WASHINGTON: More than 100 of the world’s biggest technology, cybersecurity and financial companies have issued an urgent warning that AI-powered cyberattacks could become significantly more widespread and sophisticated within months, calling for governments and businesses to strengthen digital defenses before increasingly capable artificial-intelligence models reshape the threat landscape.
The coalition includes OpenAI, Microsoft, Anthropic, Google, Amazon Web Services, IBM, Cloudflare and CrowdStrike, alongside companies including Cisco, Oracle, Palo Alto Networks, Visa and Mastercard. (SiliconANGLE)
AI Could Dramatically Lower the Barrier for Hackers
The open letter, released on August 27, argues that rapidly improving AI models could give attackers access to sophisticated cybersecurity capabilities that previously required highly trained specialists.
Rather than requiring AI to invent entirely new hacking techniques, the immediate danger is its ability to automate reconnaissance, identify vulnerabilities, generate exploitation code and combine existing attack methods at machine speed. That could allow smaller and less-skilled groups to conduct attacks that once demanded considerably more expertise and resources.
The companies warn that organizations have only a limited period in which to strengthen their systems before these capabilities become more broadly accessible.
Hospitals and Critical Infrastructure Face Particular Risk
Among the biggest concerns is the vulnerability of critical infrastructure.
The letter specifically points to systems that communities depend on—including hospitals, water-treatment facilities and infrastructure supporting the internet—as areas where successful cyberattacks could cause consequences far beyond stolen corporate information.
Legacy systems remain an important weakness. Organizations continue to operate software containing old vulnerabilities, weak authentication, excessive user permissions, misconfigurations and other forms of accumulated security debt.
AI could allow attackers to discover and exploit those weaknesses far faster.
More Than 100 Companies Call for Coordinated Defense
The unusually broad coalition says the response cannot come from cybersecurity companies alone.
Businesses are being urged to make cyber defense an immediate leadership priority, eliminate high-risk vulnerabilities and apply stronger security standards to AI-generated software.
Technology and cybersecurity vendors are being encouraged to test their products against the capabilities of advanced AI models and make effective defensive tools more accessible to critical-infrastructure operators.
Governments, meanwhile, are being asked to coordinate cybersecurity efforts at the local, national and international levels and provide greater support for protecting essential services.
Advanced AI Access for Cyber Defenders
One of the more significant proposals concerns access to frontier AI models.
The coalition wants developers of advanced models to provide trusted access to vetted cybersecurity organizations, allowing defenders to use cutting-edge AI capabilities to identify vulnerabilities and strengthen systems before criminals can exploit them.
AI developers are also being encouraged to support organizations during active cyber incidents, invest in defensive research and remain accountable for the security of their own AI systems.
This highlights the industry’s central challenge: the same models capable of helping attackers find vulnerabilities can potentially help defenders discover and patch those weaknesses first.
Recent Incidents Add Urgency to Warning
The industry warning arrives amid mounting evidence that AI is already changing cybersecurity.
Earlier in August, U.S. agencies warned that threat actors were using AI-generated exploitation scripts in activity targeting industrial-control technology, including systems used in water, wastewater and manufacturing environments.
Concerns have also intensified following reports about advanced AI models behaving unexpectedly during controlled cybersecurity evaluations, reinforcing questions about how powerful cyber-capable models should be tested and deployed.
Warning Comes Without Binding Commitments
Despite the seriousness of the message, the open letter has an important limitation.
It reportedly contains no binding deadlines, specific spending commitments or measurable targets requiring its signatories to implement the recommendations. Instead, it serves primarily as an industry-wide call for immediate action.
That leaves a major question over how quickly governments, AI developers, cybersecurity companies and operators of critical infrastructure will turn the warning into concrete defensive measures.
AI Cybersecurity Race Enters Critical Phase
The development underscores the increasingly complicated relationship between artificial intelligence and cybersecurity.
AI promises to help security teams analyze enormous amounts of data, discover vulnerabilities, detect suspicious behavior and respond to incidents more quickly. At the same time, those capabilities can potentially be repurposed by attackers.
With frontier models advancing rapidly, more than 100 leading companies are now sending a clear message: the race between AI-powered attackers and AI-powered defenders is accelerating, and organizations should strengthen their defenses before the next generation of cyber threats arrives.
