Hackers abuse AI models to find new entry paths – cybersecuritydive.com

Let Cybersecurity Dive’s free newsletter keep you informed, straight from your inbox.

Network defenders are racing to secure their IT systems before criminal and state-actors circumvent existing guardrails.
Criminal and state-aligned threat groups are testing frontier and open-weight AI models to develop new methods of attacking corporate IT networks. 
Attackers are using AI for a range of activities, enabling them to develop new exploits, accelerate attack speeds and maintain persistence through the abuse of legitimate tools, researchers from Accenture and Google Cloud said during a media presentation at the Black Hat USA conference in Las Vegas.
Developers have increasingly placed guardrails on certain frontier AI models, in order to limit their misuse. In response, threat groups are turning to open-weight models to circumvent those controls and augment their capabilities to conduct malicious activities. 
For a threat actor carrying out a complex attack, there is an interest in being able to operate in the relative anonymity of model with less oversight. 
“Do you really want to do it in a place where you could potentially be observed?” John Hultquist, chief analyst at Google Threat Intelligence Group, asked about the potential threat. 
GTIG researchers in May warned that threat actors were using AI to leverage a working zero-day exploit. Threat actors have also targeted AI environments to target software supply chains for larger scale campaigns. 
The surge in AI-assisted hacks come at a time when frontier AI companies place security guardrails around the technology, while avoiding additional regulatory scrutiny. 
Just last month, an alarming security breach took place when an autonomous agent at OpenAI broke containment and breached the Hugging Face production environment. AI security critics saw the incident as confirmation that AI developers needed more regulatory guardrails around the technology. 
Ryan Whelan, managing director and global head of Accenture Cyber Intelligence, said by targeting these open-weight models, the “barriers to entry” are being lowered for threat actors trying to conduct these malicious activities. 
Threat actors have used AI to gain entry into corporate networks through new techniques, said Whelan, who led the Black Hat discussion. Instead of stealing passwords, hackers have turned to stealing tokens, cookies or session IDs, which allow them to bypass traditional security protocols. 
Security teams are being dragged into an AI-based arms race where the technology is allowing adversaries to gain a foothold into corporate systems before security teams can detect an intrusion and limit the damage.
Get the free daily newsletter read by industry experts
A multiyear lull in insurance rates and insurers’ over-dependence on large U.S. policyholders have led to more restrictions and exclusions in coverage.
Google researchers say the hackers abused a third-party tool in an attack spree designed to harvest credentials.
Subscribe to Cybersecurity Dive for top news, trends & analysis
Sign up for the free newsletter.
Interested? Explore more of what has to offer.
Thanks for signing up! Please keep an eye out for a confirmation email from [email protected] To ensure we make it into your inbox regularly, add us to your allow list, mark us as a safe sender, or add us to your address book. Check out more from
Get the free daily newsletter read by industry experts
A multiyear lull in insurance rates and insurers’ over-dependence on large U.S. policyholders have led to more restrictions and exclusions in coverage.
Google researchers say the hackers abused a third-party tool in an attack spree designed to harvest credentials.
The free newsletter covering the top industry headlines

source
This is a newsfeed from leading technology publications. No additional editorial review has been performed before posting.

Leave a Reply