-
Kenya's economy faces climate change risks: World Bank
-
Castro gives crucial backing to Cuba reforms
-
Qantas to launch non-stop Sydney-London flights in October 2027
-
US Fed chair Warsh vows reforms as central bank signals rate hikes on horizon
-
US Federal Reserve holds rates steady, raises inflation expectations
-
Brest boss Roy dies aged 58 from cancer
-
Military salutes and K-pop madness shake up Colombia campaigning
-
Recovery of ship traffic in Hormuz limited, but signs emerge
-
England's World Cup opener puts Spanish resort on beer alert
-
Nations allege 'attacks' on science at key climate talks
-
Plague was killing hunter-gatherers 5,500 years ago: study
-
Prince Harry and family to visit UK in July: media
-
What happens when the Strait of Hormuz re-opens?
-
US retail sales beat expectations in May as energy costs stay high
-
Spain logs third-warmest year on record in 2025
-
'Heartbreaking': Afghan govt staff abandon smartphones
-
Groundbreaking US astronaut Christina Koch wins top Spanish award
-
BBC eyes compulsory redundancies in cost-cutting drive
-
Sovereignty fears dog AI enthusiasm at France's Vivatech
-
Japan puts the heat on suspected ice cream cartel
-
Sovereignty fears to dog AI enthusiasm at France's Vivatech
-
MEXC May Report: SPACEX Launchpad Oversubscribed 15.5x, US Equity Futures Volume Jumps 85%
-
MEXC Prediction Markets Launches Combo to Enable Multi-Event Combination Trading
-
'We have always won': Ebola pioneer still on front line at 84
-
Trap, neuter, release: Jakarta battles cat-astrophic stray numbers
-
US Fed set to hold rates steady at Warsh's first meeting in charge
-
U.S. Air Force Awards GA-ASI Production Contract for FQ-42A CCA
-
Spanish actor Javier Bardem leaves his mark on Hollywood Boulevard
-
After three sessions, SpaceX already among world's most valuable companies
-
Surging SpaceX overtakes Amazon to become 5th biggest company
-
BMW downgrades 2026 targets on Mideast war, China woes
-
German court bans McDonald's from making climate claim
-
Campaigners urge G7 chiefs to protect children from AI risks
-
Like father, like son: Prince George to attend Eton College
-
Paris store to part ways with Shein after ownership change
-
US Federal Reserve kicks off first meeting with Warsh as chair
-
How can France-UK mission help reopen Strait of Hormuz?
-
EU to ban plant-based 'steaks' but veggie 'burgers' sizzle on
-
Russian oil producer rations fuel as Ukraine attacks bite
-
EU clears major hurdle on US tariff deal
-
Mideast war peace deal boosts German investor morale
-
Iran says talks on final US deal to begin this week
-
With feasts and music, Kashmiri weddings keep traditions alive
-
French spies drop AI giant Palantir over US overreliance fears
-
India blocks Telegram before retest exam to curb cheating
-
Bank of Japan hikes interest rate to 31-year high
-
Stocks extend rally, oil flat as peace optimism builds
-
Deadline looms for UniCredit's hostile bid for Commerzbank
-
Bank of Japan hikes rate to 31-year high
-
Scientist confronting the rising global threat of mosquitoes
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
H.Müller--CPN