logo

Threat Report: Examining the Use of AI in Attack Techniques

ID: e57b11a4-59e6-5db1-94fb-05bde764e137

STIX ID: report--e57b11a4-59e6-5db1-94fb-05bde764e137

Feed Name: Dark Reading

Threat Score
60/100

Date Published: 2024-03-27

Date Updated: 2026-04-21

Author: Microsoft Security

...
...

This Microsoft analysis details how several nation-state-linked APT groups (Russian STRONTIUM/Forest Blizzard, North Korea’s Velvet Chollima/Emerald Sleet, Iran’s CURIUM/Crimson Sandstorm, and China-linked Charcoal/Salmon Typhoon) are experimenting with large language models to enhance reconnaissance, social engineering, code/scripting, vulnerability research, and detection evasion; the report notes these are early-stage, incremental uses rather than documented large-scale attacks and recommends foundational defenses such as multifactor authentication, zero-trust, and conditional access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.