Frontier AI Increases Cybersecurity Risks for Global Organizations

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

A global EY study highlights that advanced AI models (frontier AI) can autonomously identify and exploit cybersecurity vulnerabilities, leaving many organizations unprepared. Over a third of digital assets are in a "vulnerability zone," raising risks of AI-driven cyberattacks and operational disruptions worldwide.[AI generated]

Why's our monitor labelling this an incident or hazard?

The article explicitly involves AI systems in the context of cybersecurity threats, including frontier AI models that can autonomously identify and exploit vulnerabilities, and AI tools vulnerable themselves. The discussion centers on the potential for AI-driven cyberattacks and the unpreparedness of organizations, indicating a credible risk of harm to digital assets and operational continuity. However, no specific AI-caused harm or incident is reported; the harms are prospective and the article focuses on the risk environment and strategic recommendations. This fits the definition of an AI Hazard, where AI use or development could plausibly lead to harm but no harm has yet occurred. It is not Complementary Information because the article is not updating or responding to a past incident but rather presenting new risk insights. It is not an AI Incident because no realized harm is described. It is not Beneficial Use or Unrelated.[AI generated]
AI principles
Robustness & digital securitySafety

Industries
Digital security

Affected stakeholders
Business

Harm types
Economic/Property

Business function:
ICT management and information security

AI system task:
Event/anomaly detectionGoal-driven organisation