⋯ full post (1009 more characters) ⋯ show less
🧐 If you missed them, GTIG and Anthropic just released two new reports on AI abuse!
Sophisticated attacks are not anymore a reliable criteria to define the threat actor behind them because the gap between script kiddies and nation-state actors keeps shrinking.
Agentic workflows connected to offensive tools can handle recon, exploitation, exfiltration, translation, targeting and capability development with far less expertise than before.
Your stolen API keys and session tokens are more than ever a juicy target for attackers. They can resell them, power underground services billed on you, use them for attribution laundering and access agents.
Anthropic report shows AI usage on surveillance, large-scale social media analysis, live translation and operator support.
GTIG shows how attackers targets coding agents, MCP servers, agent configuration and AI security systems themselves.
We’ve been observing attackers targeting the AI ecosystem for a while. Now it is accelerating!
There is a lot to unpack from those reports!
https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/251/007/141/565/526/original/067a7189ff2b02f8.png https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/251/007/157/096/043/original/531725acb72130d6.png
🧐 If you missed them, GTIG and Anthropic just released two new reports on AI abuse!
Sophisticated attacks are not anymore a reliable criteria to define the threat actor behind them because the gap between script kiddies and nation-state actors keeps shrinking.
Agentic workflow