Hive0163 Deploys AI-Generated Slopoly Backdoor Framework

IBM X-Force in early 2026 reported that ransomware group Hive0163 deployed an AI-assisted PowerShell command-and-control client named Slopoly during an intrusion, following use of NodeSnake, InterlockRAT, and JunkFiction loader. X-Force found the script showed hallmarks of LLM generation and was used alongside Interlock ransomware and exfiltration tools, signaling accelerated attacker tooling iteration and detection challenges for defenders.
Scoring Rationale
High novelty and credible IBM X-Force reporting, but limited operational mitigation details reduce immediate defender guidance.
Practice with real Logistics & Shipping data
90 SQL & Python problems · 15 industry datasets
250 free problems · No credit card
See all Logistics & Shipping problemsStep-by-step roadmaps from zero to job-ready — curated courses, salary data, and the exact learning order that gets you hired.
Sources
- Read OriginalIBM Discovers ‘Slopoly’ AI-Generated Malware Linked to Hive0163 Ransomwaregbhackers.com


