-
Rams bounce back as Giants reel from Dart injury
-
Shin Ohashi: Junk food-loving teen and Japan's next big swimming hope
-
In Bangladesh, Pakistan's Jinnah photo stirs anger
-
Stocks rise on AI buzz, drop in oil prices
-
Two New Zealand naval ships transit Taiwan Strait
-
China's robot dancers limber up for America's Got Talent final
-
Zidane gets down to work as France start new era
-
Despite military might, Saudi struggles to crush the Houthis
-
Inside the Venezuelan prison meant to 'drive you insane'
-
Trump to tout deals, defend Iran war in UN speech
-
UK king braces as memoir by Diana's brother goes on sale
-
Sri Lanka to issue verdict in landmark Easter attack trial
-
No green light to lift EU sanctions on Russian oligarchs, talks to resume
-
Macron says talks with Trump on Red Sea, Ukraine 'constructive'
-
UK agrees support for Saudi in struggle with Houthis: reports
-
Green policies just good politics, says UK minister
-
EU foreign policy chief calls for continued sanctions on Russia
-
Bardot auction in Paris fetches nearly one million euros
-
Flights scrapped, evacuations urged as Typhoon Dujuan wallops Japan
-
No timeline on Daniels injury return, says Commanders coach
-
Fonseca to take break from tennis
-
British Columbia sues OpenAI in US court over Canada school shooting
-
A Cuban zoo, and its animals, in epic battle for survival
-
French star Batum retires after 18-year NBA career
-
Infantino proposes consulting federations to reform FIFA
-
Zidane leads first France training session
-
El Nino weather pattern enters record territory: scientist
-
Man shot by ICE agent in Texas detained with bullet inside him: lawyer
-
OpenAI calls for US to lead global effort on AI standards
-
California declares state of emergency ahead of El Nino
-
South African ostriches plucked alive for luxury fashion: report
-
South Africa arrests three more suspects, after nine women murdered
-
US networks halt Trump coverage in revolt over White House ban
-
Carse needs time away from England, says captain Brook
-
Paramount settles with US states to clear Warner Bros. mega-merger
-
NOWPayments Releases Cross-Chain Payout Data Revealing Key Performance Benchmarks Across TRON, BNB Chain, and Solana
-
Climate crisis a job for world leaders, not just activists: UK FM
-
British Museum bans photos of Bayeux Tapestry as crowds linger
-
US networks halt Trump coverage over White House ban
-
COP31 host says AI climate footprint to be a summit priority
-
French singer accuses Miley Cyrus of plagiarism
-
Berlin's far-left vote winners reject anti-semitism charges
-
EU fines Google 403 mn euros for location data breach
-
Mancini eager for 'new adventure' on Italy return
-
'Best is yet to come,' says De la Fuente after Spain extension
-
Mbappe says having Zidane as France coach 'like a film'
-
Why diesel prices are rising more than crude oil
-
Palmer, Rice out of England Nations League squad
-
COP31 host says AI's climate footprint to be a summit priority
-
German auto workers stage mass protests in bid to save jobs
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
M.Ouellet--BTB