open sources; the story above belongs to its publisher. Summaries are machine-generated from the source text.

More in Cyber