logo
Cybercriminals Increasingly Exploit AI Tools To Enhance Attacks: Cisco Talos

Cybercriminals Increasingly Exploit AI Tools To Enhance Attacks: Cisco Talos

Cisco Talos has published a new report revealing how cybercriminals are increasingly abusing artificial intelligence (AI) tools – particularly large language models (LLMs) – to enhance their operations and evade traditional defenses. The findings highlight how both custom-built and jailbroken (modified) versions of LLMs are being used to generate malicious content at scale, signaling a new chapter in the cyber threat landscape.
The report explores how threat actors are bypassing built-in safeguards legitimate AI tools use, creating harmful alternatives that cater to criminal demands. These unregulated models can produce phishing emails, malware, viruses and even assist in scanning websites for vulnerabilities. Some LLMs are being connected to external tools such as email accounts, credit card checkers, and more to streamline and amplify attack chains.
Commenting on the report's findings, Fady Younes, Managing Director for Cybersecurity at Cisco Middle East, Africa, Türkiye, Romania and CIS, stated: 'While large language models offer enormous potential for innovation, they are also being weaponized by cybercriminals to scale and refine their attacks. This research highlights the critical need for AI governance, user vigilance, and foundational cybersecurity controls. By understanding how these tools are being exploited, organizations can better anticipate threats and reinforce their defenses accordingly. With recent innovations like Cisco AI Defense, we are committed to helping enterprises harness end-to-end protection as they build, use, and innovate with AI.'
Cisco Talos researchers documented the emergence of malicious LLMs on underground forums, including names such as FraudGPT, DarkGPT, and WhiteRabbitNeo. These tools are advertised with features like phishing kit generation and ransomware creation, alongside card verification services. Interestingly, even the criminal ecosystem is not without its pitfalls – many so-called 'AI tools' are also scams targeting fellow cybercriminals.
Beyond harmful models, attackers are also jailbreaking legitimate AI platforms using increasingly sophisticated techniques. These jailbreaks aim to bypass safety guardrails and alignment training to produce responses that would normally be blocked.
The report also warns that LLMs themselves are becoming targets, as attackers are inserting backdoors into downloadable AI models to function as per the attacker's programming when activated. As a result, models using external data sources to find information are exposed to risks if threat actors tamper with the sources.
Cisco Talos' findings underscore the dual nature of emerging technologies – offering powerful benefits but also introducing new vulnerabilities. As AI becomes more commonplace for enterprises and consumer systems, it is essential that security measures evolve in parallel. This includes scanning for tampered models, validating data sources, monitoring abnormal LLM behavior, and educating users on the risks of prompt manipulation.
Cisco Talos continues to lead the global cybersecurity community by sharing actionable intelligence and insights. The full report, Cybercriminal Abuse of Large Language Models, is available at https://talosintelligence.com/
Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

NTT DATA and Google Cloud to accelerate Agentic AI adoption, cloud modernisation
NTT DATA and Google Cloud to accelerate Agentic AI adoption, cloud modernisation

Tahawul Tech

time6 hours ago

  • Tahawul Tech

NTT DATA and Google Cloud to accelerate Agentic AI adoption, cloud modernisation

NTT DATA, a global leader in digital business and technology services, today announced a global partnership with Google Cloud to accelerate AI-powered cloud innovations and unlock new possibilities with AI for enterprise organisations across industries. This collaboration combines NTT DATA's deep industry expertise in AI, cloud-native modernisation, and data engineering with Google Cloud's advanced analytics, AI, and cloud technologies to deliver tailored, scalable enterprise solutions. With a focus on co-innovation, the partnership will drive industry-specific cloud and AI solutions, leveraging NTT DATA's proven frameworks and best practices along with Google Cloud's capabilities to deliver customised solutions backed by deep implementation expertise. Significant joint go-to-market investments will support seamless adoption across key markets. Murray Campbell, SVP for Cloud and Security in MEA for NTT DATA, on this global announcement said, 'With our new Google Cloud Business Group, we're making it much easier for businesses across MEA to access the expertise they need to move faster, innovate more, and stay competitive.' 'We're already seeing strong interest from retail clients who want to use AI to improve customer experiences and run their operations more efficiently. This is a big step forward for digital transformation in the region.' According to Gartner, worldwide end-user spending on public cloud services is forecast to reach $723 billion in 2025, up from $595.7 billion in 2024.1. The use of AI deployments in IT and business operations is accelerating the reliance on modern cloud infrastructure, highlighting the critical importance of this strategic global partnership. 'This collaboration with Google Cloud represents a significant milestone in our mission to drive innovation and digital transformation across industries,' said Marv Mouchawar, Head of Global Innovation, NTT DATA. 'By combining NTT DATA's deep expertise in AI, cloud-native modernisation and enterprise solutions with Google Cloud's advanced technologies, we are helping businesses accelerate their AI-powered cloud adoption globally and unlock new growth opportunities.' 'Our partnership with NTT DATA will help enterprises use agentic AI to enhance business processes and solve complex industry challenges,' said Kevin Ichhpurani, President, Global Partner Ecosystem at Google Cloud. 'By combining Google Cloud's AI with NTT DATA's implementation expertise, we will enable customers to deploy intelligent agents that modernise operations and deliver significant value for their organisations.' Driving AI innovation across industries NTT DATA will leverage Google Cloud technology to develop several industry-specific AI and cloud solutions, accelerating enterprise transformation across sectors including banking, insurance, manufacturing, retail, healthcare, life sciences and the public sector. For example, in financial services, this collaboration will support regulatory compliance and reporting through NTT DATA solutions like Regla, which leverage Google Cloud's scalable AI infrastructure. In hospitality, NTT DATA's Virtual Travel Concierge enhances customer experience and drives sales with 24×7 multilingual support, real-time itinerary planning and intelligent travel recommendations. It uses the capabilities of Google's Gemini models to drive personalisation across more than 3 million monthly conversations. Key focus areas include: Industry-specific agentic AI solutions: NTT DATA will build new industry solutions that transform analytics, decision-making and client experiences using Google Agentspace, Google's Gemini models, secure data clean rooms and modernised data platforms. AI-driven cloud modernisation : Accelerating enterprise modernisation with Google Distributed Cloud for secure, scalable modernisation built and managed on NTT DATA's global infrastructure, from data centers to edge to cloud. Next-generation application and security modernisation : Strengthening enterprise agility and resilience through mainframe modernisation, DevOps, observability, API management, cybersecurity frameworks and SAP on Google Cloud. Sovereign cloud innovation : Delivering secure, compliant solutions through Google Distributed Cloud in both air-gapped and connected deployments. Air-gapped environments operate offline for maximum data isolation. Connected deployments enable secure integration with cloud services. These scenarios meet data sovereignty and regulatory demands in sectors such as finance, government and healthcare without compromising innovation. Google Distributed Cloud sandbox environment : Google Distributed Cloud sandbox environment is a digital playground where developers can build, test and deploy industry-specific and sovereign cloud deployments. This sandbox will help teams upskill through hands-on training and accelerate time to market with G oogle Distributed Cloud technologies through preconfigured, ready-to-deploy templates. NTT DATA will support these innovations through a full-stack suite of services including advisory, building, implementation and ongoing hosting and managed services. By combining NTT DATA's proven blueprints and delivery expertise with Google Cloud's technology, the partnership will accelerate the development of repeatable, scalable solutions for enterprise transformation. At the heart of this innovation strategy is Takumi, NTT DATA's GenAI framework that guides clients from ideation to enterprise-wide deployment. Takumi integrates seamlessly with Google Cloud's AI stack, enabling rapid prototyping and operationalisation of GenAI use cases. This initiative expands NTT DATA's Smart AI Agent Ecosystem, which unites strategic technology partnerships, specialised assets and an AI-ready talent engine to help clients deploy and manage responsible, business-driven AI at scale. Accelerating global delivery with a dedicated Google Cloud Business Group To achieve excellence, NTT DATA has established a dedicated global Google Cloud Business Group comprising thousands of engineers, architects and advisory consultants. This global team at NTT DATA will work in close collaboration with Google Cloud teams to help clients adopt and scale AI-powered cloud technologies. NTT DATA is also investing in advanced training and certification programs ensuring teams across sales, pre-sales and delivery are equipped to sell, secure, migrate and implement AI-powered cloud solutions. The company aims to certify 5,000 engineers in Google Cloud technology, further reinforcing its role as a leader in cloud transformation on a global scale. Additionally, both companies are co-investing in global sales and go-to-market campaigns to accelerate client adoption across priority industries. By aligning technical, sales and marketing expertise, the companies aim to scale transformative solutions efficiently across global markets. Building on strategic momentum This global partnership builds on NTT DATA and Google Cloud's 2024 co-innovation agreement in APAC. In addition it further strengthens NTT DATA's acquisition of Niveus Solutions, a leading Google Cloud specialist recognised with three 2025 Google Cloud Awards – 'Google Cloud Country Partner of the Year – India', 'Google Cloud Databases Partner of the Year – APAC' and 'Google Cloud Country Partner of the Year – Chile,' further validating NTT DATA's commitment to cloud excellence and innovation. 'We're excited to see the strengthened partnership between NTT DATA and Google Cloud, which continues to deliver measurable impact. Their combined expertise has been instrumental in migrating more than 380 workloads to Google Cloud to align with our cloud-first strategy,' said José Luis González Santana, Head of IT Infrastructure, Carrefour. 'By running SAP HANA on Google Cloud, we have consolidated 100 legacy applications to create a powerful, modernised e-commerce platform across 200 hypermarkets. This transformation has given us the agility we need during peak times like Black Friday and enabled us to launch new services faster than ever. Together, NTT DATA and Google Cloud are helping us deliver more connected, seamless experiences for our customers,'

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into a world of global content with local flavor? Download Daily8 app today from your preferred app store and start exploring.
app-storeplay-store