
The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
South Korea saw a 19.5% increase in cyber incidents in the first half of the year, with DDoS and ransomware attacks rising sharply. The proliferation of generative AI and AI agents has enabled attackers to automate and intensify cyber threats, leading to significant harm to infrastructure and data security.[AI generated]
Why's our monitor labelling this an incident or hazard?
The article explicitly states that generative AI is being used by attackers to enhance their capabilities in cyberattacks, including vulnerability scanning, code generation, and automation of attack preparation, which directly contributes to increased cyber intrusion incidents and harms such as data breaches, ransomware, and DDoS attacks. These harms affect organizations' operations, data security, and community trust, fitting the definition of AI Incident as the AI system's use has directly or indirectly led to harm. The article does not merely warn of potential future harm but documents ongoing and increasing incidents involving AI-enabled attacks, thus it is not an AI Hazard or Complementary Information. It is not Beneficial Use since the AI is used maliciously, nor is it Unrelated as AI involvement is central to the reported harms.[AI generated]