Google Warns of AI Agents Accelerating Cyberattacks
Cybersecurity researchers are warning that threat actors are increasingly leveraging artificial intelligence agents to automate and accelerate cyberattacks, with one financially motivated group successfully executing a mass credential-harvesting campaign in under six hours. The findings, detailed by Google Threat Intelligence Group (GTIG), indicate a significant shift from simple AI chatbot interactions to more sophisticated, autonomous frameworks capable of planning, building, and executing complex intrusions with minimal human oversight. In a notable incident, attackers compromised an organization's cloud infrastructure and deployed an autonomous, multi-agent attack framework. Utilizing an AI coding chatbot, a specific prompt, and agent instructions, the threat actor was able to plan, build, and execute a large-scale credential harvesting operation in less than six hours. This campaign compromised thousands of third-party credentials.