Cloud Security, Security Operations, Threat Intelligence, AI/ML, Breach, MSSP, EDR

AI accelerates threat landscape, compressing intrusion timelines

Futuristic Technology Interface Displaying Artificial Intelligence Concepts with Graphs, Icons, and Data on a Modern Tablet Device by a Business Professional Haptic.

Artificial intelligence has transitioned from a mere curiosity in the threat landscape to an active component of cyber intrusions. Agentic adversaries are now leveraging AI in extortion campaigns, espionage operations, and hacktivist activities, with the speed of these AI-powered tools significantly reducing the response time for defenders, according to insights from Silicon Angle.

Adam Meyers, senior vice president of intelligence at CrowdStrike, highlighted a measurable shift, noting an increase in the number of agentic adversaries tracked. In the past 30 days, 26 agentic adversaries were identified, a figure surpassing the previous year. Groups like REVENANT SPIDER are now incorporating AI agents into their ransomware operations. The speed of these AI-driven attacks is compressing intrusion timelines dramatically.

One instance saw the VAULT PANDA group execute 1,100 commands in just 58 minutes, with the AI agent learning in real-time. This contrasts sharply with the average breakout time of 29 minutes previously reported. CrowdStrike, in collaboration with law enforcement, has also been involved in disrupting long-standing threats, such as the Sality botnet takedown, which took a decade to achieve against a botnet that had been active for 23 years. Meyers emphasized the need to proactively counter adversaries and increase the cost of their operations, while doing so responsibly.

Source: Silicon Angle

An In-Depth Guide to Cloud Security

Get essential knowledge and practical strategies to fortify your cloud security.

You can skip this ad in 5 seconds