-
Mbappe penalty earns Real Madrid late win over nine-man Rayo
-
Resurgent Pakistan seal T20 sweep of Australia
-
Fiji top sevens standings after comeback win in Singapore
-
Alcaraz sweeps past Djokovic to win 'dream' Australian Open
-
Death toll from Swiss New Year bar fire rises to 41
-
Alcaraz says Nadal inspired him to 'special' Australian Open title
-
Pakistan seeks out perpetrators after deadly separatist attacks
-
Ukraine war talks delayed to Wednesday, Zelensky says
-
Djokovic says 'been a great ride' after Melbourne final loss
-
Von Allmen storms to downhill win in final Olympic tune-up
-
Carlos Alcaraz: tennis history-maker with shades of Federer
-
Alcaraz sweeps past Djokovic to win maiden Australian Open title
-
Israel says partially reopening Gaza's Rafah crossing
-
French IT giant Capgemini to sell US subsidiary after row over ICE links
-
Iran's Khamenei likens protests to 'coup', warns of regional war
-
New Epstein accuser claims sexual encounter with ex-prince Andrew: report
-
Italy's extrovert Olympic icon Alberto Tomba insists he is 'shy guy'
-
Chloe Kim goes for unprecedented snowboard halfpipe Olympic treble
-
Pakistan combing for perpetrators after deadly separatist attacks
-
Israel partially reopens Gaza's Rafah crossing
-
Iran declares European armies 'terrorist groups' after IRGC designation
-
Snowstorm disrupts travel in southern US as blast of icy weather widens
-
Denmark's Andresen swoops to win Cadel Evans Road Race
-
Volkanovski beats Lopes in rematch to defend UFC featherweight title
-
Sea of colour as Malaysia's Hindus mark Thaipusam with piercings and prayer
-
Exiled Tibetans choose leaders for lost homeland
-
Afghan returnees in Bamiyan struggle despite new homes
-
Mired in economic trouble, Bangladesh pins hopes on election boost
-
Chinese cash in jewellery at automated gold recyclers as prices soar
-
Israel to partially reopen Gaza's Rafah crossing
-
'Quiet assassin' Rybakina targets world number one after Melbourne win
-
Deportation raids drive Minneapolis immigrant family into hiding
-
Nvidia boss insists 'huge' investment in OpenAI on track
-
'Immortal' Indian comics keep up with changing times
-
With Trump mum, last US-Russia nuclear pact set to end
-
In Sudan's old port of Suakin, dreams of a tourism revival
-
Narco violence dominates as Costa Rica votes for president
-
Snowstorm barrels into southern US as blast of icy weather widens
-
LA Olympic chief 'deeply regrets' flirty Maxwell emails in Epstein files
-
Rose powers to commanding six-shot lead at Torrey Pines
-
BusinessHotels Launches AI Hotel Price Finder for Real-Time Rate Verification
-
Sidekick Tools Announces Upcoming Depop OTL and WhatNot Follow Features Alongside AI Updates
-
Remotify CEO Maria Sucgang Recognized as Tatler Gen.T Leader of Tomorrow
-
The Blessing of Good Fortune Is Here: Own Equity in a Lithium Mining Company - Elektros Inc. - at a Bottom-Basement Discount, Right Here, Right Now
-
Barca wasteful but beat Elche to extend Liga lead
-
Konate cut short compassionate leave to ease Liverpool injury crisis
-
Separatist attacks in Pakistan kill 33, dozens of militants dead
-
Dodgers manager Roberts says Ohtani won't pitch in Classic
-
Arsenal stretch Premier League lead as Chelsea, Liverpool stage comebacks
-
Korda defies cold and wind to lead LPGA opener
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
F.Wilson--AT