AI-Powered Cyberattack Steals 600,000 Credit Card Records from US Retailers

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

A Chinese-speaking hacker used advanced AI agents and customized models to automate cyberattacks on over 100 companies, stealing more than 600,000 credit card records, mostly from US customers. The attacks, costing as little as $3 per target, highlight AI's role in enabling large-scale, rapid cybercrime.[AI generated]

Why's our monitor labelling this an incident or hazard?

The article explicitly mentions the use of customized AI models by hackers to steal over 600,000 credit card numbers, indicating direct involvement of AI in enabling the cybercrime. This use of AI directly leads to harm to property and individuals, fulfilling the criteria for an AI Incident. The harm is realized, not just potential, and the AI system's role is pivotal in the incident.[AI generated]
AI principles
Privacy & data governanceRobustness & digital security

Industries
Digital securityLogistics, wholesale, and retail

Affected stakeholders
ConsumersBusiness

Harm types
Economic/PropertyHuman or fundamental rightsReputational

AI system task:
Other


Articles about this incident or hazard