-
Drovix Launches In-House Multi-Asset Liquidity and Execution Stack for Sub-Millisecond Fills, Tighter Spreads
-
Australia charges man with trying to pass Ukraine military intel to Russia
-
'So bad it's good': rough animated film becomes surprise Chinese hit
-
Ex-Pakistan PM Khan taken back to jail after hospital checks: govt
-
'I'll adapt': First pregnant candidate navigates French presidential race
-
China, Indonesia hold talks on security, defence
-
Hong Kong convicts Tiananmen vigil activists of inciting subversion
-
Train to nowhere? South Korea's lonely push for peace with the North
-
The Hong Kong Tiananmen vigil activists convicted in national security trial
-
Australia's Hussey mulls role with England for Ashes series
-
Eel-powered Japan whizz-kid, 11, chases Asian Games history
-
Indian captain 'scapegoat' in Britain's Russia shadow fleet case, wife says
-
Asian markets extend rally as traders assess US Treasuries pledge
-
Rosenior seeks to match Paris FC's capital ambition as Ligue 1 returns
-
Barcelona enter new era as Flick targets La Liga hat-trick
-
Inter set for Serie A title defence as Milan get Amorim reboot
-
Pogacar favourite for Vuelta with Grand Tour treble in sight
-
'Greatest' Springboks face All Blacks in clash of juggernauts
-
Bangladesh coach Simmons wary of Australia backlash in second Test
-
William and Harry: Britain's warring royal brothers
-
Hong Kong Tiananmen activists to receive national security verdict
-
UN holds second informal poll for next leader
-
Who are the candidates vying to lead the UN?
-
In US mining hub, black lung rates soar
-
Swiatek into Cincinnati semis after Rybakina injury
-
Champions Arsenal embrace being 'hunted' as Premier League returns
-
University suspends academic behind Jason Arday plagiarism charges
-
World No.2 Rybakina retires from Cincinnati clash with Swiatek
-
Key European leaders demand Israel halt West Bank settlement project
-
'I heard you missed me': Melania Trump jokes about month out of spotlight
-
Kiwi Ears Stardust: The Art of Natural Balance
-
IRA-Eligible Gold: Rules, Approved Coins, and Best Gold Dealers (Guide Released)
-
McIlroy bounces back to share BMW Championship lead
-
Amazon Prime Video to invest $2 bn in Latin America productions
-
Cobolli fueled by candy in sweet defeat of Paul
-
Panama Canal to reduce shipping over El Nino-fueled drought
-
Jailed Pakistan ex-PM Khan moved to hospital on court order: party
-
Maradona trial on hold over possible medical evidence mix-up
-
Pogacar eyes 'missing' piece ahead of Vuelta return
-
'Green dilemma': China's solar boom hurt birds, says study
-
US, Canada 'very close' to trade deal, Ottawa says, as details emerge
-
Pegula hangs on to dispatch Anisimova, reach Cincinnati semi-finals
-
Ronaldinho returns in search of 'beautiful' 300th goal
-
US charges woman with IS-inspired plot to blow up New York State Capitol
-
US pushes allies, China to back Trump's economic war on Iran
-
What a record-breaking El Nino could mean for the world
-
Former NBA MVP Harden reportedly set to return to Cavaliers
-
Duplantis edges Karalis to win Lausanne Diamond League pole vault
-
Brook makes Pakistan pay for drop as England dominate first Test
-
Alcaraz to return for US Open title defence
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
F.Wilson--AT