<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[SANDEEP’s Substack]]></title><description><![CDATA[My personal Substack]]></description><link>https://aisafety24x7.substack.com</link><image><url>https://substackcdn.com/image/fetch/$s_!UsGq!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9b724b25-cc49-4a0e-88fd-249be28610ed_144x144.png</url><title>SANDEEP’s Substack</title><link>https://aisafety24x7.substack.com</link></image><generator>Substack</generator><lastBuildDate>Wed, 17 Jun 2026 03:49:40 GMT</lastBuildDate><atom:link href="https://aisafety24x7.substack.com/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[SANDEEP SHARMA]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[aisafety24x7@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[aisafety24x7@substack.com]]></itunes:email><itunes:name><![CDATA[SANDEEP SHARMA]]></itunes:name></itunes:owner><itunes:author><![CDATA[SANDEEP SHARMA]]></itunes:author><googleplay:owner><![CDATA[aisafety24x7@substack.com]]></googleplay:owner><googleplay:email><![CDATA[aisafety24x7@substack.com]]></googleplay:email><googleplay:author><![CDATA[SANDEEP SHARMA]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[The Use of AI in Cyber Attacks ]]></title><description><![CDATA[Insights from Case Studies on the Emerging Cyber Threat Landscape]]></description><link>https://aisafety24x7.substack.com/p/the-use-of-ai-in-cyber-attacks</link><guid isPermaLink="false">https://aisafety24x7.substack.com/p/the-use-of-ai-in-cyber-attacks</guid><dc:creator><![CDATA[SANDEEP SHARMA]]></dc:creator><pubDate>Sun, 11 May 2025 16:09:04 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!d0MP!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>The widespread adoption of AI is driving profound changes across different sectors. This rapid proliferation brings not only unprecedented opportunities for innovation and efficiency but also a significant expansion of risk.</p><p>The rise in AI-powered cyber attacks signals a shift in the cyber threat landscape, where traditional security measures often struggle to keep pace. Individuals, enterprises, critical infrastructures, and governments alike now face risks that are amplified by the intelligent capabilities of AI-driven tools. Understanding how AI is weaponized is no longer optional; it is essential for building resilience in an increasingly digital world. The <a href="https://reports.weforum.org/docs/WEF_Global_Cybersecurity_Outlook_2025.pdf">Global Cybersecurity Outlook 2025 Report</a> by World Economic Forum highlights the "<strong>AI&#8211;cyber paradox</strong>": while 66% of surveyed organizations believe AI will have the greatest impact on cybersecurity in the next year, only 37% currently have processes to evaluate the security of AI tools before deployment. Additionally, it highlights the risks associated with the use of AI as an offensive tool, noting that Generative AI is augmenting cybercriminal capabilities, contributing to an uptick in social engineering attacks.</p><p>Cybercriminals are weaponizing AI to automate and amplify attacks, using it for highly convincing phishing campaigns, deepfake scams, automated malware generation, and large-scale data theft, etc.</p><p>This report delves into different case studies that illustrate the evolving use of AI in cyber attacks, offering insights into the emerging challenges and the urgent need for innovative detection and defense strategies.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!d0MP!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!d0MP!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg 424w, https://substackcdn.com/image/fetch/$s_!d0MP!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg 848w, https://substackcdn.com/image/fetch/$s_!d0MP!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!d0MP!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!d0MP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg" width="1202" height="579" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:579,&quot;width&quot;:1202,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:80980,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://aisafety24x7.substack.com/i/163334934?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F974ff30b-085b-4543-b1e3-1b77c56b0fb9_1280x720.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!d0MP!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg 424w, https://substackcdn.com/image/fetch/$s_!d0MP!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg 848w, https://substackcdn.com/image/fetch/$s_!d0MP!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!d0MP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4a70f910-babf-45c8-b749-fe63bad0c345_1202x579.jpeg 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h4><strong>Case Studies of AI-based Cyber Attacks</strong></h4><ul><li><p><strong>AI-driven social engineering attacks</strong></p></li></ul><p>Social engineering has long been a powerful tactic for cybercriminals, but with the rise of AI, these attacks have become faster, more advanced, and harder to detect. The attacks now encompass a spectrum of tactics, including highly personalized phishing emails, synthetic media generation such as deepfakes and voice cloning, and sophisticated impersonation schemes. Attackers use AI to automate reconnaissance, craft convincing messages, and dynamically adapt their strategies in real time, making detection and prevention increasingly challenging.</p><p><strong>Phishing: </strong>AI has significantly transformed phishing attacks, making them more sophisticated, personalized, and harder to detect. Cybercriminals now leverage AI to automate and enhance their phishing campaigns, posing a growing threat to individuals and organizations alike.</p><p>A <a href="https://www.securitymagazine.com/articles/100613-93-of-security-leaders-anticipate-daily-ai-attacks-by-2025">survey</a> of security leaders in the U.S. and U.K. revealed that 93% expect daily AI-driven cyberattacks by 2025, with 38% specifically anticipating attacks involving AI-powered phishing. As per Perception Point&#8217;s &#8216;2024 Annual Report: Cybersecurity Trends &amp; Insights&#8217;, there has been a 1,760% year-on-year increase in social engineering-based Business Email Compromise (BEC) attacks, highlighting the growing reliance on AI tools by threat actors (<a href="https://perception-point.io/press/genai-drives-1760-surge-in-business-email-compromise-bec-attacks-according-to-new-report-by-perception-point/">Reference</a>). According to <a href="https://sosafe-awareness.com/company/press/one-in-five-people-click-on-ai-generated-phishing-emails-sosafe-data-reveals/">research</a> by SoSafe, Generative AI tools speed up phishing attacks by at least 40%. Another <a href="https://www.axios.com/2023/10/24/chatgpt-written-phishing-email">study</a> by IBM researchers on way back to 2023 also mentioned the use of ChatGPT in creating highly convincing phishing emails in minutes. In a test involving 1,600 employees of a global healthcare company, 14% fell for a phishing email crafted by ChatGPT.</p><p>Keeping in view the recent advancements in AI, this presents significant challenges for cybersecurity professionals to enable strong defences against such attacks.</p><p><strong>Synthetic Media and Deepfakes: </strong>The emergence of AI has led to increased capabilities in synthetic media generation. Particularly deepfakes, which include AI-generated audio, video, or images that mimic real individuals, have become potent instruments in cyber attacks. These technologies facilitate advanced social engineering tactics, enabling attackers to deceive, manipulate, and exploit targets with unprecedented realism. The <a href="https://scholarlycommons.law.cwsl.edu/cgi/viewcontent.cgi?article=1780&amp;context=cwlr">research</a> mentions several case studies involving use of synthetic media for cyber attacks. In 2019, one of the earliest documented cases involved a whale-phishing campaign that leveraged synthetic media techniques. Cybercriminals used AI-generated voice technology to impersonate a CEO&#8217;s voice, successfully instructing a subordinate to transfer $243,000 to a fraudulent account. This form of voice phishing, or &#8220;vishing,&#8221; exemplifies how synthetic audio can be weaponized to execute high-stakes financial fraud by mimicking authoritative figures (<a href="https://www.realitydefender.com/insights/deepfake-voice-phishing-vishing-in-the-financial-sector">Reference</a>). In 2024, a multinational finance company lost $25 million after attackers used real-time deepfake video conferencing to mimic executives (<a href="https://news.rthk.hk/rthk/en/component/k2/1739119-20240204.htm">Reference</a>). The deepfake combined synthetic audio and video to approve fraudulent transactions, bypassing human and technical safeguards. This case underscored the feasibility of live deepfake manipulation in high-stakes environments.</p><p>Further, there have been <a href="https://www.thistleinitiatives.co.uk/blog/ai-generated-id-documents-bypassing-well-known-kyc-software">reports</a> about AI-generated ID documents, bypassing well-known KYC softwares. A service named OnlyFake leveraged AI to create counterfeit passports and driver&#8217;s licenses for 26 countries, priced as low as $15. These IDs successfully bypassed Know Your Customer (KYC) checks on crypto exchanges like OKX, Kraken, and Revolut, enabling anonymous account creation and money laundering. Recently, a Polish researcher used ChatGPT-4o to create a highly realistic fake passport (<a href="https://oecd.ai/en/incidents/2025-04-07-257b">Reference</a>). The AI-generated document bypassed automated KYC checks on major platforms like Revolut and Binance, raising concerns over identity verification, legal breaches, and potential misuse of personal data.</p><p>Hacker groups are also adopting synthetic media to infiltrate tech firms. These hackers use generative AI in their malicious interview campaign - a series of tactics that involve gaining employment in remote technical roles in western firms, usually in industries with sensitive security data like defense, aerospace, or engineering (<a href="https://www.techradar.com/pro/security/north-korean-hackers-are-using-advanced-ai-tools-to-help-them-get-hired-at-western-firms">Reference</a>). As an <a href="https://www.linkedin.com/posts/robert-nogacki-7503491a5_the-mentzen-maneuver-how-north-korean-hackers-activity-7322506888200237056-NDcX/">example</a>, a recent case reports the use of a Polish politician's face by North Korean Hackers to develop fake profiles.</p><p>These incidents collectively highlight the escalating threat posed by synthetic media in cyber operations. The realism achieved through deepfakes can erode trust in digital communication and challenge traditional security infrastructures. Proactive defense strategies and broad-based awareness are essential to mitigating the rising tide of such deepfake-enabled cyber threats.</p><p>The convergence of AI and social engineering is not limited to email scams or deepfakes; it extends beyond initial access and deception. Increasingly, attackers combine these methods with malware deployment, using social engineering as the entry point for ransomware and data exfiltration. For example, in September 2023, the hacker group &#8216;Scattered Spider&#8217; exploited social engineering tactics to breach MGM Resorts<strong>.</strong> By impersonating an employee via phone, aided by AI-generated personas, they tricked the help desk into resetting multi-factor authentication credentials. This allowed the attackers to gain access to high-value systems, deploy malware, and cause service disruptions costing the company huge damages (<a href="https://westoahu.hawaii.edu/cyber/global-weekly-exec-summary/alphv-hackers-reveal-details-of-mgm-cyber-attack/">Reference</a>). Such cases illustrate how AI-enhanced social engineering is often just the entry point to larger attack chains involving ransomware, lateral movement, and data exfiltration. As these technologies become more accessible, organizations must move beyond traditional security awareness to deploy AI-driven defense systems, integrate behavioral anomaly detection, and enforce strict identity verification protocols across digital channels.</p><ul><li><p><strong>Malware Development</strong></p></li></ul><p>The emergence of AI-powered tools has fundamentally changed the landscape of malware development. Once reliant on static code and human scripting, modern malware is now dynamic, intelligent, and adaptable. Threat actors are increasingly deploying AI to generate malicious code, automate exploitation, and evade detection with unprecedented precision and scale.</p><p><strong>Dark GPTs</strong>: A growing threat comes from AI language models trained and repurposed specifically for cybercrime. Tools such as WormGPT, FraudGPT, WolfGPT, and XXXGPT have emerged on dark web marketplaces and Telegram channels, providing cybercriminals with the ability to write polymorphic code that evolves to bypass security tools; generate phishing emails and malware scripts tailored to specific targets; craft exploits for known vulnerabilities; assist in scam operations, such as business email compromise (BEC). The underground market for these tools is thriving, with threat actors like "CanadianKingpin12" identified as prolific developers and sellers of dark LLMs across crime forums (<a href="https://blog.barracuda.com/2024/04/16/5-ways-cybercriminals-are-using-ai--malware-generation">Reference</a>).</p><p><strong>Polymorphic and Adaptive Malwares: </strong>AI has enabled the rise of polymorphic malware, which is a malicious code that constantly evolves its structure to avoid detection. An example of this advancement is <a href="https://www.hyas.com/blog/blackmamba-using-ai-to-generate-polymorphic-malware">BlackMamba</a>, a proof-of-concept keylogger that uses a large language model (LLM) to dynamically generate its malicious functionality at runtime. It requires no command-and-control infrastructure, instead synthesizing polymorphic payloads in memory. This dynamic approach makes traditional signature-based detection methods increasingly ineffective. <a href="https://www.digitalxraid.com/adaptive-malware/">Adaptive malware</a> goes a step further by altering its execution patterns and communication protocols in real time based on the security environment it encounters. This makes it more persistent and capable of surviving sophisticated defense mechanisms.</p><p><strong>Malicious AI Models in the Wild: </strong>The proliferation of malicious AI and machine learning models is not limited to underground forums. In 2024, researchers discovered hundreds of compromised AI/ML models on legitimate platforms like Hugging Face, highlighting the risks of supply chain attacks and the potential for widespread distribution of backdoored or weaponized models (<a href="https://thehackernews.com/2024/03/over-100-malicious-aiml-models-found-on.html">Reference</a>). As of April 2025, <a href="https://huggingface.co/blog/pai-6-month">Protect AI</a> and Hugging Face reported scanning 4.47 million unique model versions and identifying 352,000 unsafe or suspicious issues across 51,700 models on the Hugging Face Hub.</p><p>AI-driven malware development represents a paradigm shift in cyber threats, combining speed, adaptability, and scale. As these tools become more accessible, organizations face a growing challenge in defending against rapidly evolving, AI-powered attacks that can bypass traditional security measures and inflict significant damage.</p><ul><li><p><strong>Vulnerability Expansion</strong></p></li></ul><p>AI has also revolutionized the field of cybersecurity, offering powerful tools for identifying and mitigating vulnerabilities within complex systems., enabling defenders to detect, classify, and prioritize security weaknesses with unprecedented speed and accuracy. However, the same technologies that bolster security can be repurposed for malicious intent.</p><p><strong>AI</strong>-<strong>Induced Expansion of the Attack Surface</strong>: The integration of AI into various systems has inadvertently expanded the cyberattack surface. Agentic AI systems, which operate autonomously and make decisions without human intervention, introduce new vulnerabilities. These systems can initiate complex chains of interactions, some of which may be exploited by adversaries. A recent <a href="https://arxiv.org/html/2410.14728v1">study</a> emphasized that the non-deterministic nature of such AI models complicates security efforts, as their unpredictable behaviors can be manipulated to bypass traditional defenses.</p><p><strong>Slopsquatting: </strong>This represents a novel AI-driven supply chain attack vector where threat actors exploit generative AI's tendency to hallucinate non-existent software packages during code generation. When developers, relying on AI tools like ChatGPT or GitHub Copilot, attempt to install these fictitious packages, they may inadvertently introduce malicious code into their systems. A <a href="https://arxiv.org/pdf/2406.10279">comprehensive study</a> analyzing over 576,000 code samples from various AI models revealed that approximately 20% of the suggested packages did not exist. Notably, open-source models exhibited a higher hallucination rate (21.7%) compared to commercial ones (5.2%). This predictability allows attackers to preemptively register these non-existent packages with malicious payloads, anticipating that developers might attempt to install them.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!vxLe!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!vxLe!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png 424w, https://substackcdn.com/image/fetch/$s_!vxLe!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png 848w, https://substackcdn.com/image/fetch/$s_!vxLe!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png 1272w, https://substackcdn.com/image/fetch/$s_!vxLe!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!vxLe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png" width="970" height="409" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:409,&quot;width&quot;:970,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!vxLe!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png 424w, https://substackcdn.com/image/fetch/$s_!vxLe!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png 848w, https://substackcdn.com/image/fetch/$s_!vxLe!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png 1272w, https://substackcdn.com/image/fetch/$s_!vxLe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe9f557c2-ed57-4c09-b90a-64103572fd83_970x409.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>Image Source: <a href="https://arxiv.org/pdf/2406.10279">arxiv.org</a></em></p><p>As an <a href="https://www.theregister.com/2024/03/28/ai_bots_hallucinate_software_packages/">example</a>, a researcher registered a fictitious package named &#8216;<code>huggingface-cli</code>&#8217;, which was suggested by AI tools instead of the legitimate &#8216;<code>huggingface_hub</code>&#8217;, for which the correct installation command should have been: <code>pip install -U "huggingface_hub[cli]"</code>. This deceptive package was inadvertently included in the README of Alibaba's open-source package, GraphTranslator, highlighting how easily such vulnerabilities can propagate.</p><p><strong>Adversarial AI</strong>: <a href="https://www.paloaltonetworks.com/cyberpedia/what-are-adversarial-attacks-on-AI-Machine-Learning">Adversarial AI</a> exploits vulnerabilities in machine learning (ML) systems by manipulating inputs, models, or outputs to cause misclassification, data breaches, or system failures. These attacks target the core logic of AI systems, often bypassing traditional cybersecurity defenses. Adversarial examples have been demonstrated across various domains, including image recognition, speech processing, and reinforcement learning, with attackers using different techniques to bypass security controls. The risks posed by adversarial AI are significant. For instance, attackers might slightly alter an image so that a self-driving car&#8217;s AI sees a stop sign as a speed limit sign, which can lead to dangerous situations. Similarly, adversarial attacks on speech recognition systems can induce misinterpretation of voice commands, and reinforcement learning agents can be manipulated to make suboptimal decisions through carefully crafted environmental changes.</p><p></p><p>Thus, the use of AI, especially with the evolution of LLMs, has amplified the cyber risks. The <a href="https://arxiv.org/pdf/2401.03315">research</a> further details the underground exploitation of LLMs for malicious services (defined as the term, &#8220;Malla&#8221; for such activities).</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!zObC!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!zObC!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png 424w, https://substackcdn.com/image/fetch/$s_!zObC!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png 848w, https://substackcdn.com/image/fetch/$s_!zObC!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png 1272w, https://substackcdn.com/image/fetch/$s_!zObC!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!zObC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png" width="693" height="460" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:460,&quot;width&quot;:693,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!zObC!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png 424w, https://substackcdn.com/image/fetch/$s_!zObC!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png 848w, https://substackcdn.com/image/fetch/$s_!zObC!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png 1272w, https://substackcdn.com/image/fetch/$s_!zObC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F438f2078-1739-4e9d-95c5-dcd853c83d1f_693x460.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em><a href="https://www.techpolicy.press/studying-black-market-for-large-language-models-researchers-find-openai-models-power-malicious-services/">Image Source</a></em></p><div><hr></div><blockquote><p>As artificial intelligence continues to transform the cyber threat landscape, it is imperative that defense mechanisms evolve in tandem with these advancements. Organizations and individuals alike must recognize that AI-powered attacks, from deepfakes and social engineering to adaptive malware and adversarial manipulation, demand a new level of vigilance and preparedness. Robust cyber hygiene practices, such as regular software updates, strong authentication protocols, and careful handling of confidential data, are more critical than ever. At the same time, leveraging AI-driven security solutions is essential; as AI can only match the speed, scale, and sophistication of AI-enabled adversaries.</p><p>Ultimately, building cyber resilience in the age of artificial intelligence requires a proactive, adaptive approach that anticipates evolving attack vectors and integrates advanced technologies to protect digital assets and maintain trust in our interconnected world.</p></blockquote><div><hr></div><p><strong>Acknowledgements</strong></p><p>This report has been prepared as part of project assignment for the AI Safety, Ethics, and Society Course Spring 2025 offered by Center for AI Safety. Special thanks to the course team, Anders Edson, course facilitator Judita Ru, and cohort team members including Indra Gesink, Alde Gonz&#225;lez, Shun Yoshizawa, Bach Nguyen, and, Pawe&#322; K for their continuous support. </p><p>This work is the result of independent research conducted from multiple sources. AI tools including ChatGPT and Perplexity have also been selectively used at certain points only to support linguistic phrasing and clarity, without influencing the core content or analysis.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://aisafety24x7.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading SANDEEP&#8217;s Substack! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p></p>]]></content:encoded></item><item><title><![CDATA[Coming soon]]></title><description><![CDATA[This is SANDEEP&#8217;s Substack.]]></description><link>https://aisafety24x7.substack.com/p/coming-soon</link><guid isPermaLink="false">https://aisafety24x7.substack.com/p/coming-soon</guid><dc:creator><![CDATA[SANDEEP SHARMA]]></dc:creator><pubDate>Sun, 11 May 2025 15:44:56 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!UsGq!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9b724b25-cc49-4a0e-88fd-249be28610ed_144x144.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>This is SANDEEP&#8217;s Substack.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://aisafety24x7.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://aisafety24x7.substack.com/subscribe?"><span>Subscribe now</span></a></p>]]></content:encoded></item></channel></rss>