The Fort Worth Press - AI agents open door to new hacking threats

USD -
AED 3.672503
AFN 65.000138
ALL 79.878049
AMD 362.980675
ANG 1.790365
AOA 916.999615
ARS 1510.003499
AUD 1.403834
AWG 1.8025
AZN 1.702749
BAM 1.703666
BBD 2.01385
BDT 122.787991
BGN 1.683441
BHD 0.376916
BIF 3008.101045
BMD 1
BND 1.275784
BOB 10.173389
BRL 5.1262
BSD 0.999826
BTN 95.870627
BWP 13.559233
BYN 3.039547
BYR 19600
BZD 2.010976
CAD 1.39842
CDF 2310.999984
CHF 0.824815
CLF 0.024305
CLP 959.71028
CNY 6.70755
CNH 6.696235
COP 3168.93
CRC 447.299652
CUC 1
CUP 26.5
CVE 96.05007
CZK 21.177197
DJF 178.04878
DKK 6.510801
DOP 59.224739
DZD 133.875731
EGP 52.132371
ERN 15
ETB 163.321254
EUR 0.87097
FJD 2.216398
FKP 0.743677
GBP 0.748305
GEL 2.605005
GGP 0.743677
GHS 11.508761
GIP 0.743677
GMD 73.497413
GNF 8775.000411
GTQ 7.628953
GYD 209.155963
HKD 7.844849
HNL 26.836237
HRK 6.563602
HTG 130.679443
HUF 315.729501
IDR 17745
ILS 3.033885
IMP 0.743677
INR 95.74755
IQD 1309.843206
IRR 1374600.00028
ISK 121.420192
JEP 0.743677
JMD 157.787456
JOD 0.709043
JPY 156.865498
KES 129.649942
KGS 87.449552
KHR 4072.299652
KMF 427.999672
KPW 900.000318
KRW 1384.414998
KWD 0.308501
KYD 0.833275
KZT 445.391986
LAK 22394.599303
LBP 89538.327526
LKR 331.62892
LRD 173.476365
LSL 16.28824
LTL 2.95274
LVL 0.60489
LYD 6.351045
MAD 9.523996
MDL 17.553136
MGA 4342.334495
MKD 53.593439
MMK 2099.664815
MNT 3596.851201
MOP 8.079878
MRU 40.054878
MUR 47.660058
MVR 15.449913
MWK 1733.797909
MXN 17.15055
MYR 4.079653
MZN 63.897519
NAD 16.28824
NGN 1331.090236
NIO 36.794425
NOK 9.41744
NPR 153.391986
NZD 1.74848
OMR 0.384498
PAB 0.99983
PEN 3.375537
PGK 4.448606
PHP 62.695504
PKR 277.138763
PLN 3.79431
PYG 5914.634146
QAR 3.644702
RON 4.583103
RSD 102.213048
RUB 84.503329
RWF 1475.348432
SAR 3.713396
SBD 8.000512
SCR 13.753549
SDG 601.452639
SEK 9.81536
SGD 1.275865
SHP 0.746965
SLE 24.639754
SLL 20969.491881
SOS 571.428571
SRD 37.746504
STD 20697.981008
STN 21.341463
SVC 8.749129
SYP 13002.000254
SZL 16.28223
THB 33.270154
TJS 9.223821
TMT 3.5
TND 2.912502
TOP 2.40776
TRY 48.7816
TTD 6.788328
TWD 31.803702
TZS 2649.107974
UAH 44.680662
UGX 3929.459623
UYU 40.200524
UZS 11773.519164
VES 845.45495
VND 26002.5
VUV 118.307083
WST 2.742913
XAF 571.318804
XAG 0.01519
XAU 0.00023
XCD 2.70255
XCG 1.802003
XDR 0.707052
XOF 571.318804
XPF 103.885017
YER 236.649728
ZAR 16.252445
ZMK 9001.198117
ZMW 19.622822
ZWL 321.999592
SSP 5658.175743
MXV 1.944516
  • RBGPF

    0.0000

    69.99

    0%

  • CMSC

    0.1900

    20.67

    +0.92%

  • RYCEF

    0.5200

    19.81

    +2.62%

  • NGG

    1.5700

    77.6

    +2.02%

  • VOD

    0.0600

    17.52

    +0.34%

  • RIO

    2.2500

    98.04

    +2.29%

  • BCC

    0.2200

    75.53

    +0.29%

  • RELX

    0.1100

    34.38

    +0.32%

  • BCE

    -0.2200

    22.28

    -0.99%

  • JRI

    0.1100

    11.61

    +0.95%

  • CMSD

    0.1600

    20.45

    +0.78%

  • GSK

    0.7700

    51.06

    +1.51%

  • AZN

    3.2500

    166.14

    +1.96%

  • BTI

    -0.0700

    56.02

    -0.12%

  • BP

    0.0400

    45.42

    +0.09%

AI agents open door to new hacking threats
AI agents open door to new hacking threats / Photo: © AFP/File

AI agents open door to new hacking threats

Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.

Text size:

AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.

But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.

"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.

"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."

These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.

But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.

"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.

Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."

Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.

- AI 'off track' -

Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."

But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.

Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.

Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.

Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.

OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.

Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.

"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.

In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.

"They only get better," Rehberger said of hacker tactics.

Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.

Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.

"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.

"It just goes off track."

J.Barnes--TFWP