AI Agents Open Door to New Hacking Threats

AI Agents Open Door to New Hacking Threats
TT

AI Agents Open Door to New Hacking Threats

AI Agents Open Door to New Hacking Threats

Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.

AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.

But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief, AFP said.

"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.

"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."

These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.

But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.

"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.

Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."

Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.

AI 'off track'

Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."

But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.

Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.

Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.

Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.

OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.

Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.

"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.

In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.

"They only get better," Rehberger said of hacker tactics.

Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.

Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.

"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.

"It just goes off track."



With Freebies, OpenAI, Google Vie for Indian Users and Training Data

FILE PHOTO: A message reading "AI artificial intelligence", a keyboard, and robot hands are seen in this illustration taken January 27, 2025. REUTERS/Dado Ruvic/Illustration/File Photo
FILE PHOTO: A message reading "AI artificial intelligence", a keyboard, and robot hands are seen in this illustration taken January 27, 2025. REUTERS/Dado Ruvic/Illustration/File Photo
TT

With Freebies, OpenAI, Google Vie for Indian Users and Training Data

FILE PHOTO: A message reading "AI artificial intelligence", a keyboard, and robot hands are seen in this illustration taken January 27, 2025. REUTERS/Dado Ruvic/Illustration/File Photo
FILE PHOTO: A message reading "AI artificial intelligence", a keyboard, and robot hands are seen in this illustration taken January 27, 2025. REUTERS/Dado Ruvic/Illustration/File Photo

OpenAI, Google and Perplexity have begun an unprecedented fight for artificial intelligence users in India, rolling out freebies in a strategy seen as a way to harvest troves of multilingual training data in the world's most populous nation.

India is the second-biggest smartphone market with 730 million devices. On average, Indians consume 21 gigabytes of data each month, paying 9.2 cents per gigabyte, one of the world's lowest mobile data rates. To lure price-conscious users, Google in November started giving its $400 Gemini AI Pro subscription for free for 18 months to 500 million customers of Reliance Jio, India's biggest telecom player.

Last week, it added India to dozens of countries where it is offering its heavily discounted "AI Plus" package. OpenAI has also made its ChatGPT Go plan, which offers extended but not unlimited usage compared with existing plans, free for a year.

The plan incurs charges in more than 100 countries and was $54 in India before being made free to everyone in the country in November, Reuters reported.

Just like Google's AI Pro, the free package is only available in India.

Early download data suggests a jump in usage due to the free plans, with daily active users of ChatGPT in India surging 607% year-on-year to 73 million as of last week - more than double the number in the US, according to data from market intelligence firm Sensor Tower compiled for Reuters.

Gemini's daily users in India rose 15% from when it launched the Reliance Jio offer in November to touch 17 million last week, compared to 3 million in the US, the data showed.

Perplexity, meanwhile, has made its Pro tool - priced at $200 a year globally - free for a year for users of Indian telecom company Airtel. It says the plan gives unlimited access to its most advanced research tools.

India now accounts for more than a third of Perplexity's global daily active users, up from just 7% last year, Sensor Tower data showed. OpenAI, Perplexity and Google did not respond to Reuters requests for comment.

TRAINING FILLS DATA GAPS
OpenAI's India executive, Pragya Misra, has said on social media the company's decision to make ChatGPT Go free was part of its "continued India-first commitment" and to make tools more accessible to everyone.

Five AI analysts, however, said the freebies strategy would help companies gain from India's linguistic diversity to secure crucial data for AI training.

They view the training data generated by Indian users, characterized by a mix of languages and dialects, as a critical stress test that will help AI models master complex communication patterns that are largely absent from the existing data. Free plans "fill gaps in AI training data sets that currently lack information on user behavior patterns in the region," said Sagar Vishnoi, co-founder at AI think tank Future Shift Labs.

FREEBIES WORK IN INDIA, OFTEN
Indian billionaire Mukesh Ambani's Reliance, which has partnered with Gemini, has repeatedly used aggressive pricing to boost its customer base. Its telecom unit now has more than 500 million users, after luring customers at its 2016 launch with months of free data and voice services.

Reliance and Disney offered cricket streaming for free on their India platforms, before merging their India media operations.

ChatGPT is seeing high app usage -- with 46% of its monthly users opening the app daily in India in November, compared to 20% for Perplexity and 14% for Gemini, Sensor Tower's data showed.

Anees Hassan, a PhD student in Hyderabad, is using the free ChatGPT and Gemini plans for three hours a day to find citations, refine his writing and generate images for presentations.

"The free plan was not good enough as I used to hit chat limit caps faster," said Hassan, 33.

Still, he is also aware that freebies sometimes come with costs.

"I am concerned about data harvesting, so I have used the opt-out feature to stop sharing my data for AI training," he added.


Alswaha: Saudi Arabia Leads International Indicators, Efforts to Bridge AI Gaps

Saudi Minister of Communications and Information Technology Abdullah Alswaha speaks at the event in New York. (SPA)
Saudi Minister of Communications and Information Technology Abdullah Alswaha speaks at the event in New York. (SPA)
TT

Alswaha: Saudi Arabia Leads International Indicators, Efforts to Bridge AI Gaps

Saudi Minister of Communications and Information Technology Abdullah Alswaha speaks at the event in New York. (SPA)
Saudi Minister of Communications and Information Technology Abdullah Alswaha speaks at the event in New York. (SPA)

Saudi Minister of Communications and Information Technology Abdullah Alswaha stressed on Tuesday that the Kingdom’s achievements represent the greatest digital success story of the 21st century.

This was possible by the support of Custodian of the Two Holy Mosques King Salman bin Abdulaziz Al Saud and the direct enablement by Prince Mohammed bin Salman bin Abdulaziz Al Saud, Crown Prince and Prime Minister, reflecting their ambitious vision for building a comprehensive technological future.

The minister made his remarks from New York during his participation in the high-level meeting of the United Nations General Assembly (UNGA) on the overall review of the implementation of the outcomes of the World Summit on the Information Society (WSIS).

Alswaha said that progress in the information society is reflected worldwide, with the number of internet users rising from around 800 million to nearly 6 billion.

The Kingdom ranked first globally on the ICT Development Index (IDI) issued by the UN International Telecommunication Union (ITU) and made remarkable progress in empowering women in the digital world, with female participation reaching approximately 36%, he revealed.

He highlighted that the foremost challenge today lies in bridging the gaps in artificial intelligence (AI), namely the computing gap, the data gap, and the algorithm gap.

Alswaha stated that the Kingdom leveraged its capabilities to boost advanced computing power and launch national language models that help close the data gap in the Arab world, including the AI model “ALLaM.”

Moreover, he noted global scientific achievements, such as Saudi scientist Omar Yaghi winning the 2025 Nobel Prize in Chemistry, reflecting Saudi Arabia’s scientific presence on the international stage.

He stressed that the achievements reflect the profound impact of the support from King Salman and Crown Prince Mohammed in consolidating the Kingdom’s global standing, enhancing its pivotal role in leading a more inclusive technological future, harnessing technologies for human benefit, supporting sustainable development, and aligning with the world’s aspirations for a more advanced and integrated era.


App Developers Urge EU Action on Apple Fee Practices 

An Apple logo adorns the façade of the downtown Brooklyn Apple store on March 14, 2020, in New York. (AP)
An Apple logo adorns the façade of the downtown Brooklyn Apple store on March 14, 2020, in New York. (AP)
TT

App Developers Urge EU Action on Apple Fee Practices 

An Apple logo adorns the façade of the downtown Brooklyn Apple store on March 14, 2020, in New York. (AP)
An Apple logo adorns the façade of the downtown Brooklyn Apple store on March 14, 2020, in New York. (AP)

A coalition of 20 app developers and consumer groups on Tuesday called upon European regulators to enforce EU laws against Apple, saying the company's fee structure unfairly disadvantages European developers compared to their US rivals after a recent court decision in the United States.

The European Union's Digital Markets Act (DMA), implemented in 2023, mandates that large tech platforms labelled "gatekeepers", such as Apple, facilitate in-app transactions outside their ecosystem at no charge.

The coalition's appeal reflects concerns over a disparity following a US court ruling that restricts Apple's ability to impose fees on external transactions.

The European Commission earlier this year fined Apple 500 million euros ($588 million) for breaching the DMA by obstructing developers from guiding users to alternative payment methods.

In response to the EU ruling, Apple revised its terms to impose fees ranging from 13% for smaller businesses to up to 20% for App Store purchases, alongside penalties of 5% to 15% on external transactions.

The Coalition for Apps Fairness (CAF), representing firms such as Deezer and Proton, argues these revised fees still violate DMA stipulations and says that US developers benefit from more favorable terms after the court decision.

"This situation is untenable and damaging to the app economy," CAF said in a statement, accusing Apple of undermining transparency and stifling innovation.

Global Policy Counsel for CAF, Gene Burrus, said that developers in the EU have to either bear the cost of those fees or pass them down to customers.

"It is bad for European companies, and it is bad for European consumers," he said.

According to CAF, European developers remain disadvantaged six months after the Commission declared Apple's policies illegal under the DMA.

Although Apple has announced further policy changes to take effect in January, it has yet to specify what these revisions will entail, fueling dissatisfaction among developers over the lack of clarity.

"We want the EU Commission to tell Apple that the law is the law and that free of charge means free of charge," Burrus said, adding that the European authorities should consider referring the issue to the European Court of Justice if necessary.