strix (1)

31273589484?profile=RESIZE_400xA financially-motivated threat actor recently deployed open-source AI agent frameworks to attack hundreds of online retailers at scale, compromising more than 100 e-commerce websites and exfiltrating over 600,000 credit card records.  Active since July 2026, the campaign has leveraged three specialized AI tools to execute the complete attack chain across target networks with minimal human intervention.[1]

The automated framework relied on Strix, an AI penetration testing framework that conducted