Russian and North Korean hackers used OpenAI tools to hone cyberattacks

Microsoft and OpenAI say that several state-backed hacking groups are using the latter’s generative AI (GAI) tools to bolster cyberattacks. The pair suggests that new research details for the first time how hackers linked to foreign governments are making use of GAI. The groups in question have ties to China, Russia, North Korea and Iran.

According to the companies, the state actors are using GAI for code debugging, looking up open-source information to research targets, developing social engineering techniques, drafting phishing emails and translating text. OpenAI (which powers Microsoft GAI products such as Copilot) says it shut down the groups’ access to its GAI systems after finding out they were using its tools.

Notorious Russian group Forest Blizzard (better known as Fancy Bear or APT 12) was one of the state actors said to have used OpenAI's platform. The hackers used OpenAI tools "primarily for open-source research into satellite communication protocols and radar imaging technology, as well as for support with scripting tasks," the company said.

As part of its cybersecurity efforts, Microsoft says it tracks north of 300 hacking groups, including 160 nation-state actors. It shared its knowledge of them with OpenAI to help detect the hackers and shut down their accounts.

OpenAI says it invests in resources to pinpoint and disrupt threat actors' activities on its platforms. Its staff uses a number of methods to look into hackers' use of its systems, such as employing its own models to follow leads, analyzing how they interact with OpenAI tools and determining their broader objectives. Once it detects such illicit users, OpenAI says it disrupts their use of the platform through the likes of shutting down their accounts, terminating services or minimizing their access to resources.

This article originally appeared on Engadget at https://www.engadget.com/russian-and-north-korean-hackers-used-openai-tools-to-hone-cyberattacks-152424393.html?src=rss https://www.engadget.com/russian-and-north-korean-hackers-used-openai-tools-to-hone-cyberattacks-152424393.html?src=rss
Létrehozva 1y | 2024. febr. 14. 16:10:27


Jelentkezéshez jelentkezzen be

EGYÉB POSTS Ebben a csoportban

Romero Games says reports of its death are greatly exaggerated

It appeared that Romero Games might have shuttered as a consequence of the

2025. júl. 7. 23:30:11 | Engadget
Epic Games ends its antitrust lawsuit against Samsung

Epic Games has dropped its suit against Samsung. "We’re dismissing our court case against Samsung following the parties’ discussions," Epic CEO and founder Tim Sweeney

2025. júl. 7. 23:30:10 | Engadget
Walmart Deals 2025 are live with a bunch of anti-Prime Day sales to shop now

Amazon Prime Day is usually met with competing sales from other retailers, and this year is no different.

2025. júl. 7. 23:30:08 | Engadget
Apple is still trying to overturn the ban on the Apple Watch blood oxygen sensor

Apple is making another attempt to appeal the trade ban that forced it to remove the blood oxygen sensor from its smartwatches,

2025. júl. 7. 21:10:13 | Engadget