{"id":31835,"date":"2026-10-03T14:15:51","date_gmt":"2026-10-03T11:15:51","guid":{"rendered":"https:\/\/ukrmedia.news\/?p=31835"},"modified":"2026-10-03T14:15:51","modified_gmt":"2026-10-03T11:15:51","slug":"kiberataky-ai-avtonomni-agenty","status":"publish","type":"post","link":"https:\/\/ukrmedia.news\/en\/science-tech\/kiberataky-ai-avtonomni-agenty\/","title":{"rendered":"AI is already carrying out attacks with almost no human involvement: the world is entering a new era of cyberwarfare"},"content":{"rendered":"<p>Artificial intelligence is increasingly moving away from its role as a hacker\u2019s assistant towards becoming a system capable of independently carrying out individual stages of a cyberattack \u2014 from reconnaissance and vulnerability scanning to data collection following a breach. Patrice Kane, CEO of Thales, stated that defences must evolve just as quickly: \u00abAI must be countered with AI.\u00bb Microsoft and Anthropic are also observing a trend towards more autonomous attacks, although fully automated, sophisticated breaches have not yet become the norm.<\/p>\n<div class=\"news-summary-box\">\n<strong>Briefly about the main points<\/strong><\/p>\n<ul>\n<li>Thales has observed an increase in the speed and complexity of cyberattacks utilising AI.<\/li>\n<li>Microsoft reports a shift from AI assistants to semi-autonomous attacks.<\/li>\n<li>In controlled tests, the AI has already successfully carried out complex, multi-stage attack chains.<\/li>\n<li>Experts emphasise that security measures should also be automated and make use of AI.<\/li>\n<\/ul>\n<\/div>\n<h2>AI is starting to carry out part of the cyberattack on its own<\/h2>\n<p>Just a few years ago, artificial intelligence was mainly used in cybercrime to write phishing emails, analyse code or create simple scripts. Now the picture is changing.<\/p>\n<p>In its Digital Defence Report 2026, Microsoft reports that over the past six months it has observed a shift from <strong>AI that assists the operator<\/strong>, to systems that are already capable of <strong>to lead part of the attack or carry it out independently<\/strong>. AI is used for reconnaissance, vulnerability scanning, creating phishing campaigns, developing malware and post-compromise activities.<\/p>\n<p>In a controlled Microsoft environment, one of the most advanced AI systems was able to pass <strong>32 sequential stages of a complex attack<\/strong>. At the same time, the company emphasises: fully autonomous real-world <a href=\"https:\/\/ukrmedia.news\/en\/science-tech\/kimsuky-local-ai-cyberattack-tools\/\">cyberattacks<\/a> until they became widespread, and people still play an important role in setting goals and making key decisions.<\/p>\n<h2>Vulnerabilities can be turned into weapons in less than a day<\/h2>\n<p>Another problem is speed.<\/p>\n<p>According to Microsoft, the median time from the discovery of a vulnerability \u00abin the wild\u00bb to its exploitation in attacks has already fallen <strong>well under 24 hours<\/strong>. At the same time, it often takes large companies between 30 and 60 days to rectify critical external vulnerabilities.<\/p>\n<p>AI only widens this gap. What previously required several days\u2019 work by an experienced team can now be partially automated: the system analyses the code, tests different operational scenarios and moves on to the next step without the constant involvement of an operator.<\/p>\n<h2>Anthropic has discovered \u00abswarms\u00bb of AI agents<\/h2>\n<p><a href=\"https:\/\/ukrmedia.news\/en\/science-tech\/anthropic-biolab-claude-experiments\/\">Anthropic<\/a> In her September report, she described real-life instances where cybercriminals had used <strong>agent swarms \u2014 swarms of AI agents<\/strong>.<\/p>\n<p>In this type of operation, a single lead agent breaks the task down into parts and assigns them to dozens of subordinate agents. Some carry out reconnaissance, others look for vulnerabilities, whilst others analyse security software or collect stolen data.<\/p>\n<p>Anthropic reports that, in certain campaigns, automated systems may have been operating <strong>for hours or days with minimal human supervision<\/strong>.<\/p>\n<p>The company also described a group of Chinese-speaking operators who maintained permanent AI agents for the automated collection of open-source intelligence, vulnerability research and other cyber operations. In this context, humans were primarily responsible for identifying targets and reviewing the results.<\/p>\n<h2>AI lowers the barrier to entry for hackers<\/h2>\n<p>The biggest change is not just that attacks are becoming faster. AI is reducing the amount of specialist knowledge required to carry out individual stages of a cyberattack. Tasks that previously required the involvement of an experienced programmer or security analyst can increasingly be delegated <a href=\"https:\/\/ukrmedia.news\/en\/science-tech\/google-openai-ai-agenty-ryzyky\/\">AI agent<\/a>.<\/p>\n<p>Anthropic notes that automation reduces the cost of cyber operations for an attacker. A single operator can potentially target dozens of targets simultaneously, rather than just one.<\/p>\n<p>This is particularly dangerous for small and medium-sized businesses. Previously, such companies may not have been of interest to sophisticated attackers due to the low potential financial gain. However, if a significant proportion of their operations is automated, it becomes more economically viable to attack thousands of less well-protected organisations.<\/p>\n<h2>Thales: \u00abAI must be tackled with AI\u00bb<\/h2>\n<p>Against this backdrop, the CEO of Thales <strong>Patrice Kane<\/strong> called on companies and governments to invest significantly more in <strong>AI protection<\/strong>.<\/p>\n<p>According to him, attackers are already using AI to carry out faster and more complex operations, and sometimes to perform certain tasks autonomously. Consequently, traditional systems that rely on manual analysis of each signal may simply be unable to respond in time.<\/p>\n<p>Thales has unveiled new systems to protect against AI attacks and has expanded its collaboration with Google Cloud in the field of corporate AI security. Kane emphasised that the main advantage of AI for defence lies in its speed: the system can simultaneously analyse millions of events, detect anomalies and automatically block suspicious activities before a human can spot them.<\/p>\n<h2>Real AI agents have already attempted to attack government systems<\/h2>\n<p>The research firm Transluce reported that AI agents had attempted to gain access to the website <strong>Library and Archives Canada<\/strong>. The Canadian Cyber Security Centre has confirmed that it is aware of these attempts, but has found no evidence of a successful breach.<\/p>\n<p>An isolated incident involving an AI agent was previously reported in Australia, where the system gained unauthorised access to a government portal containing medical data.<\/p>\n<p><a href=\"https:\/\/ukrmedia.news\/en\/science-tech\/openai-ai-agents-us-government-sites\/\">OpenAI<\/a> It also alerted more than 100 organisations to unauthorised activity involving AI agents.<\/p>\n<p>These cases do not mean that AI is already capable of carrying out any kind of cyberattack on its own. However, they do demonstrate that autonomous systems are already able to move beyond test environments and interact with real-world information systems.<\/p>\n<h2>The main danger is the scale<\/h2>\n<p>Even if a single AI agent is no match for an experienced hacker, it has another advantage \u2014 <strong>scalability<\/strong>.<\/p>\n<p><strong>A thousand AI agents can simultaneously:<\/strong><\/p>\n<ul>\n<li>to scan thousands of websites for vulnerabilities;<\/li>\n<li>create personalised phishing messages;<\/li>\n<li>analyse the sources of password leaks;<\/li>\n<li>to test different penetration methods;<\/li>\n<li>to gather information once access has been granted;<\/li>\n<li>to adapt malicious code after it has been detected by security systems.<\/li>\n<\/ul>\n<p>Anthropic has already seen cases where a single operator was working with dozens of victims simultaneously, whilst the AI automatically reconfigured and redeployed the tools after they had been blocked.<\/p>\n<h2>Fully autonomous hackers have not yet become the norm<\/h2>\n<p>Microsoft explicitly states that most sophisticated real-world attacks still require <strong>substantial human control<\/strong>. AI is good at automating individual parts of the process, but it can make mistakes, misjudge the context or get stuck when dealing with non-standard systems.<\/p>\n<p>Anthropic also points out that even in the most autonomous campaigns, people generally retain control over strategic decisions: who to attack, what data is valuable, and what to do with the information obtained.<\/p>\n<p>So, the main change in 2026 is not the emergence of an \u00abAI hacker\u00bb who has completely replaced humans, but <strong>a sharp reduction in the amount of manual work required to carry out an attack<\/strong>.<\/p>\n<h2>Cybersecurity joins the AI-versus-AI race<\/h2>\n<p>The next logical step is becoming increasingly clear: attacks and defences will be automated simultaneously.<\/p>\n<p>On the one hand, there are AI agents that search for vulnerabilities around the clock, generate exploits and manage campaigns. On the other hand, there are defence systems that must independently detect anomalies, analyse code, block suspicious activity and patch vulnerabilities before an attacker can exploit them.<\/p>\n<p>That is precisely why Thales\u2019s proposition <strong>\u00abto combat AI with AI\u00bb<\/strong> could become one of the key principles of cybersecurity in the coming years.<\/p>","protected":false},"excerpt":{"rendered":"<p>\u0428\u0442\u0443\u0447\u043d\u0438\u0439 \u0456\u043d\u0442\u0435\u043b\u0435\u043a\u0442 \u0434\u0435\u0434\u0430\u043b\u0456 \u0430\u043a\u0442\u0438\u0432\u043d\u0456\u0448\u0435 \u043f\u0435\u0440\u0435\u0445\u043e\u0434\u0438\u0442\u044c \u0432\u0456\u0434 \u0440\u043e\u043b\u0456 \u043f\u043e\u043c\u0456\u0447\u043d\u0438\u043a\u0430 \u0445\u0430\u043a\u0435\u0440\u0430 \u0434\u043e \u0441\u0438\u0441\u0442\u0435\u043c\u0438, \u044f\u043a\u0430 \u0437\u0434\u0430\u0442\u043d\u0430 \u0441\u0430\u043c\u043e\u0441\u0442\u0456\u0439\u043d\u043e \u0432\u0438\u043a\u043e\u043d\u0443\u0432\u0430\u0442\u0438 \u043e\u043a\u0440\u0435\u043c\u0456 \u0435\u0442\u0430\u043f\u0438 \u043a\u0456\u0431\u0435\u0440\u0430\u0442\u0430\u043a\u0438 \u2014 \u0432\u0456\u0434 \u0440\u043e\u0437\u0432\u0456\u0434\u043a\u0438 \u0442\u0430 \u043f\u043e\u0448\u0443\u043a\u0443 \u0432\u0440\u0430\u0437\u043b\u0438\u0432\u043e\u0441\u0442\u0435\u0439 \u0434\u043e \u0437\u0431\u043e\u0440\u0443 \u0434\u0430\u043d\u0438\u0445 \u043f\u0456\u0441\u043b\u044f \u043f\u0440\u043e\u043d\u0438\u043a\u043d\u0435\u043d\u043d\u044f. \u0413\u0435\u043d\u0435\u0440\u0430\u043b\u044c\u043d\u0438\u0439 \u0434\u0438\u0440\u0435\u043a\u0442\u043e\u0440 Thales \u041f\u0430\u0442\u0440\u0456\u0441 \u041a\u0435\u0439\u043d \u0437\u0430\u044f\u0432\u0438\u0432, \u0449\u043e \u0437\u0430\u0445\u0438\u0441\u0442 \u043c\u0430\u0454 \u0440\u043e\u0437\u0432\u0438\u0432\u0430\u0442\u0438\u0441\u044f \u0442\u0430\u043a \u0441\u0430\u043c\u043e \u0448\u0432\u0438\u0434\u043a\u043e: \u00ab\u0437 AI \u043f\u043e\u0442\u0440\u0456\u0431\u043d\u043e \u0431\u043e\u0440\u043e\u0442\u0438\u0441\u044f \u0437\u0430 \u0434\u043e\u043f\u043e\u043c\u043e\u0433\u043e\u044e AI\u00bb. Microsoft \u0456 Anthropic \u0442\u0430\u043a\u043e\u0436 \u0444\u0456\u043a\u0441\u0443\u044e\u0442\u044c \u0440\u0443\u0445 [\u2026]<\/p>\n","protected":false},"author":207433346,"featured_media":31836,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"rank_math_description":"Microsoft, Anthropic \u0456 Thales \u0444\u0456\u043a\u0441\u0443\u044e\u0442\u044c \u043f\u0435\u0440\u0435\u0445\u0456\u0434 \u0434\u043e \u0430\u0432\u0442\u043e\u043d\u043e\u043c\u043d\u0456\u0448\u0438\u0445 AI-\u043a\u0456\u0431\u0435\u0440\u0430\u0442\u0430\u043a. \u0410\u0433\u0435\u043d\u0442\u0438 \u0432\u0436\u0435 \u043c\u043e\u0436\u0443\u0442\u044c \u0441\u0430\u043c\u043e\u0441\u0442\u0456\u0439\u043d\u043e \u0432\u0438\u043a\u043e\u043d\u0443\u0432\u0430\u0442\u0438 \u0447\u0430\u0441\u0442\u0438\u043d\u0443 \u0441\u043a\u043b\u0430\u0434\u043d\u0438\u0445 \u043e\u043f\u0435\u0440\u0430\u0446\u0456\u0439.","rank_math_title":"\u041a\u0456\u0431\u0435\u0440\u0430\u0442\u0430\u043a\u0438 \u0437 AI \u0441\u0442\u0430\u044e\u0442\u044c \u0430\u0432\u0442\u043e\u043d\u043e\u043c\u043d\u0456\u0448\u0438\u043c\u0438 \u2014 \u0435\u043a\u0441\u043f\u0435\u0440\u0442\u0438","rank_math_focus_keyword":"\u041a\u0456\u0431\u0435\u0440\u0430\u0442\u0430\u043a\u0438","td_subtitle":"","subtitle":"","footnotes":""},"categories":[805620],"tags":[806764],"class_list":["post-31835","post","type-post","status-publish","format-standard","has-post-thumbnail","category-science-tech","tag-806764"],"_links":{"self":[{"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/posts\/31835","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/users\/207433346"}],"replies":[{"embeddable":true,"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/comments?post=31835"}],"version-history":[{"count":1,"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/posts\/31835\/revisions"}],"predecessor-version":[{"id":31837,"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/posts\/31835\/revisions\/31837"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/media\/31836"}],"wp:attachment":[{"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/media?parent=31835"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/categories?post=31835"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ukrmedia.news\/en\/wp-json\/wp\/v2\/tags?post=31835"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}