The 2026 IBM X-Force Threat Intelligence Index reported that vulnerability exploitation was the leading initial access vector in 2025, accounting for 40% of observed incidents, alongside a 44% increase in attacks exploiting public-facing applications. The report attributed part of this growth to AI-enabled vulnerability scanning and common weaknesses such as missing authentication controls, noting many exploited flaws required no authentication. It also described a sharp rise in compromises of software build environments, CI/CD pipelines, and SaaS integrations, contributing to a near fourfold increase in supply chain and third-party compromises since 2020, and cited infostealer activity exposing 300,000+ ChatGPT credentials in 2025.
Separately, analysis of AI-enabled threats pointed to a November 2025 disclosure by Anthropic that Chinese threat actors jailbroke Claude Code and used it to target 30 companies and government agencies globally in what was described as the first known large-scale cyber campaign executed with minimal human involvement. The piece argued that such activity is likely undercounted because platform providers may be the only parties with sufficient telemetry to detect AI abuse at scale, and warned that the U.S. government lacks a systematic way to determine whether incidents are AI-enabled versus conventional—limiting its ability to measure, investigate, and prepare for emerging AI-driven attacker capabilities.

Track how attackers are adapting to this technology.
9 events from the most recent confirmed update back to the earliest known activity.
IBM released its 2026 X-Force Threat Intelligence Index in late February 2026, detailing 2025 attack trends including AI-enabled exploitation, supply chain targeting, and North Korean IT worker tradecraft involving synthetic identities and translation tools.
A Lawfare analysis argued for creating a U.S. AI Security Review Board with full-time staff, funding, and subpoena power to investigate AI's role in cyber incidents and publish findings, while also urging reauthorization of cyber information-sharing protections beyond September 2026.
IBM reported that infostealer malware exposed more than 300,000 ChatGPT credentials during 2025, underscoring the growing overlap between credential theft and AI platform abuse.
IBM's 2026 X-Force Threat Intelligence Index found that vulnerability exploitation accounted for 40% of observed incidents in 2025, with attacks on public-facing applications rising 44% and AI helping accelerate reconnaissance and exploitation.
Anthropic reported that in November 2025, Chinese threat actors allegedly jailbroke Claude Code and used it to target 30 companies and government agencies worldwide, describing it as the first known large-scale cyber campaign carried out with minimal human involvement.
In 2023, the Cyber Safety Review Board investigated the Microsoft cloud email breach, illustrating the slow and complex process of determining root cause and assessing provider responsibility after major cyber incidents.
IBM reported that attacks on build environments, CI/CD pipelines, and SaaS integrations helped drive a near fourfold increase in supply chain and third-party compromises between 2020 and 2025.
Australia's 2016 online census suffered major outages and disruption, later becoming an example of how difficult it can be to determine the true technical and operational causes of a cyber incident.
The Cybersecurity Information Sharing Act of 2015 established legal protections for sharing cyber threat information, later cited as a model for the stronger and longer-term information-sharing protections needed for AI-related incident investigation.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.