1200km research ecosystem · Source reference module

AI Usage in Cyberattacks — References

Deduplicated CTI, IR, government, provider, academic, and threat-research references about AI use in cyberattacks. Search titles and descriptions, filter every normalized tag, pivot across facets, and find references connected by shared evidence metadata.

108unique references
103core research
5context references
1,520unique tags
7,574tag assignments
51search facets

Search and correlate references

108 references shown

Reference index

Cards intentionally contain only a title, short description, canonical resource link, and discovery tags. Every tag remains visible and clickable; expand a card to inspect the complete tag set.

Core research

The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution (opens the publisher resource in a new tab)

Palo Alto Networks Unit 42 operational CTI publication covering CAPTCHA bypass, Identity fraud and impersonation, and Malware development. Indexed with FunkSec, Artificial Intelligence, and Anthropic context.

Show 86 more tags
Core research

UAT-10147: Chinese-speaking adversary integrates agentic AI into post-compromise operations (opens the publisher resource in a new tab)

Cisco Talos operational CTI publication covering Code debugging and scripting, Identity fraud and impersonation, and Obfuscation and evasion. Indexed with UAT-10147, Education, and Anthropic context.

Show 73 more tags
Core research

“Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AI (opens the publisher resource in a new tab)

Cisco Talos operational CTI publication covering Malware development, Reconnaissance and target research, and Translation and localization. Indexed with UAT-10147, Cryptocurrency, and Anthropic context.

Show 62 more tags
Core research

The Frontier AI Vulnerability Burst: Industrializing Autonomous Zero-Day Discovery in Open-Source Software (opens the publisher resource in a new tab)

Palo Alto Networks Unit 42 operational CTI publication covering Autonomous or agentic intrusion, CAPTCHA bypass, and Exploit development. Indexed with Anthropic context.

Show 55 more tags
Core research

INTERPOL report finds AI linked to more than half of cybercrime in Africa (opens the publisher resource in a new tab)

INTERPOL government or law-enforcement publication covering Deepfake video or image, Reconnaissance and target research, and Business email compromise. Indexed with Financial Services context.

Show 34 more tags
Core research

Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks (opens the publisher resource in a new tab)

Palo Alto Networks Unit 42 operational CTI publication covering Autonomous or agentic intrusion, CAPTCHA bypass, and Exploit development. Indexed with Government and Anthropic context.

Show 74 more tags
Core research

TuxBot v3: Inside an IoT Botnet Framework With LLM-Assisted Development (opens the publisher resource in a new tab)

Palo Alto Networks Unit 42 operational CTI publication covering CAPTCHA bypass, Malware development, and Command and control. Indexed with Cryptocurrency and Anthropic context.

Show 128 more tags
Core research

Browser-Only Ransomware: From LLM Hallucinations to a Practical Attack Technique - Check Point Research (opens the publisher resource in a new tab)

Check Point provider or government report covering Malware development, Translation and localization, and Credential theft. Indexed with Financial Services and Anthropic context.

Show 63 more tags
Core research

Defending Against an Active Threat to Siemens S7 Series PLCs | CISA (opens the publisher resource in a new tab)

CISA government or law-enforcement publication covering Exploit development, Obfuscation and evasion, and Reconnaissance and target research. Indexed with Critical Infrastructure context.

Show 38 more tags
Core research

Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite | CISA (opens the publisher resource in a new tab)

CISA government or law-enforcement publication covering Obfuscation and evasion, Reconnaissance and target research, and Command and control. Indexed with Defense context.

Show 128 more tags
Core research

Mapping AI-enabled cyber threats: Insights from the LLM ATT&CK Navigator (opens the publisher resource in a new tab)

Anthropic provider or government report covering Autonomous or agentic intrusion, Malware development, and Obfuscation and evasion. Indexed with Critical Infrastructure and Anthropic context.

Show 96 more tags
Core research

What we learned mapping a year’s worth of AI-enabled cyber threats (opens the publisher resource in a new tab)

Anthropic provider or government report covering Phishing and lure generation, Data exfiltration, and Agentic AI. Indexed with Financial Services and Anthropic context.

Show 33 more tags
Context

SANS 2024 CTI Survey: Managing the Evolving Threat Landscape | SANS Institute (opens the publisher resource in a new tab)

SANS Institute research publication on AI and cybersecurity. Indexed with Financial Services context.

Show 27 more tags
Core research

Adversaries Leverage AI for Vulnerability Exploitation, Augmented Operations, and Initial Access (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering Autonomous or agentic intrusion, CAPTCHA bypass, and Deepfake video or image. Indexed with Financial Services and Anthropic context.

Show 118 more tags
Core research

The adversary didn’t wait. Neither should you. | IBM (opens the publisher resource in a new tab)

IBM X-Force threat-research report covering Reconnaissance and target research, Vulnerability research, and Spearphishing.

Show 18 more tags
Core research

Defending Your Enterprise When AI Models Can Find Vulnerabilities Faster Than Ever (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering Exploit development, Vulnerability research, and Prompt injection. Indexed with Critical Infrastructure and Anthropic context.

Show 40 more tags
Core research

2025 APT Report: Staying Ahead of the Modern Threat Landscape (opens the publisher resource in a new tab)

Trend Micro threat-research report covering Reconnaissance and target research, Business email compromise, and Prompt injection. Indexed with Government context.

Show 33 more tags
Core research

ChatGPT Data Leakage via a Hidden Outbound Channel in the Code Execution Runtime - Check Point Research (opens the publisher resource in a new tab)

Check Point provider or government report covering Data exfiltration. Indexed with OpenAI context.

Show 39 more tags
Core research

Analyzing the Current State of AI Use in Malware (opens the publisher resource in a new tab)

Palo Alto Networks Unit 42 operational CTI publication covering Autonomous or agentic intrusion, CAPTCHA bypass, and Malware development. Indexed with Anthropic context.

Show 67 more tags
Core research

Disrupting malicious uses of AI (opens the publisher resource in a new tab)

OpenAI operational CTI publication covering Influence operations. Indexed with OpenAI context.

Show 7 more tags
Core research

AI in the Middle: Turning Web-Based AI Services into C2 Proxies & The Future Of AI Driven Attacks - Check Point Research (opens the publisher resource in a new tab)

Check Point forecast or strategic assessment covering CAPTCHA bypass, Command and control, and Malware development. Indexed with Critical Infrastructure and Anthropic context.

Show 75 more tags
Core research

GTIG AI Threat Tracker: Distillation, Experimentation, and (Continued) Integration of AI for Adversarial Use (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering Identity fraud and impersonation, Malware development, and Obfuscation and evasion. Indexed with APT31, Cryptocurrency, and DeepSeek context.

Show 100 more tags
Core research

UNC1069 Targets Cryptocurrency Sector with New Tooling and AI-Enabled Social Engineering (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering Deepfake video or image, Reconnaissance and target research, and Translation and localization. Indexed with BlueNoroff, Cryptocurrency, and Google context.

Show 79 more tags
Core research

The Next Frontier of Runtime Assembly Attacks: Leveraging LLMs to Generate Phishing JavaScript in Real Time (opens the publisher resource in a new tab)

Palo Alto Networks Unit 42 operational CTI publication covering CAPTCHA bypass, Identity fraud and impersonation, and Malware development. Indexed with APT28 / Fancy Bear, Cryptocurrency, and Anthropic context.

Show 65 more tags
Core research

Senior U.S. Officials Continue To Be Impersonated in Malicious Messaging Campaign | Federal Bureau of Investigation (opens the publisher resource in a new tab)

FBI government or law-enforcement publication covering Deepfake voice, Identity fraud and impersonation, and Deepfake impersonation. Indexed with Cryptocurrency context.

Show 23 more tags
Core research

Disrupting the first reported AI-orchestrated cyber espionage campaign (opens the publisher resource in a new tab)

Anthropic provider or government report covering Autonomous or agentic intrusion, Exploit development, and Malware development. Indexed with Financial Services and Anthropic context.

Show 59 more tags
Core research

Operation Endgame Quakes Rhadamanthys (opens the publisher resource in a new tab)

Proofpoint operational CTI publication covering Identity fraud and impersonation, Obfuscation and evasion, and Command and control. Indexed with TA547, Cryptocurrency, and Anthropic context.

Show 101 more tags
Core research

The Q3 2025 Threat Landscape Report (opens the publisher resource in a new tab)

Rapid7 threat-research report covering Deepfake video or image, Deepfake voice, and Identity fraud and impersonation. Indexed with Akira and Critical Infrastructure context.

Show 144 more tags
Context

ENISA Threat Landscape 2025 | ENISA (opens the publisher resource in a new tab)

ENISA threat-research report on AI and cybersecurity.

Show 9 more tags
Core research

GTIG AI Threat Tracker: Advances in Threat Actor Usage of AI Tools (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering Deepfake video or image, Exploit development, and Identity fraud and impersonation. Indexed with APT28 / Fancy Bear, Cryptocurrency, and Google context.

Show 106 more tags
Core research

BlueNoroff’s latest campaigns: GhostCall and GhostHire | Securelist (opens the publisher resource in a new tab)

Kaspersky GReAT operational CTI publication covering CAPTCHA bypass, Deepfake video or image, and Identity fraud and impersonation. Indexed with APT43 / Kimsuky, Cryptocurrency, and OpenAI context.

Show 191 more tags
Core research

2025 Cloud Threat Hunting and Defense Landscape (opens the publisher resource in a new tab)

Recorded Future threat-research report covering Identity fraud and impersonation, Obfuscation and evasion, and Reconnaissance and target research. Indexed with APT28 / Fancy Bear, Cryptocurrency, and Hugging Face context.

Show 125 more tags
Core research

International scientific report on the safety of advanced AI: interim report - GOV.UK (opens the publisher resource in a new tab)

UK Government forecast or strategic assessment covering Deepfake video or image, Deepfake voice, and Identity fraud and impersonation. Indexed with Artificial Intelligence and Anthropic context.

Show 152 more tags
Core research

Disrupting malicious uses of AI: October 2025 (opens the publisher resource in a new tab)

OpenAI operational CTI publication covering Influence operations. Indexed with OpenAI context.

Show 14 more tags
Core research

Scam operations: Online fraud networks (opens the publisher resource in a new tab)

OpenAI operational CTI publication covering Identity fraud and impersonation, Obfuscation and evasion, and Translation and localization. Indexed with OpenAI context.

Show 19 more tags
Core research

Prompts as Code & Embedded Keys | The Hunt for LLM-Enabled Malware | SentinelOne (opens the publisher resource in a new tab)

SentinelOne operational CTI publication covering Malware development, Obfuscation and evasion, and Translation and localization. Indexed with APT28 / Fancy Bear, Education, and Anthropic context.

Show 99 more tags
Core research

Emerging threats: The intersection of criminal and technological innovation in the use of automation and artificial intelligence in the cybercrime landscape of Southeast Asia (opens the publisher resource in a new tab)

UNODC government or law-enforcement publication covering CAPTCHA bypass, Deepfake video or image, and Deepfake voice. Indexed with FunkSec, Cryptocurrency, and OpenAI context.

Show 97 more tags
Core research

Detecting and countering misuse of AI: August 2025 (opens the publisher resource in a new tab)

Anthropic provider or government report covering Reconnaissance and target research, Data exfiltration, and Agentic AI. Indexed with Cryptocurrency and Anthropic context.

Show 40 more tags
Core research

Fashionable Phishing Bait: GenAI on the Hook (opens the publisher resource in a new tab)

Palo Alto Networks Unit 42 operational CTI publication covering CAPTCHA bypass, Deepfake video or image, and Identity fraud and impersonation. Indexed with Akira and Legal Services context.

Show 49 more tags
Core research

AI vs AI: The Cybersecurity Arms Race (opens the publisher resource in a new tab)

CrowdStrike threat-research report covering Command and control, Deepfake video or image, and Deepfake voice. Indexed with Financial Services and Anthropic context.

Show 73 more tags
Core research

CrowdStrike 2025 Threat Hunting Report: AI Becomes a Weapon and a Target (opens the publisher resource in a new tab)

CrowdStrike threat-research report covering Deepfake video or image, Identity fraud and impersonation, and Malware development. Indexed with APT42 / Charming Kitten, Financial Services, and Anthropic context.

Show 84 more tags
Core research

Emerging AI Threats: The Future of Automated Operations (opens the publisher resource in a new tab)

Recorded Future threat-research report covering Code debugging and scripting, Deepfake video or image, and Identity fraud and impersonation. Indexed with Critical Infrastructure and Anthropic context.

Show 70 more tags
Core research

2025 Unit 42 Global Incident Response Report: Social Engineering Edition (opens the publisher resource in a new tab)

Palo Alto Networks Unit 42 operational CTI publication covering CAPTCHA bypass, Identity fraud and impersonation, and Reconnaissance and target research. Indexed with Financial Services and Anthropic context.

Show 79 more tags
Core research

How Social Engineering Attacks Are Evolving in 2025 (opens the publisher resource in a new tab)

Rapid7 threat-research report covering Identity fraud and impersonation, Credential harvesting, and Data exfiltration. Indexed with Black Basta and Transportation and Logistics context.

Show 26 more tags
Core research

How LLMs Like WormGPT Are Reshaping Cybercrime in 2025 (opens the publisher resource in a new tab)

Rapid7 threat-research report covering Deepfake video or image, Exploit development, and Identity fraud and impersonation. Indexed with Critical Infrastructure and Hugging Face context.

Show 56 more tags
Core research

Rapid7 threat-research report covering Deepfake video or image, Identity fraud and impersonation, and Influence operations. Indexed with APT28 / Fancy Bear and Hugging Face context.

Show 56 more tags
Core research

Disrupting malicious uses of AI: June 2025 (opens the publisher resource in a new tab)

OpenAI operational CTI publication covering Influence operations. Indexed with OpenAI context.

Show 8 more tags
Core research

Text-to-Malware: How Cybercriminals Weaponize Fake AI-Themed Websites (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering Obfuscation and evasion, Reconnaissance and target research, and Command and control. Indexed with UNC6032 and Cryptocurrency context.

Show 92 more tags
Core research

Impersonated GenAI Site Lures Victims to Infostealer Download - Check Point Research (opens the publisher resource in a new tab)

Check Point provider or government report covering Identity fraud and impersonation, Obfuscation and evasion, and Command and control. Indexed with Cryptocurrency and Google context.

Show 103 more tags
Core research

Impact of AI on cyber threat from now to 2027 | National Cyber Security Centre (opens the publisher resource in a new tab)

UK Government provider or government report covering Exploit development, Influence operations, and Malware development. Indexed with Education context.

Show 43 more tags
Core research

AI Agents Are Here. So Are the Threats. (opens the publisher resource in a new tab)

Palo Alto Networks Unit 42 operational CTI publication covering CAPTCHA bypass, Identity fraud and impersonation, and Command and control. Indexed with Anthropic context.

Show 51 more tags
Core research

AI Security Report 2025 (opens the publisher resource in a new tab)

Check Point provider or government report covering Agentic AI. Indexed with Financial Services context.

Show 27 more tags
Core research

The State of AI in Cyber Security - Check Point Research (opens the publisher resource in a new tab)

Check Point provider or government report covering Deepfake video or image, Deepfake voice, and Exploit development. Indexed with DeepSeek context.

Show 83 more tags
Core research

2025 Global Threat Landscape Report (opens the publisher resource in a new tab)

Fortinet threat-research report covering Deepfake video or image, Identity fraud and impersonation, and Malware development. Indexed with APT28 / Fancy Bear, Critical Infrastructure, and OpenAI context.

Show 169 more tags
Core research

Key Takeaways from the 2025 Global Threat Landscape Report | FortiGuard Labs (opens the publisher resource in a new tab)

Fortinet threat-research report covering Deepfake video or image, Malware development, and Reconnaissance and target research. Indexed with Artificial Intelligence context.

Show 63 more tags
Context

The dawn of agentic AI in security operations at RSAC 2025 (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant research publication covering Agentic AI and Large language model. Indexed with Financial Services and Google context.

Show 19 more tags
Core research

Detecting and countering malicious uses of Claude: March 2025 (opens the publisher resource in a new tab)

Anthropic provider or government report covering Identity fraud and impersonation, Influence operations, and Malware development. Indexed with Artificial Intelligence and Anthropic context.

Show 26 more tags
Core research

The Sophos Annual Threat Report: Cybercrime on Main Street 2025 (opens the publisher resource in a new tab)

Sophos threat-research report covering Obfuscation and evasion, Business email compromise, and Command and control. Indexed with Akira, Cryptocurrency, and OpenAI context.

Show 86 more tags
Core research

AkiraBot | AI-Powered Bot Bypasses CAPTCHAs, Spams Websites At Scale | SentinelOne (opens the publisher resource in a new tab)

SentinelOne operational CTI publication covering CAPTCHA bypass, Malicious advertising, and Large language model. Indexed with Akira, Financial Services, and OpenAI context.

Show 106 more tags
Core research

Hive0137 on an AI journey | IBM (opens the publisher resource in a new tab)

IBM X-Force threat-research report covering Malware development, Obfuscation and evasion, and Phishing and lure generation. Indexed with Hospitality context.

Show 53 more tags
Core research

X-Force Threat Intelligence Index 2024 reveals stolen credentials as top risk, with AI attacks on the horizon | IBM (opens the publisher resource in a new tab)

IBM X-Force threat-research report covering Credential theft and Generative AI.

Show 31 more tags
Core research

Cisco Talos 2024 Year in Review (opens the publisher resource in a new tab)

Cisco Talos operational CTI publication covering CAPTCHA bypass, Code debugging and scripting, and Deepfake video or image. Indexed with Akira and Critical Infrastructure context.

Show 171 more tags
Core research

2025 AI Threat Report: How Cybercriminals Are Weaponizing AI Technology (opens the publisher resource in a new tab)

KELA threat-research report covering Deepfake video or image, Deepfake voice, and Exploit development. Indexed with Storm-2139, Financial Services, and Anthropic context.

Show 92 more tags
Core research

ThreatLabz 2025 AI Security Report (opens the publisher resource in a new tab)

Zscaler ThreatLabz threat-research report covering Autonomous or agentic intrusion, Deepfake video or image, and Deepfake voice. Indexed with Artificial Intelligence and Anthropic context.

Show 178 more tags
Core research

ThreatDown State of Malware Report 2025: Autonomous AI and Ransomware (opens the publisher resource in a new tab)

ThreatDown / Malwarebytes threat-research report covering Malicious advertising, Agentic AI, and Generative AI. Indexed with Healthcare and OpenAI context.

Show 27 more tags
Core research

[2502.00961] AI-Powered Spearphishing Cyber Attacks: Fact or Fiction? (opens the publisher resource in a new tab)

arXiv academic or empirical research covering Deepfake video or image, Deepfake impersonation, and Spearphishing. Indexed with Hugging Face context.

Show 12 more tags
Core research

Adversarial Misuse of Generative AI (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering Deepfake video or image, Identity fraud and impersonation, and Malware development. Indexed with APT41, Cryptocurrency, and Google context.

Show 99 more tags
Core research

FunkSec – Alleged Top Ransomware Group Powered by AI - Check Point Research (opens the publisher resource in a new tab)

Check Point provider or government report covering Identity fraud and impersonation, Malware development, and Malware generation. Indexed with Akira and OpenAI context.

Show 68 more tags
Core research

2025 Year in Review: Malicious Infrastructure (opens the publisher resource in a new tab)

Recorded Future threat-research report covering Command and control.

Show 20 more tags
Core research

CERT-EU - Threat Landscape Report 2025 - A Year In Review (opens the publisher resource in a new tab)

CERT-EU government or law-enforcement publication covering Deepfake video or image, Voice phishing / vishing, and Deepfake / synthetic media.

Show 16 more tags
Core research

How adversaries are using GenAI for social engineering attacks (opens the publisher resource in a new tab)

CrowdStrike threat-research report covering Deepfake video or image, Phishing and lure generation, and Business email compromise. Indexed with Famous Chollima and Anthropic context.

Show 45 more tags
Core research

How cyber adversaries use GenAI in vulnerability research and cloud operations (opens the publisher resource in a new tab)

CrowdStrike threat-research report covering Exploit development, Vulnerability research, and Prompt injection. Indexed with Critical Infrastructure context.

Show 25 more tags
Core research

Internet Crime Complaint Center (IC3) | Criminals Use Generative Artificial Intelligence to Facilitate Financial Fraud (opens the publisher resource in a new tab)

FBI IC3 government or law-enforcement publication covering Identity fraud and impersonation, Phishing link or attachment, and Spearphishing. Indexed with Cryptocurrency context.

Show 20 more tags
Core research

Cyberthreat Predictions for 2025: An Annual Perspective from FortiGuard Labs (opens the publisher resource in a new tab)

Fortinet forecast or strategic assessment covering Deepfake video or image, Identity fraud and impersonation, and Malware development. Indexed with APT28 / Fancy Bear and Critical Infrastructure context.

Show 72 more tags
Core research

AI Enhancing Your Adversarial Emulation (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering Reconnaissance and target research, Supply-chain compromise, and Target research / OSINT. Indexed with Financial Services and Google context.

Show 51 more tags
Core research

FinCEN Issues Alert on Fraud Schemes Involving Deepfake Media Targeting Financial Institutions | FinCEN.gov (opens the publisher resource in a new tab)

FinCEN government or law-enforcement publication covering Deepfake video or image, Deepfake impersonation, and Deepfake / synthetic media. Indexed with Financial Services context.

Show 14 more tags
Core research

An update on disrupting deceptive uses of AI (opens the publisher resource in a new tab)

OpenAI operational CTI publication covering Influence operations. Indexed with OpenAI context.

Show 6 more tags
Core research

STORM-0817: Iran-linked malware and scraping activity (opens the publisher resource in a new tab)

OpenAI operational CTI publication covering Code debugging and scripting, Reconnaissance and target research, and Translation and localization. Indexed with SweetSpecter, Defense, and OpenAI context.

Show 23 more tags
Context

[2410.20287] AI-Driven Cyber Threat Intelligence Automation (opens the publisher resource in a new tab)

arXiv academic or empirical research covering Large language model. Indexed with Hugging Face context.

Show 7 more tags
Core research

How CrowdStrike Hunts, Identifies and Defeats Cloud-Focused Threats (opens the publisher resource in a new tab)

CrowdStrike threat-research report covering Obfuscation and evasion, Vulnerability research, and Obfuscation. Indexed with APT29 / Cozy Bear, Financial Services, and Anthropic context.

Show 49 more tags
Core research

CrowdStrike 2024 Threat Hunting Report: Executive Summary (opens the publisher resource in a new tab)

CrowdStrike threat-research report covering Obfuscation and evasion, Data exfiltration, and Defense evasion. Indexed with Scattered Spider and Financial Services context.

Show 64 more tags
Context

[2408.03354] The Use of Large Language Models (LLM) for Cyber Threat Intelligence (CTI) in Cybercrime Forums (opens the publisher resource in a new tab)

arXiv academic or empirical research covering Large language model. Indexed with Critical Infrastructure and Hugging Face context.

Show 12 more tags
Core research

AI-Powered Voice Spoofing for Next-Gen Vishing Attacks (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering CAPTCHA bypass, Deepfake video or image, and Deepfake voice. Indexed with Financial Services context.

Show 42 more tags
Core research

ESET Threat Report: Infostealers using AI & banking malware creating deepfake videos to steal money (opens the publisher resource in a new tab)

ESET threat-research report covering Deepfake video or image, Identity fraud and impersonation, and Translation and localization. Indexed with Critical Infrastructure and Google context.

Show 29 more tags
Core research

2024 State of Multicloud Security Report (opens the publisher resource in a new tab)

Microsoft provider or government report covering Password spraying, Supply-chain compromise, and Generative AI. Indexed with Energy context.

Show 64 more tags
Core research

Q1 2024 Threat Landscape Report: Insider Threat & Phishing Evolve Under AI Auspices (opens the publisher resource in a new tab)

Kroll research publication covering Deepfake video or image, Deepfake voice, and Identity fraud and impersonation. Indexed with Akira and Financial Services context.

Show 57 more tags
Core research

SugarGh0st RAT Targets American AI Experts (opens the publisher resource in a new tab)

Proofpoint operational CTI publication covering Command and control, Data exfiltration, and Spearphishing. Indexed with SweetSpecter, Artificial Intelligence, and Anthropic context.

Show 52 more tags
Core research

TA547 Targets German Organizations: Rhadamanthys Stealer (opens the publisher resource in a new tab)

Proofpoint operational CTI publication covering Identity fraud and impersonation, Malware development, and Phishing and lure generation. Indexed with TA547, Financial Services, and Anthropic context.

Show 53 more tags
Core research

CrowdStrike threat-research report covering Influence operations, Obfuscation and evasion, and Vulnerability research. Indexed with Financial Services and Anthropic context.

Show 54 more tags
Core research

CrowdStrike 2024 Global Threat Report: Executive Summary (opens the publisher resource in a new tab)

CrowdStrike threat-research report covering Exploit development, Data exfiltration, and MFA/session-token theft. Indexed with APT28 / Fancy Bear and Government context.

Show 55 more tags
Core research

Disrupting malicious uses of AI by state-affiliated threat actors (opens the publisher resource in a new tab)

OpenAI operational CTI publication covering Code debugging and scripting, Obfuscation and evasion, and Translation and localization. Indexed with APT43 / Kimsuky and OpenAI context.

Show 26 more tags
Core research

Staying ahead of threat actors in the age of AI (opens the publisher resource in a new tab)

Microsoft provider or government report covering CAPTCHA bypass, Identity fraud and impersonation, and Malware development. Indexed with APT28 / Fancy Bear, Defense, and Microsoft context.

Show 73 more tags
Core research

The near-term impact of AI on the cyber threat | National Cyber Security Centre (opens the publisher resource in a new tab)

UK Government provider or government report covering Exploit development, Malware development, and Obfuscation and evasion. Indexed with Education context.

Show 37 more tags
Core research

Cyber Threat Landscape 2024: What to Expect (opens the publisher resource in a new tab)

Proofpoint operational CTI publication covering Data exfiltration, Agentic AI, and Generative AI. Indexed with Financial Services and Anthropic context.

Show 30 more tags
Core research

Facing reality? Law enforcement and the challenge of deepfakes | Europol (opens the publisher resource in a new tab)

Europol research publication covering Deepfake video or image, Influence operations, and Deepfake impersonation.

Show 16 more tags
Core research

2024 Threat Analysis and 2025 Predictions │ Recorded Future Annual Threat Report (opens the publisher resource in a new tab)

Recorded Future threat-research report covering Identity fraud and impersonation, Influence operations, and Obfuscation and evasion. Indexed with Critical Infrastructure context.

Show 33 more tags
Core research

Threat Predictions for 2024: Chained AI and CaaS Operations Give Attackers More “Easy” Buttons Than Ever | FortiGuard Labs (opens the publisher resource in a new tab)

Fortinet forecast or strategic assessment covering Reconnaissance and target research, Ransomware deployment, and Generative AI. Indexed with Energy context.

Show 21 more tags
Core research

Predator AI | ChatGPT-Powered Infostealer Takes Aim at Cloud Platforms | SentinelOne (opens the publisher resource in a new tab)

SentinelOne operational CTI publication covering Command and control. Indexed with Telecommunications and OpenAI context.

Show 32 more tags
Core research

Cyber Signals Issue 6: AI Cyber Defense for Threats | Security Insider (opens the publisher resource in a new tab)

Microsoft provider or government report covering Deepfake video or image, Deepfake voice, and Identity fraud and impersonation. Indexed with APT43 / Kimsuky, Defense, and Microsoft context.

Show 65 more tags
Core research

Threat Actors are Interested in Generative AI, but Use Remains Limited (opens the publisher resource in a new tab)

Google Threat Intelligence Group / Mandiant operational CTI publication covering Deepfake video or image, Deepfake voice, and Identity fraud and impersonation. Indexed with APT43 / Kimsuky, Financial Services, and OpenAI context.

Show 66 more tags
Core research

Back to the Hype: An Update on How Cybercriminals Are Using GenAI (opens the publisher resource in a new tab)

Trend Micro threat-research report covering Deepfake video or image, Identity fraud and impersonation, and Translation and localization. Indexed with Cryptocurrency and Hugging Face context.

Show 37 more tags
Core research

Hype vs. Reality: AI in the Cybercriminal Underground (opens the publisher resource in a new tab)

Trend Micro threat-research report covering Deepfake video or image, Malware development, and Deepfake impersonation. Indexed with Google context.

Show 41 more tags
Core research

I Have No Mouth, and I Must Do Crime | Recorded Future (opens the publisher resource in a new tab)

Recorded Future threat-research report covering Deepfake video or image, Deepfake voice, and Identity fraud and impersonation.

Show 23 more tags
Core research

OPWNAI : Cybercriminals Starting to Use ChatGPT - Check Point Research (opens the publisher resource in a new tab)

Check Point provider or government report covering Malware development, Malware generation, and Phishing link or attachment. Indexed with Cryptocurrency and OpenAI context.

Show 43 more tags
Core research

I, Chatbot | Recorded Future (opens the publisher resource in a new tab)

Recorded Future threat-research report covering Influence operations, Malware development, and Translation and localization. Indexed with Media and OpenAI context.

Show 34 more tags
Core research

Adversarial Intelligence: Red Teaming Malicious Use Cases for AI (opens the publisher resource in a new tab)

Recorded Future forecast or strategic assessment covering Deepfake video or image, Identity fraud and impersonation, and Influence operations.

Show 22 more tags
Core research

Emerging Enterprise Security Risks of AI (opens the publisher resource in a new tab)

Recorded Future threat-research report covering Malware development, Data exfiltration, and Prompt injection.

Show 27 more tags
Core research

Malla: Demystifying Real-world Large Language Model Integrated Malicious Services | USENIX (opens the publisher resource in a new tab)

USENIX academic or empirical research covering Large language model. Indexed with Education context.

Show 5 more tags