-
Singapore says AI-related demand lifting economy
-
Trump says would be 'terrible mistake' to oust embattled Infantino
-
Demeter Tactical Investments (ME) Limited bolsters governance with two board appointments
-
Charity races to raise millions to buy historic English estate
-
Russian barrage on Ukraine kills 9, wounds dozens
-
Hungary parliament to elect Orban-critic judge as president
-
Schools closed as Indonesia battles wildfires
-
Wallabies lock Amatosero given three-match ban for Japan red card
-
Swiatek dominates Shnaider to set up Toronto semi with Svitolina
-
Swiatek races into Toronto semis as Svitolina battles through
-
Oil prices rise further as hopes for Hormuz deal fade
-
'Big Four' bowlers back as ageing Australia begin gruelling run
-
One year after Putin-Trump summit, 'spirit of Anchorage' dissipated
-
AI's hunger for power sparks US private gas plant boom
-
Farage vs Count Binface: What to know about UK snap poll
-
Memphis AI data center fuels pollution fight in Black neighborhood
-
Torment of Afghan fathers as daughters deprived of education
-
Ceuta leader wants migrant detention centre after influx
-
Return of displaced Syrian Kurds to hometown suspended after violence
-
Colombia scrambles to find survivors as quake kills 111
-
Swiatek races past Shnaider into Toronto semi-finals
-
Rain postponements wreck Montreal Masters schedule
-
Power to Hydrogen Delivers First-of-a-Kind Industrial-Scale AEM Electrolyzer to the Port of Antwerp-Bruges
-
Meta pushes global AI vision amid race with OpenAI, Anthropic and China
-
Notts Forest owner Marinakis sues Palace over gun banner - reports
-
US judge ends graft case against India's Adani
-
Koech gets three-year ban, stripped of US 1,500m title
-
Anderson retires after 10 MLB seasons after 'too much pain'
-
Sensational Ingebrigtsen back with more European gold
-
Colombia in state of emergency as quake kills 111
-
'A scare': Brazil player leaps into tunnel in joy over goal
-
Britain's Amy Hunt wins European women's 100m gold
-
USA Swimming CFO Hilliard arrested for alleged theft
-
Trump order pushes for overhaul of childhood vaccine schedule
-
Trump insists Netanyahu relationship 'very good' despite Gaza rift
-
Global stocks mixed while oil prices jump on Hormuz
-
Ingebrigtsen delivers masterclass for seventh European athletics gold
-
Turkey MPs back historic law on reintegrating Kurdish militants
-
Colombia declares state of emergency after quake kills 111
-
'Dreams disappear' as Gaza students await evacuation to Italy
-
Golden relay double for Britain at Europeans as Marchand takes silver
-
Third European gold for Schilder in women's shot put
-
Barcelona's Araujo heads to Liverpool on loan
-
Golden relay double for Britain at Europeans as Marchand settles for silver
-
Tupac Shakur murder trial begins 30 years after rapper's death
-
US had hottest month on record in July
-
Russia bars only anti-war party from elections
-
Colombia quake leaves 69 dead, with more trapped under rubble
-
Boeing to divest tech ventures for stake in air-taxi startup
-
Bookmap Announces Partnership with Plus500 to Expand Futures Trading Access
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
P.Serra--PC