Start your day with intelligence. Get The OODA Daily Pulse.

Home > Briefs > Technology > AI widely used to exploit critical flaws, disrupt supply chains

AI widely used to exploit critical flaws, disrupt supply chains

The malicious use of AI has rapidly accelerated to the point where some threat groups have embedded the technology across their cyber operations, according to a report released Monday by CrowdStrike. China-nexus actors Vault Panda and Genesis Panda have used AI to exploit critical vulnerabilities within 24 hours after a proof-of-concept was disclosed. “Exploitation windows have collapsed down to hours, and zero-day and n-day vulnerabilities are being weaponized faster than traditional patching cycles can keep up,” Adam Meyers, head of counter adversary operations at CrowdStrike, told Cybersecurity Dive. The report confirms growing evidence that AI is enabling hackers to add considerable speed and scale to their attacks. Software vulnerabilities can be exploited much faster than security teams can patch.Meanwhile a North Korea-nexus group tracked as Stardust Chollima was able to inject a malicious npm package into 131 trusted Mastra AI frameworks in a supply-chain attack, according to CrowdStrike researchers.

Full report : New CrowdStrike report confirms the growing use of AI across a broad spectrum of threat groups.