• Skip to main content
  • Skip to secondary menu
  • Skip to primary sidebar
cybersourcedaily.com

cybersourcedaily.com

Cyber news for everyone

  • Conferences
  • 🔐 Privacy Policy
  • 📄 Terms of Service (ToS)
  • News

Slopsquatting: The Cybersecurity Threat That Could Catch You Off Guard!

April 18, 2025 by jhale

Bleeping computer reports about a new attack called “Slopsquatting.” This is a supply chain attack similar to Typosquatting–when hackers purchase domains that look similar to legitimate ones.

LLMs sometimes generate nonsense, which we call hallucinations or slop. Typosquatting, a phishing attack targeting human finger dexterity failures, is the squatting part of the name.

When unsuspecting users make a common typo when entering a domain, they are directed to the hacker’s phishing website. Similarly, a chatbot such as ChatGPT might recommend installing packages that don’t exist from public repositories. If the LLM directs the user to install a package that doesn’t exist from npm, a hacker might upload a malicious package by that hallucinated name and wait for the LLM to recommend it to the victim.

A hacker might register a domain that looks “close enough” to a popular one.


Here is an example of ChatGPT recommending me an RSS reader.

An example of some slop that could be squatted. viennarss dot net is the wrong domain name.


There is a real RSS reader by that name but the website is www.vienna-rss.com, and it appears to be a legit one with a long history and an active Github project. If a bad actor wanted to execute a slop-squatting attack, they could set up a phishing site pretending to be the Vienna RSS reader. An unsuspecting user might then install a compromised version of that software.

Now that’s bad news!

What is vibe coding?

Vibe coding, a new programming workflow, involves human programmers collaborating with LLMs to write most of a software project’s code. Humans prioritize requirements, testing, and feedback to the LLM, leading to an efficient coding process.

Vibe coders might be most susceptible to this attack since they rely heavily on LLM-generated output in their workflow. However, anyone should be vigilant whenever an LLM recommends installing software or visiting a website.

The article also mentions no known instances of active exploitation, but it will likely be one to watch. As always, please be sure to exercise caution when interacting with AI-generated content.

Filed Under: News Tagged With: ai, llm, slopsquatting, supply chain

Primary Sidebar

Recent Posts

  • China’s debuts AI powered, unmanned submarine
  • This Data Breach Looks Big—But There’s a Twist
  • Signal uses DRM to block Microsoft Recall
  • CISA plans to drop Censys and VirusTotal
  • 4chan suffers major hack

Recent Comments

  1. anon on Confusions Arise Over Signal’s Security

Archives

  • June 2025
  • May 2025
  • April 2025
  • March 2025

Categories

  • Artificial Intelligence
  • Breaches
  • News

Tags

ai artificial intelligence breach cloud cryptography data database encryption llm microsoft opsec oracle passwords recall signal slopsquatting supply chain

Categories

Copyright © 2025 · Cyber Source Daily · Log in