
AI-driven cyberattacks will start to be the 'new norm' in months, Palo Alto warns
Quick Take
Palo Alto warns that AI-driven cyberattacks will soon become the new norm, challenging cybersecurity teams.
Key Points
- AI models are evolving rapidly, increasing attack sophistication.
- Cybersecurity teams must enhance defenses against these threats.
- Expect a surge in AI-driven cyberattacks in the coming months.
📖 Reader Mode
~2 min readAs the ransomware industry evolves, experts are predicting hackers will only continue to find more and more ways of using the technology to exploit businesses and individuals.
Seksan Mongkhonkhamsao | Moment | Getty Images
Palo Alto Networks tech chief Lee Klarich said companies are losing time to step up software defenses as hackers increasingly exploit vulnerabilities with the help of artificial intelligence models.
"We now estimate a narrow three-to-five-month window for organizations to outpace the adversary before AI-driven exploits start to become the new norm," he wrote in a blog post on Wednesday. "This impending vulnerability deluge demands urgency."
The rise of increasingly sophisticated AI models such as Anthropic's Mythos has raised the stakes, putting pressure on cybersecurity teams to step up their defenses as they brace for a wave of cyberattacks capable of exploiting previously unknown software vulnerabilities. The concerns have led to White House meetings with bank leaders and technology giants.
Google this week said it stopped an attempt to use AI for a "mass exploitation event," but hackers are already using available AI tools to exploit software vulnerabilities.
Read more CNBC tech news
- Xi tells Musk, Tim Cook and other CEOs on Trump's trip: China will 'open wider'
- Chinese companies are ramping up homegrown AI chips, even if Nvidia is coming back
- Cerebras prices IPO above expected range, as Wall Street braces for AI tsunami
- Microsoft feared being too dependent on OpenAI, Musk-Altman trial testimony reveals
Klarich agreed that these features won't be limited to newer models and called for an industrywide innovation to hunt down new attack techniques, including virtual patching capabilities. He said Palo Alto will roll out the first set of capabilities "very soon."
Last month, Anthropic limited the rollout of its Mythos model to a select group of companies to test and fix vulnerabilities before hackers find and abuse them. The group included Palo Alto Networks, CrowdStrike, Amazon, Apple and JPMorgan.
OpenAI announced its GPT-5.5-Cyber model last week and followed that with the rollout of its Daybreak cyber initiative.
"The big question just a few weeks ago was: 'Are we overstating the model capabilities?' With more testing, I can confidently say we weren't," Klarich wrote. "In fact, these models are likely even better at finding vulnerabilities than we initially realized."

watch now
— Originally published at cnbc.com
More from CNBC Tech
See more →
What you need to know about Nvidia competitor Cerebras after wild IPO
Cerebras' IPO highlights strong demand for AI chips, positioning it as a competitor to Nvidia.

