University of Toronto researchers have demonstrated that artificial intelligence worms could potentially infect any connected device. The proof-of-concept highlights a critical vulnerability in the age of networked systems.
Researchers at the University of Toronto have created a working demonstration of an AI-powered worm capable of spreading across diverse online devices and systems. The worm represents a new class of threat that could exploit multiple vulnerabilities simultaneously by using machine learning to adapt its attack strategy.
The proof-of-concept shows how AI systems could be weaponized to automatically identify and exploit weaknesses in network-connected devices, from servers to IoT hardware. Unlike traditional malware, an AI worm could continuously evolve its approach to bypass security measures.
The team's findings underscore growing concerns about AI safety and cybersecurity as artificial intelligence becomes more sophisticated. The research serves as a warning to security professionals and device manufacturers to strengthen defenses against adaptive threats.
The work was published through the university's official channels and has drawn significant attention from the security community, with 37 comments and 121 points on Hacker News.
A threat actor is deploying open-source AI agent frameworks to compromise hundreds of online retailers at scale, harvesting over 600,000 credit card records through payment skimmers.
A limited-permission Kubernetes user can potentially gain full control of a Google Cloud organization by exploiting the Google Kubernetes Config Connector. The vulnerability represents a classic confused deputy problem in cloud infrastructure.
Enterprise infrastructure management systems are under sustained attack, with critical vulnerabilities being exploited before or immediately after vendor patches become available, according to a new InfraTrust report.
Comma's hands-off driving technology is being investigated following at least two fatal crashes. The inquiry involves instances where drivers were operating modified versions of Comma's software.