Malicious AI Skills Campaign Reaches 1.7 Million Installs Through Typosquatting Attack
Researchers have uncovered a supply chain attack targeting AI agents through trojanized skills that accumulated over 1.7 million installs and deployed credential stealing malware from GitHub.