CYBERSECURITYTRACKER
TRACKING6,902 stories in this site build1,444 vulnerability news stories in this site build
Permanent story citation

CrowdStrike: AI is now both the weapon and the target in cyberattacks

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 3706

As cited

Copy frozen at (site build).

threat intel

CrowdStrike: AI is now both the weapon and the target in cyberattacks

CrowdStrike's annual threat hunting report reveals that AI-driven malicious activity surged 89% over the past year, with attackers using frontier AI models to discover vulnerabilities, generate attack tools, and automate operations at scale. The company found that 88% of vulnerabilities were weaponized within 48 hours through AI, compressing the traditional patch window to 24-48 hours, while AI supply chain attacks like TeamPCP's compromise of over 300 software dependencies demonstrate a new attack surface that most organizations have failed to adequately secure.

Why it matters: Security teams must urgently reassess their patch timelines, vulnerability management processes, and AI tool governance, as the weaponization of AI has fundamentally shortened response windows and expanded attack surfaces across enterprise infrastructure.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

CrowdStrike: AI is now both the weapon and the target in cyberattacks

CrowdStrike's annual threat hunting report reveals that artificial intelligence (AI)-driven malicious activities increased 89 percent over the past year, with AI agents now generating more than twice as many detection leads as human-triggered incidents. The report highlights a critical vulnerability landscape where 88 percent of disclosed vulnerabilities were weaponized within 48 hours, collapsing the traditional 30-day patch window to a 24 to 48-hour cycle. Open-source supply chains and AI tools themselves have become prime targets, with attackers leveraging frontier AI models to automate attacks, develop payloads, and compromise systems.

Why it matters: Security teams must immediately reassess patching timelines and AI tool deployments, as enterprises now face dual threats: AI-accelerated attacks and rapidly expanding attack surfaces from unguarded AI implementations across their infrastructure.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

CrowdStrike: AI is now both the weapon and the target in cyberattacks

CrowdStrike's annual threat hunting report reveals that artificial intelligence (AI)-driven malicious activities increased 89 percent over the past year, with AI agents now generating more than twice as many detection leads as human-triggered incidents. The report highlights a critical vulnerability landscape where 88 percent of disclosed vulnerabilities were weaponized within 48 hours, collapsing the traditional 30-day patch window to a 24 to 48-hour cycle. Open-source supply chains and AI tools themselves have become prime targets, with attackers leveraging frontier AI models to automate attacks, develop payloads, and compromise systems.

Why it matters: Security teams must immediately reassess patching timelines and AI tool deployments, as enterprises now face dual threats: AI-accelerated attacks and rapidly expanding attack surfaces from unguarded AI implementations across their infrastructure.

VendorsCrowdStrike
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary