Microsoft: Hackers using AI tools are harder to stop
秋天的小熊诒
发表于 2023-10-8 15:47:34
127
0
0
Tom Burt, Microsoft's vice president of customer security and trust, said hackers are using AI tools that have been on the market for some time and generative AI chatbots that emerged last year to create more covert cyber attacks.
"Cybercriminals and nation states are using AI to improve the language they use in phishing attacks or the images they use in influence operations," he said.
At the same time, a new development in ransomware shows that hackers can encrypt data remotely, rather than in the hacked network, Microsoft said. By sending encrypted files to another computer, attackers leave less evidence behind, making it harder for the targeted business to recover. This technique was used in about 60 percent of the human-operated ransomware attacks Microsoft observed last year.
Against the backdrop of a surge in attacks, new AI and encryption tools used by hackers are making it harder for companies to defend their networks.
Microsoft researchers analyzed data generated from the 135 million devices the company manages for customers and the more than 300 hacking groups it tracks, and found that general data leakage attacks doubled between November 2022 and June 2023. In such attacks, hackers steal data and demand a ransom from the victim.
In addition, the firm said in a report released Thursday that human-operated ransomware attacks increased 200 percent between September 2022 and June 2023. Unlike automated ransomware attacks, human-operated ransomware attacks are customized.
Now that many companies have improved their ability to recover from the damage caused by ransomware itself, the way hackers make money is shifting to stealing data first, said Jake Williams, a member of the veteran network IANS Research and a former member of the National Security Agency's cyberattack team. And then blackmail the victims for a ransom. "There is no question that we are seeing more threat actors turn to extortion," he said.
Lane Bess, CEO of AI cybersecurity provider Deep Instinct, said tech and networking companies are quickly adding AI capabilities to their security tools, giving them a taste of their own medicine. "The fight has to escalate," Bess said Monday at the Wall Street Journal CIO Networking Summit.
Cisco Systems Inc. 's (CSCO) $28 billion acquisition of Splunk, announced in September, reflects a shift in the networking market that shows investment is flowing to companies focused on using AI to manage security and risk.
U.S. cybersecurity and national security officials have warned of the risk of hackers using powerful AI tools to infiltrate corporate and government systems, saying the U.S. government needs to develop AI technology to counter attacks from hostile foreign powers. Jen Easterly, director of the Cybersecurity and Infrastructure Security Agency, said in April that the potential use of generative AI tools by cybercriminals and nation-state hackers was a significant threat, There are currently no legal safeguards to limit their use. Last month, tech executives including Elon Musk, Mark Zuckerberg and Bill Gates met behind closed doors with U.S. senators about AI and potential regulatory issues.
Lukasz Olejnik, an independent cybersecurity researcher and consultant, said hackers are using large language models like those in generative AI tools to speed up the generation of elements of a cyber attack, such as writing phishing emails or creating malware, making it easier to carry out a hack. To train extremely large models, large language models require huge amounts of data. "Some tasks that used to be done by teams can now be done by one person," he said.
Diego Souza, chief information security officer at manufacturing company Cummins (CMI), says he's seen a big increase in near-realistic phishing emails since generative tools, including OpenAI's ChatGPT, came out last year. Emails now mimic real companies and people, he says, and use more persuasive language than in the past. "I've seen some generative AI phishing that's just amazing," Souza said.
Microsoft found that cybercriminals can order underground phishing services for between $200 and $1,000 per month.
Burt said sophisticated hacking groups may start trying to use AI to improve on proven cyberattacks. Phishing aimed at breaking into password-protected accounts, as well as password spraying and brute force attacks, are still the most common ways hackers infiltrate corporate systems. "What [hackers] are looking for is: what's the cheapest way to break into a target?" 'he said.
CandyLake.com 系信息发布平台,仅提供信息存储空间服务。
声明:该文观点仅代表作者本人,本文不代表CandyLake.com立场,且不构成建议,请谨慎对待。
声明:该文观点仅代表作者本人,本文不代表CandyLake.com立场,且不构成建议,请谨慎对待。
猜你喜欢
- Can it solve 99% of usage scenarios! "Microsoft and Nvidia are betting that small models and big models are no longer popular?
- Microsoft will hold a cybersecurity event next month, and the initiator of the "Global Blue Screen" will attend
- The valuation will exceed 700 billion yuan! NVIDIA, Apple, and Microsoft may jointly invest in OpenAI
- Quantum computing milestone! Microsoft successfully entangles 12 logical qubits and combines AI to solve scientific problems
- Microsoft seeks US export license for AI chips to Middle East, collaborates with Abu Dhabi G42 to establish AI research institute
- 마이크로소프트, 미국의 중동 AI 칩 수출 허가 모색, 아부다비 G42와 합작 AI 연구소 개설
- Microsoft raises dividend and announces up to $60 billion buyback plan
- Microsoft, Xbox 게임 부문에서 650명 감원
- マイクロソフトは今後3年間でメキシコに13億ドルを投資し、現地のAIインフラ整備を強化する
- 마이크로소프트는 앞으로 3년간 멕시코에 13억 달러를 투자해 현지 AI 인프라 건설을 강화할 것이다
-
AP通信9月27日、インテルは今月中旬に発表された重大な業務調整に加え、近日中にクアルコムに買収合併される可能性があるとの情報を伝えていることを明らかにした。 しかし、ウォール街のほとんどのアナリストは、 ...
- 什么大师特
- 3 天前
- 支持
- 反对
- 回复
- 收藏
-
9月27日、ネット通信社武漢グローバル本社の操業停止による荒廃について、同社の公式対応インタフェースニュースによると、同社本社の建設は操業停止ではなく、現在建設作業は計画通り着実に進められており、この1 ...
- 一念之间323
- 3 天前
- 支持
- 反对
- 回复
- 收藏
-
Alphabet傘下のグーグルの最新情報によると、同社は米国サウスカロライナ州に33億ドルを投資し、データセンターとクラウドインフラストラクチャを拡張する計画だ。 グーグルのサンダル・ピチャイ最高経営責任者は木 ...
- SNT
- 3 天前
- 支持
- 反对
- 回复
- 收藏
-
8月のトヨタ自動車(ダイハツ自動車と日野自動車を除く、レクサスを含む)の世界生産台数は前年同月比11.2%減の709571台、世界販売台数は前年同月比3.1%減の826863台だった。 日本本土市場では、トヨタ自動車の8月 ...
- SOGO
- 前天 18:03
- 支持
- 反对
- 回复
- 收藏