InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

The AI-Powered Adversary: Tracking the New Wave of LLM-Enabled Cyber Attacks (APAC Timezone)

Presented by

Aurora Blum, Threat Intel Reporting Analyst & Michelle Cantos, Senior Analyst, Google Threat Intelligence Group

About this talk

Threat actors are no longer using Artificial Intelligence (AI) just for basic productivity gains; they have entered a new operational phase by deploying novel, AI-enabled malware and evolving their Tactics, Techniques, and Procedures (TTPs) across the entire attack lifecycle. In this briefing, drawn from the latest Google Threat Intelligence Group (GTIG) reporting, we will expose the ways both cyber criminals and state-sponsored groups are abusing Large Language Models (LLMs) to achieve their objectives. You Will Learn: - The Rise of Adaptive Malware: Understand the use of novel "Just-in-Time" AI in malware families like PROMPTFLUX and PROMPTSTEAL. We will detail how these tools dynamically generate malicious scripts, obfuscate their own code mid-execution, and create functions on demand to effectively evade static detection. - Attempts to bypass Safety Guardrails: Discover the low-sophistication methods - such as social engineering pretexts - that threat actors are using to attempt to bypass AI safety guardrails and facilitate tool development. - Full Attack Lifecycle Augmentation: See how government-backed actors from North Korea, Iran, and the PRC are leveraging generative AI tools for every stage of their operations, from generating phishing lures and specialized social engineering to C2 development and data exfiltration. - Expanding Attack Surfaces: Get a breakdown of how actors are using LLMs to expand their knowledge and targeting of less conventional environments, including cloud infrastructure, container systems (Kubernetes), and macOS6. - The Cyber Crime Marketplace: Gain insight into the maturing underground marketplace for purpose-built AI tools designed to lower the barrier to entry for phishing, malware generation, and vulnerability research.
Mandiant | Intelligence and Expertise

Mandiant | Intelligence and Expertise

171956 subscribers151 talks
Make Google part of your security team
Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. By scaling decades of frontline experience, Mandiant helps organizations to be confident in their readiness to defend against and respond to cyber threats. Mandiant is part of Google Cloud.
Related topics