AI-Enabled Cyberattacks: How They Work and How to Defend Against Them

· Original article ↗

Summary

An explainer on how AI is speeding up and scaling cyberattacks, with examples of agentic operations, pressure on vulnerability patching, and guidance for validating security controls.

Key points

  • The article distinguishes AI-assisted attacks from agentic operations, in which AI plans, executes, and adapts across attack stages.
  • Anthropic attributed the 2025 GTG-1002 campaign to a Chinese state-sponsored group and reported that Claude Code performed 80–90% of tactical operations across roughly 30 targets.
  • Sysdig described JadePuffer as the first known agentic ransomware operation; after a failed backdoor login, its agent corrected the payload in 31 seconds.
  • CrowdStrike reported an 89% year-over-year rise in attacks by AI-enabled adversaries, while the article says vulnerability discovery is outpacing human review and patching.
  • The article recommends prioritizing vulnerabilities by verified exploitability, continuously testing prevention and detection controls, and triggering validation when threats or environments change.
  • It advises automating security validation with human approval at key decision points and maintaining an audit trail.

Article Details

Topic
AI-enabled cyber attacks and machine-speed security validation

Vendors

Products

Countries

Related Articles