惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

J
Java Code Geeks
Stack Overflow Blog
Stack Overflow Blog
B
Blog RSS Feed
C
Check Point Blog
D
Docker
Y
Y Combinator Blog
Recent Announcements
Recent Announcements
Google DeepMind News
Google DeepMind News
MongoDB | Blog
MongoDB | Blog
博客园_首页
Apple Machine Learning Research
Apple Machine Learning Research
量子位
有赞技术团队
有赞技术团队
IT之家
IT之家
大猫的无限游戏
大猫的无限游戏
D
DataBreaches.Net
M
MIT News - Artificial intelligence
B
Blog
阮一峰的网络日志
阮一峰的网络日志
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
腾讯CDC
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
V
V2EX
月光博客
月光博客

www.infosecurity-magazine.com

Just Three Ransomware Gangs Accounted for 40% of Attacks Last Month Google Chrome Rolls Out Protection Against Infostealers Targeting Session Cookies STX RAT Targets Finance Sector With Advanced Stealth Tactics Bitcoin Depot Reports $3.6m Crypto Theft After System Breach Atomic Stealer MacOS ClickFix Attack Bypasses Apple Security Warnings Middle East Hack-for-Hire Operation Traced to South Asian Cyber Espionage Group Governance Gaps Emerge as AI Agents Drive 76% Increase in NHIs Google Warns of New Threat Group Targeting BPOs and Helpdesks Google API Keys Quietly Gain Access to Gemini on Android Devices Critical Vulnerability in Ninja Forms Exposes WordPress Sites Anthropic Launches Project Glasswing to Use AI to Find and Fix Critical Software Vulnerabilities US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers Claude Discovers Apache ActiveMQ Bug Hidden for 13 Years Iran‑Backed Threat Actors Hit US CNI Providers via Internet‑Facing OT Assets Russian APT28 Hackers Hijack Routers to Steal Credentials, UK Security Agency Warns GPU Rowhammer Attack Enables Privilege Escalation and Full System Compromise GrafanaGhost Exploit Bypasses AI Guardrails for Silent Data Exfiltration Over $17bn Lost to Cyber Fraud in the Last Year, Warns FBI Storm-1175 Exploits Flaws in High-Velocity Medusa Attacks Fortinet Releases Emergency Patch After FortiClient EMS Bug Is Exploited New Phishing Platform Used in Credential Theft Campaigns Against C-Suite Execs New 'Storm' Infostealer Remotely Decrypts Stolen Credentials NCSC Issues Security Alert Over Hackers Targeting WhatsApp and Signal Accounts Apple Expands iOS 18 Security Updates Amid DarkSword Threat Researchers Observe Sub-One-Hour Ransomware Attacks GitHub Used as Covert Channel in Multi-Stage Malware Campaign Most CNI Firms Face Up to £5m in Downtime from OT Attacks Google Introduces Android Dev Verification Amid Openness Debate New Venom Stealer MaaS Platform Automates Continuous Data Theft Chinese Hackers Target European Governments in Espionage Campaigns
Infosecurity Europe: AI Adoption Creates New Opportunitie...
Danny Palmer · 2026-06-04 · via www.infosecurity-magazine.com

The Microsoft Detection and Response Team (DART) has issued advice on how organizations and their security teams should respond to the rising issue of AI-powered cyber threats.

“AI is amazing, it makes our job easier. “But the same AI that’s useful can be easily manipulated by threat actors, we’ve seen it in social engineering and in our day-do-day investigations," said Mary Asaolu, senior security researcher at Microsoft, during Infosecurity Europe on June 3.

In addition, while AI is being deployed within the enterprise to provide benefits to organizations and employees, if not managed correctly, AI code can introduce cybersecurity risks.

“AI really is the emergent angle,” said Meaghan Bradshaw, principal security researcher at Microsoft. “But AI code introduces another layer of risk. Nearly half of AI code contains flaws. Attackers can exploit it to compromise applications or data.”

This is not a theoretical concept: cyber criminals have already exploited AI tools as part of the attack chain, as demonstrated during Microsoft's Infosecurity Europe talk titled ‘Securing AI in the Age of Intelligent Threats’, which detailed a campaign dubbed ‘JustAskJacky’.

The JustAskJacky attack tricks users into downloading what looks like a legitimate AI assistant, but is in fact a backdoor which cybercriminals use to deliver malware.

The campaign combines this with professional-looking interfaces and valid digital signatures which make it harder for both users and security tools to distinguish it from legitimate software, thus allowing it to stay under the radar.

In fact, the malicious AI assistant was so good at avoiding detection that it was only discovered when Microsoft DART was brought into an organization to investigate a separate issue.

“They found this application was masquerading as an AI assistant to help day-to-day workflows,” Bradshaw added

At first glance, it appears to function normally; however, during installation, a backdoor written in Java is deployed, along with a persistence mechanism that creates a scheduled task running every four hours to maintain control and send telemetry.

The lesson to take from this, Bradshaw explained, is that organizations and users need to take a step back and think about what AI services they are installing and where they come from, because threat actors know that employees are looking for AI tools.

“Everyone is excited to leverage it to enhance the day-to-day. But on the other side, it often leads to users putting their guard down and not knowing what they are running. All it takes is one user to be convinced to gain that foothold,” she said.

“One of the most common recommendations we give customers is to take the time to assess nonstandard applications installed. If there is no business need, get rid of them. Because as much as it is useful for you, it is useful for threat actors too. Make sure you know what employees are using,” Bradshaw added.

Securing AI Augmented Employees

Like many cybersecurity challenges, one of the best ways to solve a problem - in this case, the cybersecurity risks around installing AI applications – is to get ahead of it.

Throughout the business, from board level to junior staff, employees should be informed about the potential risks around downloading unauthorized AI tools and be provided with information on how to safely adopt and deploy AI assistants.

“Provide a clear roadmap for safe adoption,” said Asaolu. “Make AI security a leadership priority, ensuing you have security reviews in place and AI is at a board discission level.”

“Ensure AI is used responsibility, make sure that good AI is the default behavior. And ensure security teams are equipped and coordinated for carrying out risk assessments and monitoring for unusual behavior,” she added.