Microsoft: Hackers using AI tools are harder to stop
秋天的小熊诒
发表于 2023-10-8 15:47:34
144
0
0
Tom Burt, Microsoft's vice president of customer security and trust, said hackers are using AI tools that have been on the market for some time and generative AI chatbots that emerged last year to create more covert cyber attacks.
"Cybercriminals and nation states are using AI to improve the language they use in phishing attacks or the images they use in influence operations," he said.
At the same time, a new development in ransomware shows that hackers can encrypt data remotely, rather than in the hacked network, Microsoft said. By sending encrypted files to another computer, attackers leave less evidence behind, making it harder for the targeted business to recover. This technique was used in about 60 percent of the human-operated ransomware attacks Microsoft observed last year.
Against the backdrop of a surge in attacks, new AI and encryption tools used by hackers are making it harder for companies to defend their networks.
Microsoft researchers analyzed data generated from the 135 million devices the company manages for customers and the more than 300 hacking groups it tracks, and found that general data leakage attacks doubled between November 2022 and June 2023. In such attacks, hackers steal data and demand a ransom from the victim.
In addition, the firm said in a report released Thursday that human-operated ransomware attacks increased 200 percent between September 2022 and June 2023. Unlike automated ransomware attacks, human-operated ransomware attacks are customized.
Now that many companies have improved their ability to recover from the damage caused by ransomware itself, the way hackers make money is shifting to stealing data first, said Jake Williams, a member of the veteran network IANS Research and a former member of the National Security Agency's cyberattack team. And then blackmail the victims for a ransom. "There is no question that we are seeing more threat actors turn to extortion," he said.
Lane Bess, CEO of AI cybersecurity provider Deep Instinct, said tech and networking companies are quickly adding AI capabilities to their security tools, giving them a taste of their own medicine. "The fight has to escalate," Bess said Monday at the Wall Street Journal CIO Networking Summit.
Cisco Systems Inc. 's (CSCO) $28 billion acquisition of Splunk, announced in September, reflects a shift in the networking market that shows investment is flowing to companies focused on using AI to manage security and risk.
U.S. cybersecurity and national security officials have warned of the risk of hackers using powerful AI tools to infiltrate corporate and government systems, saying the U.S. government needs to develop AI technology to counter attacks from hostile foreign powers. Jen Easterly, director of the Cybersecurity and Infrastructure Security Agency, said in April that the potential use of generative AI tools by cybercriminals and nation-state hackers was a significant threat, There are currently no legal safeguards to limit their use. Last month, tech executives including Elon Musk, Mark Zuckerberg and Bill Gates met behind closed doors with U.S. senators about AI and potential regulatory issues.
Lukasz Olejnik, an independent cybersecurity researcher and consultant, said hackers are using large language models like those in generative AI tools to speed up the generation of elements of a cyber attack, such as writing phishing emails or creating malware, making it easier to carry out a hack. To train extremely large models, large language models require huge amounts of data. "Some tasks that used to be done by teams can now be done by one person," he said.
Diego Souza, chief information security officer at manufacturing company Cummins (CMI), says he's seen a big increase in near-realistic phishing emails since generative tools, including OpenAI's ChatGPT, came out last year. Emails now mimic real companies and people, he says, and use more persuasive language than in the past. "I've seen some generative AI phishing that's just amazing," Souza said.
Microsoft found that cybercriminals can order underground phishing services for between $200 and $1,000 per month.
Burt said sophisticated hacking groups may start trying to use AI to improve on proven cyberattacks. Phishing aimed at breaking into password-protected accounts, as well as password spraying and brute force attacks, are still the most common ways hackers infiltrate corporate systems. "What [hackers] are looking for is: what's the cheapest way to break into a target?" 'he said.
CandyLake.com is an information publishing platform and only provides information storage space services.
Disclaimer: The views expressed in this article are those of the author only, this article does not represent the position of CandyLake.com, and does not constitute advice, please treat with caution.
Disclaimer: The views expressed in this article are those of the author only, this article does not represent the position of CandyLake.com, and does not constitute advice, please treat with caution.
You may like
- 파이저 투자, 마이크로소프트 목표가 485달러에서 470달러로 하향 조정, 초배정 등급 유지
- OpenAI and Microsoft seem to be on the same page, but they are apart? It is said that potential "breakup clauses" have already been included in the contract between the two parties
- NVIDIA explodes with explosive materials! Guo Mingchi: Microsoft Q4 GB200 chip orders surge 3-4 times
- Microsoft adds autonomous agent functionality to Copilot Studio International Edition
- Before the US stock market, the three major futures indexes slightly rose, and well-known Chinese concept stocks generally rose; Wenyuan Zhixing restarts IPO in the United States with a maximum valuation of about 5 billion US dollars; Fashion luxury
- Microsoft's first quarter report: double-digit growth in performance, expected slowdown in growth of cloud business Azure
- 마이크로소프트 1분기 보고서: 실적 두 자릿수 성장, 클라우드 사업 Azure 성장 기대 둔화
- Top 20 US Stock Exchange Transactions: Microsoft Falls Over 6% After Results, Largest Single Day Drop in Two Years
- icrosoft는 2025년 10월 14일에 Windows 10 시스템에 대한 지원 서비스를 종료한다고 공식 발표했습니다.
- Private equity leader Jinglin's US stock holdings exposed: selling off Nvidia, Microsoft adding positions in Apple, Tencent Music, etc
-
"영비릉: 2024회계연도 영업수입 동기대비 8% 감소"영비릉은 2024회계연도 재무제보를 발표했다.2024 회계연도 매출은 149억5500만 유로로 전년 동기 대비 8% 감소했습니다.이익은 31억 500만 유로입니다.이익률은 ...
- 勇敢的树袋熊1
- 3 일전
- Up
- Down
- Reply
- Favorite
-
계면신문기자 장우발 4분기의 영업수입이 하락한후 텐센트음악은 다시 성장으로 돌아왔다. 11월 12일, 텐센트음악은 최신 재보를 발표했다.2024년 9월 30일까지 이 회사의 3분기 총수입은 70억 2천만 위안으로 전년 ...
- 勇敢的树袋熊1
- 그저께 15:27
- Up
- Down
- Reply
- Favorite
-
본사소식 (기자 원전새): 11월 14일, 다다그룹 (나스닥코드: DADA) 은 2024년 3분기 실적보고를 발표했다. 수치가 보여준데 따르면 고품질발전전략에 지속적으로 전념하고 사용자체험을 끊임없이 최적화하며 공급을 ...
- 家养宠物繁殖
- 어제 15:21
- Up
- Down
- Reply
- Favorite
-
11월 12일 소식에 따르면 소식통에 따르면 아마존은 무료스트리밍서비스 Freevee를 페쇄하고 일부 종업원과 프로를 구독서비스 Prime Video로 이전할 계획이다. 올해 초 아마존이 내놓은 몇 편의 대형 드라마의 효 ...
- 度素告
- 그저께 13:58
- Up
- Down
- Reply
- Favorite