Breaking
February 11, 2025

5 sneaky ways hackers are utilizing generative AI | usagoldmines.com

Artificial Intelligence (AI) can be a force for good in our future, that much is obvious from the fact that it’s being utilized to advance things like medical research. But what about it being a force for bad?

The thought that somewhere out there, there’s a James Bond-like villain in an armchair stroking a cat and using generative AI to hack your PC may seem like fantasy but, quite frankly, it’s not. Cyber security experts are already scrambling to thwart millions of threats by hackers that have used generative AI to hack PCs, steal money, credentials, and data, and, with the rapid proliferation of new and improved AI tools, it’s only going to get worse.

The type of cyberattacks hackers are using aren’t necessarily new. They’re just more prolific, sophisticated, and effective now that they have weaponized AI. Here’s what to look out for…

AI-generated malware

Next time you see a pop-up, you may want to hit Ctrl-Alt-Delete real quick! Why? Because hackers are using AI tools to write malware like there’s no tomorrow and it’s showing up in browsers.

Security experts can tell when malware has been written by generative AI by looking at its code. Malware written by AI tools is quicker to make, can be better targeted against victims, and more effective at bypassing security platforms than code written by hand, according to a paper in the journal Artificial Intelligence Review.

One example is malware discovered by HP’s threat research team which it highlights in its September 2024 Threats Insights Report. The company said it discovered malicious code hidden in an extension that hackers used to take over browser sessions and direct users to websites flogging fake PDF tools.

The team also found SVG images to be harboring malicious code which could launch infostealer malware. The malware in question had code featuring “native language and variables that were consistent with an AI generative tool,” which is a clear indicator of its AI origin.

Evading security systems

It’s one thing to write malware with AI tools, it’s quite another thing to keep it effective at bypassing security. Hackers know that cyber security companies move quickly to detect and block new malware, hence why they’re using Large Language Models (LLMs) to obfuscate or slightly change it.

AI can be used to blend code into known malware or create whole new variants that security detection systems won’t recognize. Doing this is most effective against security software that recognizes known patterns of malicious activity, cybersecurity professionals say. In fact, it’s actually quicker to do this than create malware from scratch, according to Palo Alto Networks Unit 42 researchers.

The Unit 42 researchers demonstrated how this is possible. They used LLMs to rewrite 10,000 malicious JavaScript code variants of known malware that had the same functionality as the original code.

These variants were highly successful at avoiding detection by LM detection algorithms like Innocent Until Proven Guilty (IUPG), the researchers found. They concluded that with enough code transformations it was possible for hackers to “degrade the performance of malware classification systems” enough to avoid detection.

Two other kinds of malware that hackers are using to evade detection are possibly even more alarming because of their smart capabilities.

Dubbed “adaptive malware” and “dynamic malware payloads” these types are able to evade security systems by learning and adjusting their coding, encryption, and behavior in real time to bypass security systems, cybersecurity experts say.

While these types predate LLMs and AI, generative AI is making them more responsive to their environments and therefore more effective, they explain.

Stealing data and credentials

AI software and algorithms are also being used to more successfully steal user passwords and logins and unlawfully access their accounts, according to cybersecurity firms.

Cybercriminals generally use three techniques to do this: credential stuffing, password spraying, and brute force attacks, and AI tools are useful for all of these techniques, they say.

Predictive biometric algorithms are making it easier for hackers to spy on users typing passwords and therefore making it easier to hack into large databases containing user information.

Additionally, scanning and analyzing algorithms are deployed by hackers to quickly scan and map networks, identify hosts, open ports, and identify the software in operation to discover user vulnerabilities.

Brute force attacks have been a favorite method of cyberattack for amateur hackers. This attack type involves the trial-and-error bombarding of a large number of companies or individuals with cyber-attacks in the hope that just a few will be penetrated.

Traditionally, only one in 10,000 attacks is successful thanks to the effectiveness of security software. But this software is becoming less effective due to the rise of password algorithms that can quickly analyze large data sets of leaked passwords and more effectively direct brute force attacks.

Algorithms can also automate hacking attempts across multiple websites or platforms at once, cybersecurity experts warn.

More effective social engineering and phishing

Conventional generative AI tools like Gemini and ChatGPT as well as their dark web counterparts like WormGPT and FraudGPT, are being used by hackers to mimic the language, tone, and writing styles of individuals to make social engineering and phishing attacks more personalized to victims.

Hackers are also using AI algorithms and chatbots to harvest data from user social media profiles, search engines, and other websites (and directly from the victims themselves) to create dynamic phishing pitches based on an individual’s location, interests, or their responses.

With AI modelling, hackers can even predict the likelihood their hacks and scams will be successful.

Again, this is another area where hackers are also deploying smart bots that can learn from attacks and change their behavior to make attacks more likely to succeed.

Phishing emails generated by hackers using AI software are more successful at fooling people, research shows. One reason is that they tend to involve fewer red flags like grammatical errors or spelling mistakes that give them away.

Singapore’s Government Technology Agency (GovTech) demonstrated this at the Black Hat USA cybersecurity convention in 2021. At the convention, it reported on an experiment in which spear phishing emails generated by OpenAI’s ChatGPT 3 and ones written by hand were sent to participants.

The experiment found the participants were much more likely to click on the ChatGPT-created emails than the hand-generated ones.

Science fiction-like impersonation

The use of generative AI for impersonation gets a little science-fictiony when you start talking about deep-fake videos and the use of voice-clones.

Even so, hackers are using AI tools to copy the likenesses and voices (known as voice phishing or vishing) of people known to victims in videos and recordings in order to pull off their swindles.

One high-profile case happened back in 2024 when a finance worker was conned into paying out $25m to hackers who used deep-fake video technology to pose as the company’s chief financial officer and other colleagues.

These aren’t the only AI impersonation techniques, though. In our article “AI impersonators will wreak havoc in 2025. Here’s what to watch out for,” we cover eight ways AI impersonators are trying to scam you, so be sure to check it out for a deeper dive on the topic.

 

This articles is written by : Nermeen Nabil Khear Abdelmalak

All rights reserved to : USAGOLDMIES . www.usagoldmines.com

You can Enjoy surfing our website categories and read more content in many fields you may like .

Why USAGoldMines ?

USAGoldMines is a comprehensive website offering the latest in financial, crypto, and technical news. With specialized sections for each category, it provides readers with up-to-date market insights, investment trends, and technological advancements, making it a valuable resource for investors and enthusiasts in the fast-paced financial world.

Recent:

Ugreen CM642 SSD enclosure review: Fast, roll-your-own USB4 storage | usagoldmines.com

One retailer hints that RTX 5070 Ti cards are coming next week | usagoldmines.com

Despite assurances, Nvidia’s RTX 5090 is melting power plugs after all | usagoldmines.com

You Can Quietly Mute People on Discord Now Khamosh Pathak | usagoldmines.com

Here's How to Access Your Router's Hidden Parental Controls Jason Keil | usagoldmines.com

Here's Where 'Tap to Pay on iPhone' is Available Joe Rossignol | usagoldmines.com

Apple Arcade Adding Two New Games in March Joe Rossignol | usagoldmines.com

Got $50,000? You Can Bid on This Business Card Signed by Steve Jobs Joe Rossignol | usagoldmines.com

The Nvidia vs AMD GPU fight could be about to get really interesting with ‘aggressive’ Radeon RX 900...

Google system abused by hackers to hijack ecommerce stores | usagoldmines.com

Sony's next State of Play arrives tomorrow and will feature 'news and updates on great games coming ...

Oracle Red Bull Racing signs up 1Password to boost its Formula 1 security | usagoldmines.com

Apple could make buying the wrong size Apple Watch a thing of the past with this futuristic inventio...

8base ransomware site taken down in global police operation | usagoldmines.com

ULA’s Vulcan rocket still doesn’t have the Space Force’s seal of approval Stephen Clark | usagoldmin...

Best DVR for cord-cutters: Tablo vs Zapperbox vs Channels vs the rest | usagoldmines.com

How fast can your USB cable move data? Use this formula to find out | usagoldmines.com

This Ryzen 7 mini PC with 16GB RAM has never been cheaper: $249 | usagoldmines.com

Samsung’s 27-inch 240Hz OLED monitor just dropped to its best price | usagoldmines.com

This Samsung Galaxy S22 Is Over $500 Off Right Now Pradershika Sharma | usagoldmines.com

Apple Reportedly 'Passed Over' DeepSeek as Apple Intelligence Partner Joe Rossignol | usagoldmines.c...

Powerbeats Pro 2 Debut With Heart Rate Monitoring, H2 Chip, Active Noise Cancellation, and More Eric...

Newspaper printing across US hit after Lee Enterprises says “cybersecurity event” disrupted operatio...

Ever wish you had a tube amp with you everywhere for your headphones? Now you can with this switchab...

Google One AI Premium now includes one of my favourite AI tools for no extra cost, and it’s 50% off ...

Google Maps and Apple Maps can't agree on the name of the Gulf of America, and I am so confused lanc...

"Privacy isn’t just a buzzword" – independent audit confirms NordVPN doesn't store your data chiara....

Did you turn off Apple Intelligence? Updating to iOS 18.3.1 or macOS 15.3.1 might’ve turned it on ag...

The Fantastic Four: First Steps: release date, trailer, confirmed cast, plot synopsis, and more news...

‘Labor of love’: Powerbeats Pro 2 are officially here with heart-rate tracking, and Apple’s Hardware...

Network complexity: a hidden tax on business | usagoldmines.com

Transforming meetings: how technology is bridging the engagement gap | usagoldmines.com

US and UK refuse to sign AI safety declaration at summit Leila Abboud and Melissa Heikkilä, Financia...

iOS 18.3.1 update fixes security flaw used in “extremely sophisticated attack” Andrew Cunningham | u...

A beginner’s guide to using a Chromebook | usagoldmines.com

Use this formula to calculate your USB cable’s data transfer speed | usagoldmines.com

Today’s best laptop deals: Save big on work, school, home use, and gaming | usagoldmines.com

Why (and How) to Wear Your Apple Watch on Your Ankle Beth Skwarecki | usagoldmines.com

Some Apple Watch Series 10 Users Experiencing Speaker Volume Issue Joe Rossignol | usagoldmines.com

OpenAI Swiftly Rebuffs Musk's Surprise $97.4 Billion Buyout Attempt Tim Hardwick | usagoldmines.com

Use Safari Quick Website Search for Faster Site-Specific Results Tim Hardwick | usagoldmines.com

Marvel Rivals Season 1 .5 will add Human Torch and The Thing later this month as NetEase walks back ...

'Official' Google Pixel 9a cases have leaked, showing off the four likely phone colors | usagoldmin...

The best 360-degree dash cam you can buy just got a big 4K video upgrade and new rear camera support...

France set to pledge one gigawatt of nuclear power for AI | usagoldmines.com

Firaxis teases Civilization 7 plans as dataminers seemingly uncover a fourth, unannounced Atomic Age...

All your messages in one place: the new Besties app for Google Pixel will bring together chats from ...

Apple warns "extremely sophisticated attack" hits iPhones and iPads, so update now | usagoldmines.c...

Best Thunderbolt docks 2025: Extend your laptop’s capabilities | usagoldmines.com

Fastest VPN 2025: We identify the speediest performers | usagoldmines.com

Your next laptop should be a Chromebook–here’s why | usagoldmines.com

Apple's Latest Updates Re-Enable Apple Intelligence on Some Devices Tim Hardwick | usagoldmines.com

NotebookLM Plus Now Available in Google One AI Premium Subscription Tim Hardwick | usagoldmines.com

Fresh M4 MacBook Air rumors point to an imminent launch, but it could be a modest update alexblake.t...

ChatGPT and Google Gemini are terrible at summarizing news, according to a new study john-anthony.di...

"Swindler" - Musk leads blockbuster bid to buy OpenAI for $97.4bn, but Sam Altman hits back with own...

Microsoft gets rid of ‘Edge uninstall’ advice page after facing criticism over it having nothing to ...

The Ranger XP Kinetic is the ultimate electric UTV—at a high price Tim Stevens | usagoldmines.com

The Samsung Galaxy S25 Edge could be impressively light, and might launch as soon as April | usagol...

'It's full of political intrigue': Captain America: Brave New World producer reveals which Marvel co...

Grand Theft Auto 6's release could mean an uptick in PS5 and Xbox Series X sales, according to Take ...

Microsoft Office - and Teams - might be about to get cheaper for an awkward reason | usagoldmines.c...

MSI mistakenly fires up a ‘countdown’ to Nvidia RTX 5070 Ti GPU release that suggests February 20 la...

Marvel Rivals The Thing and Human Torch release date | usagoldmines.com

You might not have to wait long for GTA 6 on PC as Take-Two CEO teases port dash.wood@futurenet.com ...

The 'world's smallest' robot vacuum is now available in a combo version, but for me it defeats the w...

Security attacks on password managers have soared | usagoldmines.com

OLED MacBook Pro With Thinner Design on Track for 2026 Launch Tim Hardwick | usagoldmines.com

MacBook Air to Get More Advanced LCD Panel Before Transition to OLED Tim Hardwick | usagoldmines.com

Tackling the UK's cybersecurity skills shortage | usagoldmines.com

Not that many workers are heavily reliant on AI - yet | usagoldmines.com

This PDF editor does everything Adobe Acrobat does, minus the fees | usagoldmines.com

A new AI tool can listen during your meetings and tell you what to say | usagoldmines.com

How sites are falsely blaming ad blockers for site breakdowns | usagoldmines.com

Nokia is bringing ridiculously fast 50Gbps broadband to the UK as the global race for hyperfast inte...

I matched Google's new Gemini 2.0 Flash against the old 1.5 model to find out if it really is that m...

Report: Massive Batteries for Galaxy S26 Series in the Works Tim | usagoldmines.com

Elon Musk Offered to Buy OpenAI For an Absurd Amount of Money Michelle Ehrhardt | usagoldmines.com

Siri Provides Stroke Victim With Life Saving Help Juli Clover | usagoldmines.com

Meta can turn your thoughts into words typed on a screen if you don't mind lugging a machine the siz...

February Google Play Updates: More New Features to Play With Tim | usagoldmines.com

The Out-of-Touch Adults' Guide to Kid Culture: Kendrick Lamar's Super Bowl Win Stephen Johnson | usa...

Apple CEO Tim Cook Visited New Orleans for Super Bowl Juli Clover | usagoldmines.com

AMD fast-tracks its most powerful AI GPU ever as it seeks to steal market sharefrom Nvidia's Blackwe...

Max unveils first look at Euphoria season 3, but I'm not excited about the hit show's long-awaited r...

Challenger laptop brand says you can shove 26TB of superfast SSD storage in its laptop - and I want ...

I Tested Nvidia’s AI Tool for Making Your Webcam Better, and Oof Mark Knapp | usagoldmines.com

Everything the Department of Actually Labor Does Meredith Dietz | usagoldmines.com

The Safe (and Unsafe) Flowers to Buy Your Valentine If They Have Pets Amanda Blum | usagoldmines.com

I Made the Perfect Boiled Egg, According to Science Allie Chanthorn Reinmann | usagoldmines.com

Samsung spin-off wants to break away from the tyranny of 16:9 aspect ratio for displays | usagoldmi...

OpenAI’s secret weapon against Nvidia dependence takes shape Benj Edwards | usagoldmines.com

Twenty-two states sue to block new NIH funding policy John Timmer | usagoldmines.com

The Two Best Ways to Remove Rings From Your Bathtub Lindsey Ellefson | usagoldmines.com

Will Apple Release New iPhone 16 Colors This Year? Hartley Charlton | usagoldmines.com

Apple's Rumored Smart Home Hub Still 'Months Away' From Shipping Joe Rossignol | usagoldmines.com

NYT Connections hints and answers for Tuesday, February 11 (game #611) | usagoldmines.com

NYT Strands hints and answers for Tuesday, February 11 (game #345) | usagoldmines.com

Quordle hints and answers for Tuesday, February 11 (game #1114) | usagoldmines.com

After Trump killed a report on nature, researchers push ahead with release Ashley Belanger | usagold...

Leave a Reply