AI-Fueled Cyberattacks Surge as Adversaries Exploit and Target AI Systems

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

CrowdStrike's 2026 Threat Hunting Report reveals that AI is now deeply embedded in cyber adversary operations. Attackers, including state-sponsored groups from China and North Korea, use AI to rapidly exploit vulnerabilities, generate malicious tools, and poison AI frameworks, causing accelerated, large-scale cyberattacks and making AI systems themselves prime targets.[AI generated]

Why's our monitor labelling this an incident or hazard?

The report details adversaries using AI capabilities to exploit vulnerabilities rapidly and poison AI frameworks, which constitutes malicious use of AI systems. These actions can lead to harm such as disruption of critical infrastructure or violation of trust in AI systems, fitting the definition of an AI Incident due to realized harm from AI system misuse.[AI generated]
AI principles
Robustness & digital securitySafety

Industries
Digital security

Affected stakeholders
BusinessGovernment

Harm types
Economic/PropertyReputational

AI system task:
Content generationEvent/anomaly detection


Articles about this incident or hazard