-
Death toll from Venezuela quakes rises past 6,000
-
Fritz outguns Jodar to win ATP Washington title
-
Shafique, Babar lead strong Pakistan reply against West Indies
-
Major League Soccer names LAFC co-owner Berg as next commissioner
-
Defending champ Shelton finding tournament sweet spot in Montreal
-
Osaka out to improve Toronto fortunes with eye on US Open
-
Democratic-led US states sue in latest challenge to Trump's tariffs
-
Dow hits fresh record as oil prices tumble
-
Trump says Iran facing 'last chance before decapitation'
-
Trump board reassures Israel after objections on Gaza pullout
-
US northwest battles wildfires after Spokane neighborhoods scorched
-
Zelensky sacks his ambassador to the US
-
Iran denies negotiating with US, drawing Trump backlash
-
'Spider-Man' breaks record for domestic box office debut
-
Key dates for the Boeing 737 MAX
-
US regulators grant long-awaited Boeing 737 MAX 7 certificate
-
Israel objects to US-backed Gaza plan, defiant on pullout
-
Eala powers past Pegula for first WTA title in Washington
-
Norway's Haugset wins stage 3 to claim Tour de France Femmes lead
-
Legionnaires' outbreak in Switzerland's Basel kills one, 26 ill
-
Cuba slowly regains power after latest nationwide blackout
-
Infantino, the FIFA president under pressure after scrapped investor plan
-
Chelsea sign England midfielder Jordan Henderson
-
Young Danes start extended military service
-
Wildfire flares up again in Greece as water bombers deployed
-
England, Wales had driest July on record: Met Office
-
Greece wildfire expert says season 'one of the worst' in a decade
-
French court rejects pro-Kremlin commentator's deportation appeal
-
Sandoz strikes US settlements to resolve generic drug price dispute
-
Oil slides, stocks rise on hopes of deal to end Mideast war
-
Israel conveys 'concerns' to US on Gaza plan, keeps up strikes on territory
-
EU chief urges 'united action' on borders after Ceuta migrant rush
-
Inside Capital Regency's Market Expansion and User Acquisition
-
Oil prices slide on hopes of deal to end Mideast war
-
Israel conveys 'concerns' to US on Gaza plan and keeps striking
-
Dortmund sign Greek teenager Karetsas from Genk
-
Bangladesh measles outbreak drives families into debt: aid groups
-
Detained Aung San Suu Kyi meets Red Cross delegate in Myanmar
-
BitMart、説明を迫られる:SNC SCANDIC COINの出金は8日経っても依然としてTXIDなし
-
설명 압박에 직면한 BitMart: 8일이 지나도 여전히 TXID가 없는 SNC SCANDIC COIN 출금
-
Seoul issues first 'severe heatwave warning' under new system
-
BitMart تحت ضغط لتقديم توضيحات: عمليات سحب عملة SNC SCANDIC COIN لا تزال بدون معرّف المعاملة (TXID) بعد مرور ثمانية أيام
-
BitMart змушений надати пояснення: виплати в SNC SCANDIC COIN через вісім днів досі без TXID
-
Welsh FA withdraws support for Infantino's FIFA re-election bid
-
BitMart 面臨解釋壓力:SNC SCANDIC COIN 提現八天後仍無 TXID
-
BitMart under pressure to explain: SNC SCANDIC COIN withdrawals still without a TXID after eight days
-
Cycling superstar Pogacar to ride in Vuelta
-
Iran denies negotiating with US after Trump announces talks
-
Water bombers take to skies as Greece battles wildfires
-
What Europe can learn from Australia's 'Black Summer' wildfires
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
M.Ouellet--BTB