fuente: https://cybersecuritynews.com/ai-agents-breach-company-network/
A human attacker armed with frontier artificial intelligence models breached an enterprise network and seized root credentials in under 10 hours, a timeline that would normally take human red teams roughly two weeks to complete, according to a new incident response report from Palo Alto Networks’ Unit 42.
The threat actor told Unit 42 investigators during ransom negotiations that they relied on frontier AI models paired with attack-specific agentic AI frameworks to automate the intrusion.
Rather than manually executing each stage of the attack, the operator directed AI agents to monitor, evaluate, act, and re-plan in real time, compressing more than 50 distinct MITRE ATT&CK techniques into a single automated loop.
Un centro de intercambio de vulnerabilidades es simplemente un lugar para recopilar errores. Chainguard afirma que el verdadero trabajo consiste en lo que suced...
Leer artículo →Un repositorio malicioso puede engañar a los asistentes de programación de IA para que lean o escriban archivos fuera del espacio de trabajo. Wiz afirma que las...
Leer artículo →Symantec afirma que los atacantes también utilizaron AnyDesk, PsExec y un conjunto de herramientas para la obtención de credenciales basado en NirSoft en un ata...
Leer artículo →