Close Menu
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

What's On
Snapseed update brings retro film camera vibes and manual controls to your iPhone

Snapseed update brings retro film camera vibes and manual controls to your iPhone

19 February 2026
How to Organize Safely in the Age of Surveillance

How to Organize Safely in the Age of Surveillance

19 February 2026
AI chatbots with web browsing can be abused as malware relays

AI chatbots with web browsing can be abused as malware relays

19 February 2026
Facebook X (Twitter) Instagram
Just In
  • Snapseed update brings retro film camera vibes and manual controls to your iPhone
  • How to Organize Safely in the Age of Surveillance
  • AI chatbots with web browsing can be abused as malware relays
  • Review: Bowers & Wilkins Px7 S3 Headphones
  • Google Maps tests hiding reviews and images unless you sign in
  • Inside the Gay Tech Mafia
  • Meta could launch a smartwatch in 2026, years after killing its original plans
  • Best Home Gym Setup (2026): Adjustable Weights, Resistance Bands, and More
Facebook X (Twitter) Instagram Pinterest Vimeo
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release
Subscribe
Best in TechnologyBest in Technology
Home » AI chatbots with web browsing can be abused as malware relays
News

AI chatbots with web browsing can be abused as malware relays

News RoomBy News Room19 February 20263 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
AI chatbots with web browsing can be abused as malware relays
Share
Facebook Twitter LinkedIn Pinterest Email

AI chatbots with web browsing can be abused as malware relays, based on a Check Point Research demo. Instead of malware calling home to a traditional command server, it can use a chatbot’s URL fetching to pull instructions from a malicious page, then carry the response back to the infected machine.

In many environments, traffic to major AI destinations is already treated as routine, which can let command-and-control fade into normal web use. The same path can also be used to move data out.

Microsoft addressed the work in a statement and framed it as a post-compromise communications issue. It said that once a device is compromised, attackers will try to use whatever services are available, including AI-based ones, and it urged defense-in-depth controls to prevent infection and reduce what happens after.

The demo turns chat into a relay

The concept is straightforward. The malware prompts the AI web interface to load a URL, summarize what it finds, then scrapes the returned text for an embedded instruction.

Check Point said it tested the technique against Grok and Microsoft Copilot through their web interfaces. A key detail is access, the flow is designed to avoid developer APIs, and in the tested scenarios it can work without an API key, lowering friction for misuse.

For data theft, the mechanism can run in reverse. One method outlined is to place data in URL query parameters, then rely on the AI-triggered request to deliver it to adversary infrastructure. Basic encoding can further obscure what’s being sent, which makes simple content filtering less reliable.

Why it’s harder to spot

This isn’t a new malware class. It’s a familiar command-and-control pattern wrapped in a service many companies are actively enabling. If browsing-enabled AI services are left open by default, an infected system can try to hide behind domains that look low-risk.

Check Point also highlights how common the plumbing is. Its example uses WebView2 as an embedded browser component on modern Windows machines. In the described workflow, a program gathers basic host details, opens a hidden web view to an AI service, triggers a URL request, then parses the response to extract the next command. That can resemble ordinary app behavior, not an obvious beacon.

What security teams should do

Treat web-enabled chatbots like any other high-trust cloud app that can be abused after compromise. If it’s permitted, monitor for automation patterns, repeated URL loads, odd prompt cadence, or traffic volumes that don’t match human use.

AI browsing features may belong on managed devices and specific roles, not every machine. The open question is scale, this is a demo and it doesn’t quantify success rates against hardened fleets. What to watch next is whether providers add stronger automation detection in web chat, and whether defenders start treating AI destinations as potential post-compromise channels.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleReview: Bowers & Wilkins Px7 S3 Headphones
Next Article How to Organize Safely in the Age of Surveillance

Related Articles

Snapseed update brings retro film camera vibes and manual controls to your iPhone
News

Snapseed update brings retro film camera vibes and manual controls to your iPhone

19 February 2026
How to Organize Safely in the Age of Surveillance
News

How to Organize Safely in the Age of Surveillance

19 February 2026
Review: Bowers & Wilkins Px7 S3 Headphones
News

Review: Bowers & Wilkins Px7 S3 Headphones

19 February 2026
Google Maps tests hiding reviews and images unless you sign in
News

Google Maps tests hiding reviews and images unless you sign in

19 February 2026
Inside the Gay Tech Mafia
News

Inside the Gay Tech Mafia

19 February 2026
Meta could launch a smartwatch in 2026, years after killing its original plans
News

Meta could launch a smartwatch in 2026, years after killing its original plans

19 February 2026
Demo
Top Articles
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 2024126 Views
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024110 Views
Costco partners with Electric Era to bring back EV charging in the U.S.

Costco partners with Electric Era to bring back EV charging in the U.S.

28 October 202498 Views

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Latest News
Inside the Gay Tech Mafia News

Inside the Gay Tech Mafia

News Room19 February 2026
Meta could launch a smartwatch in 2026, years after killing its original plans News

Meta could launch a smartwatch in 2026, years after killing its original plans

News Room19 February 2026
Best Home Gym Setup (2026): Adjustable Weights, Resistance Bands, and More News

Best Home Gym Setup (2026): Adjustable Weights, Resistance Bands, and More

News Room19 February 2026
Most Popular
The Spectacular Burnout of a Solar Panel Salesman

The Spectacular Burnout of a Solar Panel Salesman

13 January 2025137 Views
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 2024126 Views
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024110 Views
Our Picks
Review: Bowers & Wilkins Px7 S3 Headphones

Review: Bowers & Wilkins Px7 S3 Headphones

19 February 2026
Google Maps tests hiding reviews and images unless you sign in

Google Maps tests hiding reviews and images unless you sign in

19 February 2026
Inside the Gay Tech Mafia

Inside the Gay Tech Mafia

19 February 2026

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Facebook X (Twitter) Instagram Pinterest
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact Us
© 2026 Best in Technology. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.