-
Kenya's economy faces climate change risks: World Bank
-
Two die in 'respiratory illness' outbreak on Atlantic cruise ship
-
More Nepalis drive electric, evading global fuel shocks
-
Latecomer Japan eyes slice of rising global defence spending
-
German fertiliser makers and farmers struggle with Iran war fallout
-
OPEC+ to make first post-UAE production decision
-
Massive crowds fill Rio's Copacabana beach for Shakira concert
-
US airlines step up as Spirit winds down
-
Aviation companies step up as Spirit winds down
-
'Bookless bookstore': audio-only book shop opens in New York
-
Venezuelan protesters call government wage hike a joke
-
S&P 500, Nasdaq end at fresh records on tech earnings strength
-
Pope names former undocumented migrant as US bishop of West Virginia
-
Trump says will raise US tariffs on EU cars to 25%
-
ExxonMobil CEO sees chance of higher oil prices as earnings dip
-
After Madonna and Lady Gaga, Shakira set for Rio beach mega-gig
-
King Charles gets warm welcome in Bermuda after whirlwind US visit
-
Coe hails IOC gender testing decision
-
Baguettes take centre stage on France's Labour Day
-
Iran offers new proposal amid stalled US peace talks
-
French hub monitors Hormuz tensions from afar
-
Oil steady after wild swing, stocks diverge in thin trading
-
Chinese swimmer Sun Yang reports cyberbullying to police
-
Iran activates air defences as Trump faces congressional deadline
-
India's cows offer biogas alternative to Mideast energy crunch
-
Crude edges up after wild swing, stocks track Wall St rally
-
Formerra Appoints Matt Borowiec as Chief Commercial Officer
-
New Princess Diana documentary promises her own words
-
Oil slumps after hitting peak, US indices reach new records
-
Venezuela leader hikes minimum wage package by 26%
-
Apple earnings beat forecasts on iPhone 17 demand
-
Bangladesh signs biggest-ever plane deal for 14 Boeings
-
Musk grilled on AI profits at OpenAI trial
-
Venezuela opens arms to world with Miami-Caracas flight
-
US Congress votes to end record government shutdown
-
First direct US-Venezuela flight in years arrives in Caracas
-
Just telling nations to quit fossil fuels 'not realistic': COP31 chief
-
Trump hails 'greatest king' Charles as state visit wraps up
-
Drivers help study road-trip mystery: what became of bug splats?
-
Oil strikes 4-year peak, stocks rise
-
Iran's supreme leader defies US blockade as oil prices soar
-
White House against Anthropic expanding Mythos model access: report
-
Oil crisis fuels calls to speed up clean energy transition
-
European rocket blasts off with Amazon internet satellites
-
Nigerian airlines avert shutdown as Mideast war hikes fuel prices
-
ArcelorMittal boosts sales but profits squeezed
-
German growth beats forecast but energy shock looms
-
Air France-KLM trims 2026 outlook over Middle East war impact
-
Oil surges 7% to top $126 on Trump blockade warning
-
Volkswagen warns of more cost cuts as profits plunge
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
H.Müller--CPN