5 Ways AI Can Help Cybercriminals

Many tech enthusiasts are excited about the potential artificial intelligence holds, but cybercriminals are also looking to this technology to help them in their exploits. AI is a fascinating field, but it can also give us cause for concern. So in what ways can AI help cybercriminals?

1. Writing Malware

Artificial intelligence is an advanced type of technology, so some may not find it surprising that it can be used to write malware. Malware is a term for malicious programs used (a portmanteau of the words “malicious” and “software”) in hacking, and can come in many forms. But to use malware, it must first be written.

Not all cybercriminals are experienced in coding, with others simply not wanting to spend time writing new programs. This is where AI can come in handy.

4

In early 2023, it was noticed thatChatGPT could be used to write malwarefor illicit attacks.OpenAI’s hugely popular ChatGPTis fueled by an AI infrastructure. This chatbot can do a lot of useful things, but is also being leveraged by illicit individuals.

In one specific case, a user posted to a hacking forum claiming that they hadwritten a Python-based malware program using ChatGPT.

digital graphic of brain shaped circuit with computer chip in center

ChatGPT could effectively automate the process of writing malicious programs. This opens the door to rookie cybercriminals who don’t have a lot of technical expertise.

ChatGPT (or at least its latest version) can only write basic, and sometimes buggy, malware programs, rather than sophisticated code that poses severe threats. However, this isn’t to say that AI cannot be used to write malware. Given that a current AI chatbot can create basic malicious programs, it may not be long before we see more heinous malware originate from AI systems.

Data on Laptop Screen

2. Cracking Passwords

Passwords often stand as the one line of data protecting our accounts and devices. So, unsurprisingly, many cybercriminals attempt to crack passwords in order to gain access to our private data.

Password cracking is already popular in cybercrime, and there are various techniques a malicious actor can use to uncover a target’s password. Different techniques have different success rates, but AI could make the chance of cracking a password that much higher.

Microphone symbol seen on an illustration of sound waves

The concept of AI password crackers are by no means science fiction. In fact,ZDNetreported that cybersecurity experts found over half of the commonly-used passwords out there could be cracked in less than a minute. The article referenced aHome Security Heroes report, which stated that an AI-powered cracking tool called PassGAN could crack 51 percent of common passwords in under a minute, and 71 percent in less than a day.

These figures show how dangerous AI password cracking can be. With the ability to crack most regular passwords in less than 24 hours, there’s no knowing what a cybercriminal could do using such a tool.

A man holds an iPhone and is watching Interstellar on Prime Video

3. Conducting Social Engineering

The cybercrime tacticknown as social engineeringclaims hordes of victims every week, and is a major problem in every part of the world. This method uses manipulation to corner victims into complying with the attacker’s demands, often without even realizing that they’re being targeted

AI could help in social engineering attacks by formulating the content used in malicious communications, such as phishing emails and texts. Even with today’s level of AI advancement, it wouldn’t be difficult to ask a chatbot to formulate a convincing or persuasive script, which the cybercriminal could then use against their victims. This threat hasn’t gone unnoticed, and people are already concerned about the dangers to come.

In this sense, AI could also help in making malicious communications look more professional and official by ironing out spelling and grammar mistakes. Such errors are often said to be possible signs of malicious activity, so it may help cybercriminals if they can write their social engineering content more cleanly and effectively.

4. Finding Software Vulnerabilities

To hack software programs, cybercriminals often need to find and exploit a security vulnerability. These vulnerabilities often arise as a result of bugs in the software’s code. If a bug goes unpatched, or an individual doesn’t regularly update their software programs (which often irons out security flaws), vulnerabilities can pose a major risk.

Cybercriminals know this, and that’s why they’re on the lookout for flaws. There are already tools one can use to find vulnerabilities, such as an exploit kit. But using AI, a malicious actor may be able to highlight far more vulnerabilities, some of which could be used to cause a lot of damage.

However, this AI application could also be helpful for cybersecurity vendors, as it couldaid in finding vulnerabilitiesbefore they are exploited. Being able to patch a flaw quickly can cut off malicious actors' ability to exploit it, mitigating attacks overall.

5. Analyzing Stolen Data

Data is as valuable as gold. Today,sensitive data is sold on dark web marketplaceson a constant basis, with some malicious actors willing to pay a very high price if the information is useful enough.

But for this data to become available on these marketplaces, it first needs to be stolen. Data can certainly be stolen in small amounts, especially when the attacker is targeting lone victims. But larger hacks can result in the theft of huge databases. At this point, the cybercriminal needs to determine what information in this database is valuable.

Using AI, the process of highlighting valuable information could be streamlined, cutting down the time it takes for a malicious actor to determine what is worth selling, or, on the other hand, directly exploiting by their own hand. Artificial intelligence, at its core, is all about learning, so it could one day become easy to use an AI-powered tool to pick up on valuable sensitive data.

AI Is Promising but Also Poses Many Threats

As is the case with most kinds of technology, artificial intelligence has been, and will continue to be, exploited by cybercriminals. With AI already having some illicit capabilities, there’s really no knowing how cybercriminals will be able to advance their attacks using this technology in the near future. Cybersecurity firms may also work increasingly with AI to fight such threats, but time will tell how this one plays out.

Artificial intelligence can sound like the President. Or it can sound like you or me. So what cybersecurity risk does AI voice cloning software pose?

These films will leave you questioning humanity, but also wanting more.

This small feature makes a massive difference.

Lose your laptop without this feature, and you’ll wish you had turned it on.

The best features aren’t the ones being advertised.

Flagship price, mid-range phone.

Technology Explained

PC & Mobile