-
Zverev thrashes Shang to set up Djokovic quarter-final at China Open
-
Daryz seeks to join exclusive club of dual Arc winners
-
Turkey football ref chief jailed pending trial for graft
-
Russia warns diplomats to leave Kyiv over new strikes threat
-
North Korea says test of intermediate-range strategic missile included use of AI
-
Olympic champ Zheng rebukes rowdy home crowd at China Open
-
Rampant Sayers leads Hong Kong to third men's rugby gold in a row
-
World No.1 Sinner pulls out of Shanghai Masters to delay return
-
Ethiopia's Tigray rebels abandon regional capital as govt advances
-
Red Bull's Verstappen grabs pole position for Bahrain GP
-
Bulgaria's Tsar Samuel returns 'home' after 1,000 years
-
India beat Pakistan in blockbuster as golfer Kim wins 'crazy' gold
-
'Glad it's over': Kim powers to Games gold and military exemption
-
India beat arch-rivals Pakistan to win Asian Games cricket gold
-
After 11 World Cups, football finally comes home for one Indian fan
-
Ethiopia's Tigray rebels abandon regional capital as govt advances: journalist
-
Marc Marquez wins sprint at Japan MotoGP, Martin grabs pole
-
Tom Kim powers to Games gold and exemption from military service
-
Alcaraz fends off Arnaldi to reach Japan Open quarters
-
Split loyalties for Indian football fans at Brazil friendly
-
Antonelli tops times in final practice at Bahrain GP
-
India-Pakistan blockbuster brings cricket fever to Japan baseball field
-
Gauff digs deep to beat Osorio in China Open second round
-
Wong waiting on Rafa after winning Asian Games tennis gold
-
Fresh protests to hit Spain after housing measures defeated
-
With Russia next door and rising costs, Latvia goes to the polls
-
'He's here with me': Japan cycle queen dedicates gold to late brother
-
Penalty hero rues empty seats as Games hosts Japan win football gold
-
Japan Olympic chief says 'lot more' athletes at Games than expected
-
North Korea fires ballistic missile after Seoul's apology demand
-
Asian carmakers besting US rivals at home, China poised to strike
-
US regulator finds Boeing 737 MAX software bug 'not a safety concern'
-
Widgets & Web Offers All-Inclusive Investor Relations Websites for Public Companies, IPOs and SPACs
-
Ohtani 'managing' injuries as Dodgers launch MLB post-season
-
Adams named new US captain to 2030 World Cup
-
Botched US execution leaves murderer unconscious on ventilator: lawyers
-
China a better influence in Latin America than US: poll
-
Cornell rape case exposes sexual violence at US colleges
-
Judge pauses construction of border project in Texas national park
-
France held by Italy in Zidane's homecoming after Olise stunner
-
Belgium's De Bruyne fires double to sink Turkey, France held by Italy
-
Ethiopian pro-government militia claims Tigray airport as regional tensions spike
-
US jobs data boosts stocks as oil prices dip
-
Ohtani shaking off injuries as Dodgers launch MLB post-season
-
US Supreme Court to hear high-stakes climate case
-
Sea levels to rise in California as coastal wave surges up west coast
-
Trump expected to name intel chief Clayton as AI czar: reports
-
New rallies urged in France as protests disrupt over 730 schools
-
Argentina unveils passports-for-investment scheme
-
Djokovic survives China Open scare, Sabalenka starts strong
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
P.Serra--PC