CrowdStrike reported that AI has become both an offensive enabler and a direct target in cyberattacks, with AI-enabled malicious activity rising 89% over the past year and generating more than twice as much potentially malicious detection noise as human-triggered activity. The company said attackers are using frontier models to identify vulnerabilities, generate scripts and payloads, automate intrusion workflows, and troubleshoot operations, while also pursuing attacks such as LLMjacking, AI cost-harvesting, and compromises of AI infrastructure and agentic systems. The findings align with earlier disclosures from OpenAI, which said it banned accounts tied to publicly reported China-linked actors including Vixen and Keyhole Panda, as well as suspected DPRK-affiliated operators, for using AI to support vulnerability research, scripting, phishing, malware research, translation, and cryptocurrency-focused targeting.
The report warns that AI is sharply compressing defender response time, with 88% of vulnerabilities reportedly weaponized within 48 hours, reducing effective patch windows to roughly 24 to 48 hours. CrowdStrike highlighted rapid post-disclosure exploitation by China-linked groups including Vault Panda and Genesis Panda, and described advanced AI-enabled tradecraft by North Korean actors such as Famous Chollima, including fake companies, AI-generated infrastructure, and trojanized repositories aimed at cryptocurrency, blockchain, and AI-focused development environments. It also cited expanding supply-chain risk, including TeamPCP’s compromise of more than 300 software dependencies in a single day and financially motivated activity such as Altered Spider stealing credentials and pivoting into cloud environments, underscoring how AI tools and integrations are widening an under-defended attack surface.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
11 events from the most recent confirmed update back to the earliest known activity.
CrowdStrike published an adversary profile focused on Snarky Spider. The existing timeline does not previously document this actor or related activity.
CrowdStrike said that from January to June, 88 percent of exploitation using public proof-of-concept code occurred within 48 hours of the code's release. It argued that AI-driven weaponization had compressed practical patch timelines to 24 to 48 hours.
CrowdStrike said Altered Spider, also known elsewhere as TeamPCP, compromised more than 300 software dependencies in one day during the first half of the year. The actor harvested credentials and secrets before pivoting into cloud environments for theft and extortion.
CrowdStrike assessed that Famous Chollima demonstrated the most advanced AI usage during the second half of 2025 and first half of 2026. It said the North Korean group used fake companies with AI-generated websites, GitHub accounts, and email infrastructure to support insider-threat operations.
CrowdStrike reported that attacks by AI-enabled adversaries rose 89 percent in 2025. The company said AI had become both an offensive enabler and a target across the attack chain.
CrowdStrike said Famous Chollima conducted a supply-chain campaign in January and February targeting cryptocurrency and blockchain companies. The operation used trojanized GitHub repositories with hidden malicious scripts that executed commands when opened, giving the actor access to developer environments.
CrowdStrike said one LLMJacking campaign abused a victim's cloud-based LLM to generate nearly 200,000 API requests in two minutes. The company said the misuse caused large-scale financial and operational impact, highlighting AI credentials and models as active attack targets.
CrowdStrike said China-linked groups including Vault Panda and Genesis Panda launched attacks within 24 hours of vulnerability disclosure. The report cited this as evidence that AI is accelerating vulnerability weaponization.
CrowdStrike said threat hunters suspect Stardust Chollima, also known as Sapphire Sleet, was behind the March Axios supply-chain attack. The report presented this as a suspected attribution rather than a confirmed finding.
OpenAI said it banned accounts associated with Vixen and Keyhole Panda, threat actors publicly attributed to the People's Republic of China. According to the notice, the accounts used AI for vulnerability research, scripting, translation, and operational troubleshooting.
OpenAI said it banned accounts potentially associated with publicly reported DPRK-affiliated threat actors. The accounts had allegedly used AI to research intrusion tooling, phishing, malware, and cryptocurrency targeting.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
9 references tracked. Mallory keeps watching after this page renders.
zdnet.fr
Open sourcezdnet.com
Open sourcecyberscoop.com
Open sourcetheregister.com
Open sourcecrowdstrike.com
Open sourcecrowdstrike.com
Open sourceatlas.mitre.org
Open sourceopenai.com
Open sourceopenai.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.