{
  "id": 7814052,
  "title": "Anatomy of an AI-powered hack",
  "url": "https://urgent.news/2026/09/16/anatomy-of-an-ai-powered-hack",
  "topic": "ai",
  "section": "AI",
  "published": "2026-09-16T15:18:19.000Z",
  "source": {
    "name": "Semafor",
    "slug": "semafor",
    "url": "https://www.semafor.com/article/09/16/2026/anatomy-of-an-ai-powered-hack"
  },
  "original_language": "en",
  "account": "A recent AI-powered hack demonstrated how human hackers are leveraging frontier AI models to expedite their malicious activities. Palo Alto Networks, which assisted in defending a European IT and software company against an extortion attempt, revealed that the hack was completed in under 10 hours, a process that typically takes human hackers around two weeks.\n\nThe attack began with the human hacker deploying an AI agent to conduct reconnaissance, essentially launching a massive internet scan to identify potential vulnerabilities. Once the hacker gained access to the company's system, sub-agents were deployed to extract credentials from code repositories, a critical step known as \"living off the land.\" This technique involves using the victim's own software to carry out attacks, making it harder to detect.\n\nThe stolen credentials were then used to infiltrate the company's software deployment system, allowing hackers to access their cloud accounts and gain control over the company's AI tools. The attack culminated with a ransom demand, but the team managed to thwart the attack before the hackers could fully succeed. An 80-page technical report detailing the vulnerabilities was left behind, providing valuable insights for the company's security team.\n\nWhile the prospect of AI enhancing hacking capabilities may raise concerns, Palo Alto Networks' threat researcher, Andy Piazza, emphasized that the attack was a result of a human directing AI agents, rather than an autonomous hack. This situation is similar to how good actors use AI, with humans overseeing the process and making decisions based on the AI's results. Although AI systems are gaining access to sensitive data, the techniques used in this attack are not novel and can be replicated by human hackers. This situation underscores the importance of robust cybersecurity measures to protect against such threats.",
  "summary": "Palo Alto Networks revealed to Semafor fresh details about an AI-powered hack over the summer that targeted a European IT and software company.",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}