-
France's Moutet booed for underarm match point serve in Melbourne
-
Zverev happy with response after wobble in opening Melbourne win
-
'Bring it on': UK's Labour readies for EU reset fight
-
New Zealand's Wollaston wins again to lead Tour Down Under
-
Zverev wobbles but wins at Australian Open as Alcaraz enters fray
-
British qualifier upsets 20th seed Cobolli to make mum proud
-
Zverev drops set on way to Australian Open second round
-
Indonesian rescuers find debris from missing plane
-
Wembanyama scores 39 as Spurs overcome Edwards, Wolves in thriller
-
Heartbreak for Allen as Broncos beat Bills in playoff thriller
-
British qualifier upsets 20th seed Cobolli in Melbourne
-
Paolini races into round two to kickstart Australian Open
-
Portugal presidential vote wide open as far-right surge expected
-
Lutz kicks Broncos to overtime thriller as Bills, Allen fall short
-
Marchand closes Austin Pro Swim with 200m breaststroke win
-
Raducanu says Australian Open schedule 'does not make sense'
-
Australia great Martyn says he was given '50/50 chance' of survival
-
Top-ranked Alcaraz, Sabalenka headline Australian Open day one
-
Haiti security forces commence major anti-gang operation
-
NFL's Giants ink John Harbaugh as new head coach
-
Skipper Martinez fires Inter six points clear, injury-hit Napoli battle on
-
NASA moves moon rocket to launch pad ahead of Artemis 2 mission
-
Silver reveals PSG talks over NBA Europe plan
-
Iran leader demands crackdown on 'seditionists' after protests
-
Carrick magic dents Man City Premier League bid as Arsenal held
-
Kane scores as Bayern deliver comeback romp over Leipzig
-
Arteta angry as Arsenal denied penalty in Forest stalemate
-
Glasner feels 'abandoned' by Palace hierarchy
-
Israel objects to line-up of Trump panel for post-war Gaza
-
Dupont guides Toulouse to Champions Cup last 16 after Sale hammering
-
Arsenal extend Premier League lead despite drawing blank at Forest
-
Kane scores in Bayern comeback romp over Leipzig
-
Skipper Martinez fires Inter six points clear, Napoli squeeze past Sassuolo
-
Lookman gives Nigeria third place after AFCON shoot-out with Egypt
-
Thousands march in France to back Iranian protesters
-
Egadze glides to European figure skating gold
-
Lens hold off Auxerre to retake top spot from PSG
-
Trump threatens Europe with tariffs over Greenland as protesters rally
-
EU, Mercosur bloc ink major trade deal, reject 'tariffs' and 'isolation'
-
Feinberg-Mngomezulu captains Stormers into Champions Cup last 16
-
Hundreds in London protest against Beijing 'mega embassy'
-
Man Utd hurt City title hopes as Spurs flop again
-
Last-gasp Can penalty gives Dortmund win against St Pauli
-
Greenland protesters tell Trump to keep US hands off Arctic island
-
Skipper Martinez fires Inter past Udinese and six points clear
-
Carrick urges consistency from 'fantastic' Man Utd after derby win
-
Man City well beaten by 'better' Man Utd, concedes Guardiola
-
Real Madrid overcome Bernabeu boos to record Arbeloa's first win
-
Trump invites more leaders to join Gaza 'Board of Peace'
-
Man Utd dominate Man City in dream start for Carrick
AI agents open door to new hacking threats
Cybersecurity experts are warning that artificial intelligence agents, widely considered the next frontier in the generative AI revolution, could wind up getting hijacked and doing the dirty work for hackers.
AI agents are programs that use artificial intelligence chatbots to do the work humans do online, like buy a plane ticket or add events to a calendar.
But the ability to order around AI agents with plain language makes it possible for even the technically non-proficient to do mischief.
"We're entering an era where cybersecurity is no longer about protecting users from bad actors with a highly technical skillset," AI startup Perplexity said in a blog post.
"For the first time in decades, we're seeing new and novel attack vectors that can come from anywhere."
These so-called injection attacks are not new in the hacker world, but previously required cleverly written and concealed computer code to cause damage.
But as AI tools evolved from just generating text, images or video to being "agents" that can independently scour the internet, the potential for them to be commandeered by prompts slipped in by hackers has grown.
"People need to understand there are specific dangers using AI in the security sense," said software engineer Marti Jorda Roca at NeuralTrust, which specializes in large language model security.
Meta calls this query injection threat a "vulnerability." OpenAI chief information security officer Dane Stuckey has referred to it as "an unresolved security issue."
Both companies are pouring billions of dollars into AI, the use of which is ramping up rapidly along with its capabilities.
- AI 'off track' -
Query injection can in some cases take place in real time when a user prompt -- "book me a hotel reservation" -- is gerrymandered by a hostile actor into something else -- "wire $100 to this account."
But these nefarious prompts can also be hiding out on the internet as AI agents built into browsers encounter online data of dubious quality or origin, and potentially booby-trapped with hidden commands from hackers.
Eli Smadja of Israeli cybersecurity firm Check Point sees query injection as the "number one security problem" for large language models that power AI agents and assistants that are fast emerging from the ChatGPT revolution.
Major rivals in the AI industry have installed defenses and published recommendations to thwart such cyberattacks.
Microsoft has integrated a tool to detect malicious commands based on factors including where instructions for AI agents originate.
OpenAI alerts users when agents doing their bidding visit sensitive websites and blocks proceeding until the software is supervised in real time by the human user.
Some security professionals suggest requiring AI agents to get user approval before performing any important task - like exporting data or accessing bank accounts.
"One huge mistake that I see happening a lot is to give the same AI agent all the power to do everything," Smadja told AFP.
In the eyes of cybersecurity researcher Johann Rehberger, known in the industry as "wunderwuzzi," the biggest challenge is that attacks are rapidly improving.
"They only get better," Rehberger said of hacker tactics.
Part of the challenge, according to the researcher, is striking a balance between security and ease of use since people want the convenience of AI doing things for them without constant checks and monitoring.
Rehberger argues that AI agents are not mature enough to be trusted yet with important missions or data.
"I don't think we are in a position where you can have an agentic AI go off for a long time and safely do a certain task," the researcher said.
"It just goes off track."
C.Kreuzer--VB