Generative AI is a looming cybersecurity threat

IBM X-Force hasn't seen any AI-engineered campaigns but mentions of AI and ChatGPT are proliferating on the dark web.
The X-Force Threat Intelligence Index 2024 report identified over 800,000 references to the emerging technology on illicit and dark web forums last year.
While X-Force does expect AI-enabled attacks in the near term, the real threat will emerge when AI enterprise adoption matures.
Though OpenAI's ChatGPT has become synonymous with generative AI, a competition is afoot to determine which large language models are the most effective and transparent.
In a test of 10 popular AI models, Google's Gemini outpaced competitors, followed by OpenAI's GPT-4 and Meta's Llama 2.
The test, created by Vero AI, measures the visibility, integrity, optimization, legislative preparedness, effectiveness and transparency of models.
Coca-Cola has a $1.1 billion partnership with Microsoft to use its cloud and generative AI services.
General Mills used Google's PaLM 2 model to deploy a private generative AI tool to its employees.
The threat intelligence firm expects that when a single AI technology reaches 50% market share - or when there are no more than 3 primary AI offerings - the cybercrime ecosystem will start developing tools and attacks to go after AI. AI can boost already dominant attack campaigns.
In February, Microsoft reported that hackers from North Korea, Iran and Russia were using Open AI to mount cybersecurity attacks, which the company then said they shut down.
Generative AI can turbo boost social engineering and phishing attacks.
Threat actors can tailor sophisticated phishing attacks by scraping data about users from all corners of the internet, matching pieces of information that might seem similar to know more about a person.
AI can be used to pretend to be a real person applying for a job at a company, which includes a nicely written cover letter and a PDF resume.
Threat actors can use generative AI to crack passwords, increase the launch volume of previously successful attacks, and get around cybersecurity defenses, she added.
Generative AI is also being used to fuel disinformation and misinformation campaigns, said Adam Meyers, CrowdStrike's senior vice president of counter adversary operations.
In the Crowdstrike 2024 Global Threat Report, the company tracked AI images related to the Israel and Hamas war.
While the faked images are relatively easy to spot - in some faked images, people having six fingers, for example - it's still being used, and most likely will continue to be refined through 2024 to disrupt elections.
That doesn't mean corporate cybersecurity professionals are off the hook, because attacks won't just be contained in the political arena.
If someone can make a deep fake of a country president, said Meyers, they can also potentially make a deep fake of a company president.
A malicious actor could use that deep fake on a Zoom call to get employees to do things like make money transfers, and time it to when the hackers know, via social engineering, that the president will be unavailable at that time.


This Cyber News was published on www.cybersecuritydive.com. Publication date: Thu, 09 May 2024 14:43:06 +0000


Cyber News related to Generative AI is a looming cybersecurity threat

11 GenAI cybersecurity surveys you should read - Generative AI stands at the forefront of technological innovation, reshaping industries and unlocking new possibilities across various domains. As the integration of these technologies continues, a vigilant approach to ethical considerations and ...
1 year ago Helpnetsecurity.com
Fortinet Contributes to World Economic Forum's Strategic Cybersecurity Talent Framework - Shining a light on the cybersecurity workforce challenge, the World Economic Forum recently published its Strategic Cybersecurity Talent Framework, which is intended to serve as a reference for public and private decision-makers concerned by the ...
7 months ago Feeds.fortinet.com
Social engineering in the era of generative AI: Predictions for 2024 - Breakthroughs in large language models are driving an arms race between cybersecurity and social engineering scammers. For businesses, generative AI is both a curse and an opportunity. It's not just AI models themselves that cyber criminals are ...
7 months ago Securityintelligence.com
Navigating the New Frontier of AI-Driven Cybersecurity Threats - A few weeks ago, Best Buy revealed its plans to deploy generative AI to transform its customer service function. Best Buy's initiative is a harbinger of generative AI deployment in enterprise settings, aiming to increase productivity and improve ...
7 months ago Securityboulevard.com
What Lurks in the Dark: Taking Aim at Shadow AI - Security teams are confronting a new nightmare this Halloween season: the rise of generative artificial intelligence. Generative AI tools have unleashed a new era of terror for chief information security officers, from powering deepfakes that are ...
1 year ago Darkreading.com
4 key devsecops skills for the generative AI era - Experts believe that generative AI capabilities, copilots, and large language models are ushering in a new era of how developers, data scientists, and engineers will work and innovate. They expect AI to improve productivity, quality, and innovation, ...
11 months ago Infoworld.com
Generative AI is a looming cybersecurity threat - IBM X-Force hasn't seen any AI-engineered campaigns but mentions of AI and ChatGPT are proliferating on the dark web. The X-Force Threat Intelligence Index 2024 report identified over 800,000 references to the emerging technology on illicit and dark ...
7 months ago Cybersecuritydive.com
Simbian Unveils Generative AI Platform to Automate Cybersecurity Tasks - Simbian today launched a cybersecurity platform that leverages generative artificial intelligence to automate tasks that can increase in complexity as the tool learns more about the IT environment. Fresh off raising $10 million in seed funding, ...
8 months ago Securityboulevard.com
Growing threats outpace cybersecurity workforce - The cybersecurity skills shortage threatens the well-being and even survival of numerous businesses as cybersecurity threats grow more numerous, sophisticated, and dangerous to the point that cybersecurity groups have vowed not to pay ransom demands. ...
10 months ago Legal.thomsonreuters.com
Student Cybersecurity Clubs: Fostering Online Safety - Student cybersecurity clubs are playing a crucial role in promoting online safety among students. Student cybersecurity clubs play a vital role in this regard, as they provide a platform for students to learn about the latest threats, share best ...
11 months ago Securityzap.com
Generative AI Takes on SIEM - With more vendors adding support for generative AI to their platforms and products, life for security analysts seems to be getting deceptively easier. While adding generative AI capabilities to security information and event management is still in ...
1 year ago Darkreading.com
Generative AI Redefines Cybersecurity Defense Against Advanced Threats - In the ever-shifting realm of cybersecurity, the dynamic dance between defenders and attackers has reached a new echelon with the integration of artificial intelligence, particularly generative AI. This technological advancement has not only armed ...
10 months ago Cysecurity.news
Generative AI vs. Predictive AI: A Cybersecurity Perspective - In the context of cybersecurity, AI promises considerable benefits however there's still a lot of confusion surrounding the topic, particularly around the terms generative AI and predictive AI. Given the high failure rate for AI projects let's ...
5 months ago Securityboulevard.com
How to become a cybersecurity architect - Cybersecurity architects implement and maintain a comprehensive cybersecurity framework to protect their company's digital assets. The cybersecurity architect position is a fundamental role that all organizations need, said Lester Nichols, director ...
5 months ago Techtarget.com
Cybersecurity Curriculum Development Tips for Schools - With the constant threat of cyber attacks, schools must prioritize the development of a robust cybersecurity curriculum to equip students with the necessary skills and knowledge. This article provides valuable insights and tips for schools aiming to ...
11 months ago Securityzap.com
Staying ahead of threat actors in the age of AI - At the same time, it is also important for us to understand how AI can be potentially misused in the hands of threat actors. In collaboration with OpenAI, today we are publishing research on emerging threats in the age of AI, focusing on identified ...
10 months ago Microsoft.com
LinkedIn Tests Generative AI to Field Cybersecurity Questions From Employees and Suppliers - LinkedIn is testing how generative artificial intelligence could help employees and external suppliers get answers about cybersecurity policies within seconds, potentially cutting wait times for business deals or decisions to implement new tools. ...
1 year ago Wsj.com
The Importance of Cybersecurity Education in Schools - Cybersecurity education equips students with the knowledge and skills needed to protect themselves and others from cyber threats. Cybersecurity education can teach students about the impact of cyberbullying, how to prevent it, and how to respond ...
1 year ago Securityzap.com
What the cybersecurity workforce can expect in 2024 - For cybersecurity professionals, 2023 was a mixed bag of opportunities and concerns. The good news is that the number of people in cybersecurity jobs has reached its highest number ever: 5.5 million, according to the 2023 ISC2 Global Workforce Study. ...
11 months ago Securityintelligence.com
How to Build a Data Foundation for Generative AI - Generative AI is not just a general-purpose productivity aid that surfaces information the way a search engine does; with gen AI, organizations can combine their unique, proprietary data with foundation models that have been pre-trained on a broad ...
11 months ago Feeds.dzone.com
Understanding the New SEC Rules for Disclosing Cybersecurity Incidents - The U.S. Securities and Exchange Commission recently announced its new rules for public companies regarding cybersecurity risk management, strategy, governance, and incident exposure. "Currently, many public companies provide cybersecurity disclosure ...
1 year ago Feeds.dzone.com
Digital Learning Tools for Cybersecurity Education - In the field of cybersecurity education, digital learning tools have become indispensable. This article explores various digital learning tools tailored specifically to cybersecurity education. These digital learning tools play a crucial role in ...
11 months ago Securityzap.com
Cybersecurity Training for Business Leaders - This article explores the significance of cybersecurity training for business leaders and its crucial role in establishing a secure and resilient business environment. By examining the key components of effective training programs and the ...
10 months ago Securityzap.com
Fortinet Adds Generative AI Tool to Security Operations Portfolio - Fortinet today added a generative artificial intelligence tool to its portfolio to eliminate a range of manual tasks that security operations teams would otherwise need to perform. John Maddison, chief marketing officer for Fortinet, said Fortinet ...
1 year ago Securityboulevard.com
Microsoft's 'Copilot for Security' brings generative AI to the frontlines of cybersecurity - Microsoft announced today that Copilot for Security, a generative AI-powered platform designed to assist security professionals in combating the ever-evolving cyberthreat landscape, will be generally available worldwide starting April 1st. The launch ...
9 months ago Venturebeat.com

Latest Cyber News


Cyber Trends (last 7 days)


Trending Cyber News (last 7 days)