Close Menu
TechurzTechurz

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    What we’re looking for in Startup Battlefield 2026 and how to put your best application forward

    March 30, 2026

    ScaleOps raises $130M to improve computing efficiency amid AI demand

    March 30, 2026

    Qodo raises $70M for code verification as AI coding scales

    March 30, 2026
    Facebook X (Twitter) Instagram
    Trending
    • What we’re looking for in Startup Battlefield 2026 and how to put your best application forward
    • ScaleOps raises $130M to improve computing efficiency amid AI demand
    • Qodo raises $70M for code verification as AI coding scales
    • Elon Musk’s last co-founder reportedly leaves xAI
    • From Moon hotels to cattle herding: 8 startups investors chased at YC Demo Day
    • Aetherflux reportedly raising Series B at $2 billion valuation
    • OpenAI shuts down Sora while Meta gets shut out in court
    • VCs are betting billions on AI’s next wave, so why is OpenAI killing Sora?
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechurzTechurz
    • Home
    • AI
    • Apps
    • News
    • Guides
    • Opinion
    • Reviews
    • Security
    • Startups
    TechurzTechurz
    Home»Security»LLMs are guessing login URLs, and it’s a cybersecurity time bomb
    Security

    LLMs are guessing login URLs, and it’s a cybersecurity time bomb

    TechurzBy TechurzJuly 1, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Phishing-Angriff
    Share
    Facebook Twitter LinkedIn Pinterest Email


    “This creates a perfect storm for cybercriminals,” said J Stephen Kowski, Field CTO at SlashNext. “When AI models hallucinate URLs pointing to unregistered domains, attackers can simply register those exact domains and wait for victims to arrive.” He likens it to giving attackers a roadmap to future victims. “A single malicious link recommended can compromise thousands of people who would normally be more cautious.”

    The findings from Netcraft research are particularly concerning as National brands, mainly in finance and fintech, were found among the hardest hit. Credit unions, regional banks, and mid-sized platforms fared worse than global giants. Smaller brands, which are less likely to appear in LLM training data, were highly hallucinated.

    “LLMs don’t retrieve information, they generate it,” said Nicole Carignan, Field CISO at Darktrace. “And when users treat those outputs as fact, it opens the door for massive exploitation.” She pointed to an underlying structural flaw: models are designed to be helpful, not accurate, and unless AI responses are grounded in validated data, they will continue to invent URLs, often with dangerous consequences.

    Researchers pointed out that registering all the hallucinated domains in advance, a seemingly viable solution, will not work as the variations are infinite and LLMs are always going to invent new ones, leading to slopsquatting attacks.

    bomb cybersecurity guessing LLMs login time URLs
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleThis home NAS with 32TB, 4K HDMI, and AI photo sorting sounds too wild to ignore
    Next Article A Pro-Russia Disinformation Campaign Is Using Free AI Tools to Fuel a ‘Content Explosion’
    Techurz
    • Website

    Related Posts

    Opinion

    The Minneapolis tech community holds strong during ‘tense and difficult time’

    February 3, 2026
    Opinion

    VCs abandon old rules for a ‘funky time’ of investing in AI startups

    November 14, 2025
    Security

    AI is becoming introspective – and that ‘should be monitored carefully,’ warns Anthropic

    November 3, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    College social app Fizz expands into grocery delivery

    September 3, 20252,288 Views

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202516 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 202512 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    College social app Fizz expands into grocery delivery

    September 3, 20252,288 Views

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202516 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 202512 Views
    Our Picks

    What we’re looking for in Startup Battlefield 2026 and how to put your best application forward

    March 30, 2026

    ScaleOps raises $130M to improve computing efficiency amid AI demand

    March 30, 2026

    Qodo raises $70M for code verification as AI coding scales

    March 30, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 techurz. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.