Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Research shows LLMs can conduct sophisticated attacks without humans

By CIO Dive by By CIO Dive
July 30, 2025
Home Enterprise IT
Share on FacebookShare on Twitter


This audio is auto-generated. Please let us know if you have feedback.

Carnegie Mellon University researchers have demonstrated that large language models can autonomously plan and carry out sophisticated cyberattacks without human intervention.

The research, conducted in partnership with artificial intelligence firm Anthropic, showed that AI could replicate the 2017 cyberattack on Equifax by autonomously exploiting vulnerabilities, installing malware and stealing data.

The Equifax breach compromised approximately 147 million customers’ data, making it one of the largest data breaches in U.S. history. 

Researchers from Carnegie Mellon and Anthropic developed an attack toolkit called Incalmo that they used to translate the strategy behind the Equifax breach into specific system commands used to carry out the attacks. 

Brian Singer, the lead researcher and a PhD candidate at Carnegie Mellon’s Department of Electrical and Computer Engineering, said the goal was to measure LLMs’ ability to autonomously plan an attack without the need for human assistance.

“It is unclear how well Incalmo generalizes to other networks. However, in the research paper, we evaluated Incalmo in 10 small enterprise environments,” Singer told Cybersecurity Dive via email. “In 9 out of 10 of them, LLMs were able to autonomously partially succeed in the attacks (e.g., exfiltrate some sensitive data).”

The LLM provided high-level strategic guidance for the attack, while a combination of LLM and non-LLM agents handled lower-level tasks such as scanning and deploying exploits, according to the researchers. 

Anthropic said in June that LLMs had fully compromised five of 10 test networks and partially compromised four other networks. One of the models used in those tests was the 2021 Colonial Pipeline ransomware attack, which disrupted fuel supplies for nearly a week.

The Equifax breach was chosen for simulation due to the large amount of public information about how it was carried out. 

Asked if modern defenses are capable of stopping such an autonomous attack, Singer said it is currently unclear how well modern defenses would hold up. He said his biggest concern was about how quickly and inexpensively someone could orchestrate such an attack. 

“Currently, a lot of cybersecurity defenses rely on human operators and I am not sure how well that will scale up to machine-timescale defenses,” Singer said. “For this reason, we are currently exploring research into defenses for autonomous attacks and LLM-based autonomous defenders.”



Source link

By CIO Dive

By CIO Dive

Next Post
Data-as-a-Product Approach Improves Value Delivery for Organizations, Says Info-Tech Research Group

Data-as-a-Product Approach Improves Value Delivery for Organizations, Says Info-Tech Research Group

Recommended.

Treasury Secretary Bessent says ‘it’s Main Street’s turn’ after Wall Street grew wealthy for 4 decades

Treasury Secretary Bessent says ‘it’s Main Street’s turn’ after Wall Street grew wealthy for 4 decades

April 9, 2025
JPMorgan says it’s finally time to buy the Chinese consumer recovery

JPMorgan says it’s finally time to buy the Chinese consumer recovery

March 30, 2025

Trending.

⚡ Weekly Recap: Oracle 0-Day, BitLocker Bypass, VMScape, WhatsApp Worm & More

⚡ Weekly Recap: Oracle 0-Day, BitLocker Bypass, VMScape, WhatsApp Worm & More

October 6, 2025
Cloud Computing on the Rise: Market Projected to Reach .6 Trillion by 2030

Cloud Computing on the Rise: Market Projected to Reach $1.6 Trillion by 2030

August 1, 2025
Stocks making the biggest moves midday: Autodesk, PayPal, Rivian, Nebius, Waters and more

Stocks making the biggest moves midday: Autodesk, PayPal, Rivian, Nebius, Waters and more

July 14, 2025
The Ultimate MSP Guide to Structuring and Selling vCISO Services

The Ultimate MSP Guide to Structuring and Selling vCISO Services

February 19, 2025
Translators’ Voices: China shares technological achievements with the world for mutual benefit

Translators’ Voices: China shares technological achievements with the world for mutual benefit

June 3, 2025

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio