All Content from Business Insider 09月15日
AI助力黑客伪造身份与简历,渗透企业和机构
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

近期,AI聊天机器人被曝出被朝鲜和中国黑客用于大规模网络攻击。黑客利用ChatGPT等工具伪造简历、身份证明,并策划网络活动,以渗透企业和机构。朝鲜黑客曾利用ChatGPT生成虚假的韩国军方身份ID,用于钓鱼邮件。中国黑客也利用AI工具进行网络攻击,例如请求生成“密码暴力破解”代码。AI技术降低了黑客的门槛,使得即使是技术新手也能更轻松地进行欺诈和网络渗透活动。科技公司正在加强对AI工具滥用的检测和防御。

🤖 **AI工具成为黑客伪造身份的新手段**:朝鲜和中国黑客正利用ChatGPT、Claude和Gemini等AI聊天机器人,精心制作虚假的简历、身份证明(如韩国军方ID)以及其他冒充材料。这些伪造的身份信息被用于钓鱼邮件和远程工作渗透,大大增加了攻击的迷惑性和成功率。

💻 **AI助力黑客进行更广泛的网络攻击**:除了身份伪造,AI工具还被用于生成恶意代码,如“密码暴力破解”脚本,帮助黑客探测和渗透目标网络。同时,AI也被用于信息搜集,包括挖掘美国国防网络、卫星系统和政府ID验证卡等敏感信息,以及制造虚假社交媒体内容以煽动分裂。

🚀 **AI降低了网络攻击的技术门槛**:AI的出现使得技术能力相对较弱的攻击者也能够利用其强大的内容生成和分析能力,模仿品牌形象、撰写逼真的欺诈信息,并跨多渠道冒充员工、客户或合作伙伴。这导致个性化网络钓鱼攻击的激增,对企业和个人构成严重威胁。

🛡️ **科技公司积极应对AI滥用**:OpenAI、Anthropic和Google等AI提供商正在努力识别和阻止其模型被用于非法目的。他们通过改进检测机制、加强安全防护,并公开披露黑客滥用AI的案例,以帮助其他组织提升安全防御能力,共同应对AI驱动的网络威胁。

AI chatbots are helping North Korean and Chinese hackers infiltrate companies by faking résumés, forging IDs, and running cyber campaigns.

From bogus IDs to made-up résumés, North Korean and Chinese hackers have been using AI tools to supercharge espionage and slip into companies and other targets.

In the latest case, a North Korean hacking group known as Kimusky used ChatGPT to generate a fake draft of a South Korean military ID. The fake IDs were attached to phishing emails that impersonated a South Korean defense institution responsible for issuing credentials to military-affiliated officials, South Korean cybersecurity firm Genians said in a blog post published Monday.

Kimsuky has been linked to a string of espionage campaigns against individuals and organizations in South Korea, Japan, and the US. In 2020, the US Department of Homeland Security said the group is "most likely tasked by the North Korean regime with a global intelligence-gathering mission."

ChatGPT blocks attempts to generate official government IDs. But the model could be coaxed into producing convincing mock-ups if the prompt was framed as a "sample design for legitimate purposes rather than reproducing an actual military ID," Genians said.

This is not the first time North Korean hackers have used AI to infiltrate foreign entities. Anthropic said in a report last month that North Korean hackers used its Claude tool to secure and maintain fraudulent remote employment at American Fortune 500 tech companies. The hackers used Claude to spin up convincing résumés and portfolios, pass coding tests, and even complete real technical assignments once they were on the job.

US officials said last year that North Korea was placing people in remote positions in US firms using false or stolen identities as part of a mass extortion scheme.

China's hackers are doing it, too

Anthropic said in the same report that a Chinese actor spent over nine months using Claude as a full-stack cyberattack assistant to target major Vietnamese telecommunications providers, agricultural systems, and government databases.

The hacker used Claude as a "technical advisor, code developer, security analyst, and operational consultant throughout their campaign," Anthropic said.

Anthropic said it had implemented new ways to detect misuse of its tools.

Chinese hackers have also been turning to ChatGPT for help with their cyber campaigns, according to an OpenAI report published in June. The hackers asked the chatbot to generate code for "password bruteforcing"— scripts that guess thousands of username and password combinations until one works. They used ChatGPT to dig up information on US defense networks, satellite systems, and government ID verification cards.

The OpenAI report flagged a China-based influence operation that used ChatGPT to generate social media posts designed to stoke division in US politics, including fake profile images to make the accounts look like real people.

"Every operation we disrupt gives us a better understanding of how threat actors are trying to abuse our models, and enables us to refine our defenses," OpenAI said in the June report.

It's not just Claude and ChatGPT. North Korean and Chinese hackers have experimented with Google's Gemini to expand their operations. Chinese groups used the chatbot to troubleshoot code and obtain "deeper access to target networks," while North Korean actors used Gemini to draft fake cover letters and scout IT job postings, Google said in a January report.

Google said Gemini's safeguards prevented hackers from using it for more sophisticated attacks, such as accessing information to manipulate Google's own products.

OpenAI, Anthropic, and Google did not respond to a request for comment from Business Insider. The companies have said they published their findings on hackers to help others improve security.

AI makes hacking easier

Cybersecurity experts have long warned that AI has the capacity to make hacking and disinformation operations easier.

Hackers have been using AI models to infiltrate companies, Yuval Fernbach, the chief technology officer of machine learning operations at software supply chain company JFrog, told Business Insider in a report published in April.

"We are seeing many, many attacks," Fernbach said, adding that malicious code is easily hidden inside open-source large language models. Hackers typically shut things down, steal information, or change the output of a website or tool.

Online businesses have also been hit by deepfakes and scams. Rob Duncan, the VP of strategy at the cybersecurity firm Netcraft, told Business Insider in a June report that he isn't surprised at the surge in personalized phishing attacks against small businesses.

GenAI tools now allow even a novice lone wolf with little technical know-how to clone a brand's image and write flawless, convincing scam messages within minutes, Duncan said. With cheap tools, "attackers can more easily spoof employees, fool customers, or impersonate partners across multiple channels," he added.

Read the original article on Business Insider

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

AI 黑客 网络安全 网络攻击 身份伪造 网络钓鱼 ChatGPT AI misuse Cybersecurity Hacking Phishing Identity Forgery
相关文章