AI Agents Open Door to New Hacking Threats

AI Agents Open Door to New Hacking Threats
TT

AI Agents Open Door to New Hacking Threats

AI Agents Open Door to New Hacking Threats

Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.

AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.

But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief, AFP said.

"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.

"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."

These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.

But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.

"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.

Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."

Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.

AI 'off track'

Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."

But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.

Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.

Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.

Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.

OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.

Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.

"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.

In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.

"They only get better," Rehberger said of hacker tactics.

Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.

Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.

"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.

"It just goes off track."



Apple, Google Send New Round of Cyber Threat Notifications to Users Around World

The Apple logo is seen in this illustration taken September 24, 2025. (Reuters)
The Apple logo is seen in this illustration taken September 24, 2025. (Reuters)
TT

Apple, Google Send New Round of Cyber Threat Notifications to Users Around World

The Apple logo is seen in this illustration taken September 24, 2025. (Reuters)
The Apple logo is seen in this illustration taken September 24, 2025. (Reuters)

Apple and Google have sent a new round of cyber threat notifications to users around the world, the companies said this week, announcing their latest effort to insulate customers against surveillance threats.

Apple and the Alphabet-owned Google are two of several tech companies that regularly issue warnings to users when they determine they may have been targeted by state-backed hackers.

Apple said the warnings were issued on Dec. 2 but gave few further details about the alleged hacking activity and did not address questions about the number of users targeted or say who was thought to be conducting the surveillance.

Apple said that "to date we have notified users in over 150 countries in total."

Apple's statement follows Google's Dec. 3 announcement that it was warning all known users targeted using Intellexa spyware, which it said spanned "several hundred accounts across various countries, including Pakistan, Kazakhstan, Angola, Egypt, Uzbekistan, Saudi Arabia, and Tajikistan."

Google said in its announcement that Intellexa, a cyber intelligence company that is sanctioned by the US government, was "evading restrictions and thriving."

Executives tied to Intellexa did not immediately return messages.

Previous waves of warnings have triggered headlines and prompted investigations by government bodies, including the European Union, whose senior officials have previously been targeted using spyware.

Threat notifications impose costs on cyber spies by alerting victims, said John Scott-Railton, a researcher with the Canadian digital watchdog group Citizen Lab.

He said they were "also often the first step in a string of investigations and discoveries that can lead to real accountability around spyware abuses."


AI Bubble to Be Short-lived, Rebound Stronger, NTT DATA Chief Says

FILE PHOTO: Figurines with computers and smartphones are seen in front of the words "Artificial Intelligence AI" in this illustration taken, February 19, 2024. REUTERS/Dado Ruvic/Illustration/File Photo
FILE PHOTO: Figurines with computers and smartphones are seen in front of the words "Artificial Intelligence AI" in this illustration taken, February 19, 2024. REUTERS/Dado Ruvic/Illustration/File Photo
TT

AI Bubble to Be Short-lived, Rebound Stronger, NTT DATA Chief Says

FILE PHOTO: Figurines with computers and smartphones are seen in front of the words "Artificial Intelligence AI" in this illustration taken, February 19, 2024. REUTERS/Dado Ruvic/Illustration/File Photo
FILE PHOTO: Figurines with computers and smartphones are seen in front of the words "Artificial Intelligence AI" in this illustration taken, February 19, 2024. REUTERS/Dado Ruvic/Illustration/File Photo

A potential artificial intelligence bubble will deflate faster than past tech cycles but give way to an even stronger rebound as corporate adoption catches up with infrastructure spending, the head of Japanese IT company NTT DATA Inc. said.

Despite worries around supply chains, the direction of travel is clear, CEO Abhijit Dubey said in an interview with the Reuters Global Markets Forum.

"There is absolutely no doubt that in the medium- to long-term, AI is a massive secular trend," he said.

"Over the next 12 months, I think we're going to have a bit of a normalization ... It'll be a short-lived bubble, and (AI) will come out of it stronger."

With demand for compute still running ahead of supply, "supply chains are almost spoken for" over the next two to three years, he said. Pricing power is already tilting toward chipmakers and hyperscalers, mirroring their stretched valuations in public markets, he added.

AI has triggered the biggest technological shake-up since the advent of the internet, fueling trillions of dollars of investment and eye-watering equity gains. But it has caused shortages of memory chips, drawn regulatory scrutiny, and created growing unease over the future of work.

Dubey, who is also the firm's chief AI officer, said his company has begun rethinking recruitment strategies as AI reshapes labor markets.

"There will clearly be an impact ... Over a five- to 25-year horizon, there will likely be dislocation," he said. However, he added that NTT DATA continues to hire across locations.

Speakers at the Reuters NEXT conference in New York discussed how AI may upend work and job growth.

AI startup Writer Inc.'s CEO May Habib said customers are focused on slowing headcount growth.

"You close a customer, you get on the phone with the CEO to kick off the project, and it's like, 'Great, how soon can I whack 30% of my team?'," she said.

Still, a PwC survey of the global workforce released in November suggests the reality of generative AI usage has yet to match boardroom expectations.

Daily use of GenAI remains "significantly lower" than widely touted by executives, PwC said, even as workers with AI skills commanded an average wage premium of 56% — more than double last year's figure.

PwC also flagged a widening skills gap, with about half of non-managers reporting access to training resources, compared with roughly three-quarters of senior executives.


EU Launches Antitrust Probe into Meta over Use of AI in WhatsApp

FILE - Attendees visit the Meta booth at the Game Developers Conference 2023 in San Francisco on March 22, 2023. (AP Photo/Jeff Chiu, File)
FILE - Attendees visit the Meta booth at the Game Developers Conference 2023 in San Francisco on March 22, 2023. (AP Photo/Jeff Chiu, File)
TT

EU Launches Antitrust Probe into Meta over Use of AI in WhatsApp

FILE - Attendees visit the Meta booth at the Game Developers Conference 2023 in San Francisco on March 22, 2023. (AP Photo/Jeff Chiu, File)
FILE - Attendees visit the Meta booth at the Game Developers Conference 2023 in San Francisco on March 22, 2023. (AP Photo/Jeff Chiu, File)

Brussels has opened a new antitrust investigation into Meta Platforms over its rollout of artificial intelligence features in WhatsApp, the European Commission said on Thursday, reflecting rising scrutiny of Big Tech's use of generative AI.

The move, reported earlier by Reuters and the Financial Times, marks the latest action by European regulators against large technology firms as the bloc seeks to balance support for the sector with efforts to curb its expanding influence.

The European Commission opened the investigation into "Meta's new policy regarding AI providers' access to WhatsApp" after the California-based company integrated its Meta AI system into the messaging service earlier this year.

A WhatsApp spokesperson said that "the claims are baseless", adding that the emergence of chatbots on its platforms "puts a strain on our systems that they were not designed to support".

"Even still, the AI space is highly competitive and people have access to the services of their choice in any number of ways, including app stores, search engines, email services, partnership integrations, and operating systems."

Meta AI, a chatbot and virtual assistant, has been built into WhatsApp's interface since March 2025 across European markets.

Italy's antitrust watchdog opened a parallel investigation in July into allegations that Meta leveraged its market power by integrating an AI tool into WhatsApp. The probe was expanded in November to examine whether Meta further abused its dominance by blocking rival AI chatbots from the messaging platform.

The FT, citing officials, said that the EU probe will be conducted under traditional antitrust rules rather than the EU's Digital Markets Act, the bloc's landmark legislation currently used to scrutinize Amazon and Microsoft's cloud services for potential curbs.