RSS Amplifier

Goju (Justin) Gottschlich · Apr 7, 2026

The Two Most Nefarious AI Hacks You've Never Heard Of

0
Sign in to vote or save

Goju Tech Talk · Goju (Justin) Gottschlich

While Anthropic and legacy news outlets continue to turn a blind-eye to the Claude Code (CC) source code leak, it’s sent the developer world — especially the vibe coding community — into a death spiral. The reason for this is many-fold. In this brief, we get into the two most important and already spreading forms of vulnerabilities that are affecting vibe coders.

What’s worse is you — whoever you are — are probably going to be impacted, too. You just don’t know it yet. Stick around; it’ll make a whole lot of sense in the next two minutes.

The Landscape

After the CC leak, I spent dozens of hours working alongside expert researchers, developers, and AI enthusiasts to understand the scope and impact of the leak. While many people were focusing on the leak itself — as an opportunity to learn more about CC, what makes CC so good, and how to level up their own AI interests — I set out to understand what was likely going to happen next. New opportunities? New startups? New copycat clones?

But then I realized that there’s a darker side to this based on one simple question — what new vulnerabilities are now more likely to happen given the leak?

I hadn’t thought of that initially. “Uh-oh. F***.”

It seems clear to me now that there are at least two major classes of vulnerabilities that are more likely to occur given the CC leak. Both are specific to stochastic AIs (e.g., large language models (LLMs), small language models (SLMs), transformer-based neural networks, neurosymbolic reasoners, etc.). Both could not happen without stochastic AIs. Right now, I’m calling them:

  • AI Takeover

  • Vibe Corruption (what happens when you recklessly vibe code)

I’ll write a follow-up article at some point with notably more details, but for now here’s the gist.

What is AI Takeover?

An AI takeover is when the AI system you are using is hacked. But unlike a traditional hack, it doesn’t inject malicious code: it injects a malicious ML model. Once that happens, you will be interacting with a malware system that — in many cases — you will likely not even know is malicious. If done properly, it will look and feel exactly like the “good” model. But it won’t be. It’ll be something far more nefarious. It’ll be secretly doing bad actor things in the background. And what makes AIT so much more dangerous is when it’s used in environments like vibe coding.

That’s because these environments are already setup to be root permissible, meaning that the AI system already has unfettered access to a large majority of your machine. But don’t worry, even if you have sandboxed it, the AITs will likely be sufficiently smart and can maneuver in such a way to workaround any sandboxed restrictions you placed on it. More on that later.

The general concern with AIT is that it’s not just one thing. It’s not a ransomware system. It’s not a phishing system. It’s not a data theft system. It could be all at once. And because it’s AI-driven, it can likely evolve to get better and better over time.

With key advances in small language models, the possibility of these being locally resident and doing bad things is increasingly more likely. There’s a lot more to unpack here, but we’ll save that for the longer version of the article.

(Note: I’m pronouncing AI Takeover or AIT as “ate” — which is sort of fitting. If you have an AI takeover event on your machine, you will legitimately be “eaten.” It is eating you. Slowly. And your life is about really suck. Sorry about that; for real.)

What is Vibe Corruption?

In a nutshell, vibe corruption is the process of using an AIT system in a vibe coded environment, where the AIT models are secretly injecting malicious code into your app. Yup. The one you’ve spent weeks building. The one you also have never reviewed the code for. The one that is the perfect stomping ground for malicious code injection that AIT models are brilliantly designed to produce.

What makes vibe corruption so much worse than a simple malware injection into a single app through some backdoor that’s a one-off (e.g., Linux XZ utils backdoor) is that thousands of vibe coders are already not reviewing their code, yet distributing their software to thousands (maybe millions?) of customers. This is especially true for incubators, like Y-Combinator.

And Now It Gets Really Bad (Sorry)

When you have AIT and vibe corruption together, they can piggyback off of each other. You have a sort of “perfect storm” for complete chaos. You have an AIT system that can easily generate malicious code (and other nefarious things) and you also have an entire new generation of app developers who have been told not to read (or even learn) how to code. Yeah, we did that. So guess who the AITs attack?

It doesn’t stop there. A really clever AIT system won’t just perform vibe corruption. It’ll be done so the newly infected apps “phone home” and download those very AIT models to the customers who are being infected by the vibe corruption. Now you have a self-replicating AI system that has the potential to spread from a single infected machine to potentially millions of people, while remaining nearly invisible as it self-replicates and infects.

Yup. Not great, my friend. And guess what? We did this. We created this monster.

The Conclusion

I don’t yet know how to combat this aside outside of a complete ban of all stochastic AI systems. But the first thing we can and should do is protect ourselves so we don’t get infected. We must harden ourselves to be resilient to AITs and vibe corruption.

I only recently pieced all of this together (last night, in fact), so I’m still working it all out in my head. But I did do a short live stream on YouTube, Instagram, and Kick . I strongly recommend you watch the recorded YT video.

This is not fear-mongering — folks, this is about to get very, very bad. In fact, I’ve already spoken to people who we think have are already “ate.” Or AIT-ed. Or eaten. Or … you know what I’m saying. This sucks.

Welcome to our latest clusterf***. On the bright side, at least we now have a common enemy.

- Goju

(Consider subscribing to our substack, YT (youtube.com/@gojutechtalk) and our GTT Discord so you can stay current on all of this as we figure it out together. I doubt any single person can figure this out alone. I know I can’t. We need community now more than ever. Please help. We need you.)

No posts

Read the original on goju01.substack.com

Comments

Nothing yet. Say the first thing.

    Sign in to join the conversation.