Autonomous AI attacks pose 'clear and present danger' to critical infrastructure
Weaponized agents could turn digital intrusions into kinetic disasters, experts warn
In July, hackers leveraged open-source AI agents to autonomously penetrate government networks and energy firms, indicating that AI-driven assaults on essential infrastructure are no longer speculative. TrendAI's VP of AI security and threat research, Tom Kellermann, predicts that such attacks will become a "clear and present danger" as geopolitical tensions escalate.
Kellermann warns that weaponized AI could disable safety systems in critical infrastructure, leading to devastating consequences. This scenario is reminiscent of autonomous strike vehicles in Ukraine's battles, and Kellermann suggests that we should anticipate AI-aided attacks on critical infrastructure. The FBI's assistant director of the Cyber Division, Brett Leatherman, echoes this concern, emphasizing the potential for AI to transform cyber threats into kinetic disasters affecting vital systems like water and wastewater treatment plants, the electric grid, and financial networks.
A recent attack on Taiwanese government systems, involving up to eight sub-agents, compromised sensitive data, credentials, and infrastructure. While the attack methods were not attributed to AI, the incident highlights the potential for AI systems to exploit vulnerabilities and misconfigurations in critical infrastructure. Experts warn that existing vulnerabilities, particularly in Programmable Logic Controllers (PLCs), pose significant risks due to deferred maintenance and unpatched systems.
Open-weight AI models, readily available online, can quickly identify vulnerabilities and adapt attacks, making them accessible to even non-specialists. The widespread use of these models could exacerbate the threat landscape, as attackers no longer need specialized knowledge to exploit industrial control systems (ICS). This development could potentially turn the complex world of ICS into a commodity, making it easier for malicious actors to cause significant disruptions in essential services and national security.
Written by urgent.news from The Register's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.