OpenAI and Anthropic warn AI-enabled cyberattacks will scale within months
OpenAI, Anthropic, and over 100 technology and financial firms have issued an open letter warning that AI-enabled cyberattacks are expected to scale significantly in the coming months. The signatories urge critical infrastructure operators and technology vendors to prioritize defensive tooling, threat intelligence sharing, and improved security standards to mitigate risks from automated exploitation.
Key Takeaways
- Signatories include major cloud providers Google, Microsoft, and Amazon Web Services alongside financial giants like Visa and Mastercard.
- Attackers currently exploit 88% of new public vulnerabilities within 48 hours, a window expected to shrink as AI automates exploit chaining.
- The letter identifies hospitals, water treatment plants, and internet infrastructure as the assets at highest risk from automated threats.
- Signatories call for immediate leadership priority on security debt, including clearing high-risk misconfigurations and raising standards for AI-generated code.
Why It Matters
The immediate implication is a shift in the economics of cyber defense, where AI agents can surface and exploit vulnerabilities faster than human teams can patch them. For the streaming and technology ecosystem, this heightens the risk for content delivery networks and data centers that underpin global distribution. While the warning is dire, the lack of specific spending commitments or deadlines from the 100-plus signatories suggests the industry is still in a rhetorical phase of coordination. Watch for whether frontier developers like OpenAI and Anthropic release specific defensive tooling or funding for critical infrastructure as a follow-up to this collective warning.
Additional Context
OpenAI and Anthropic have been building defensive security capabilities alongside their frontier model releases. In early 2025, OpenAI launched a dedicated cybersecurity team focused on adversarial AI threats and red-teaming its own models, signaling that the company views AI-powered offense as a near-term operational risk rather than a distant concern. Anthropic has similarly invested in safety research around model misuse, publishing red-team evaluations that assess whether its Claude models can be coerced into generating exploit code or reconnaissance scripts. The open letter represents a shift from individual company efforts to a coordinated industry stance, with signatories spanning cloud providers, financial institutions, and security vendors.
The regulatory and policy dimension is intensifying. In July 2025, the U.S. Cybersecurity and Infrastructure Security Agency issued guidance urging critical infrastructure operators to assess AI-accelerated threat vectors, recommending that organizations adopt automated patching and continuous vulnerability scanning to keep pace with machine-speed exploitation. The European Union's AI Act, which entered full enforcement in August 2025, classifies certain AI systems used in critical infrastructure as high-risk, imposing transparency and security requirements that could intersect with the defensive tooling the coalition advocates. Meanwhile, CrowdStrike reported in its 2025 Global Threat Report that AI-assisted phishing campaigns increased 260% year over year, providing quantitative backing to the coalition's warning about scaling attack volumes.
On the technical side, security vendors are racing to deploy AI-native detection and response platforms. Palo Alto Networks announced in June 2025 that its Cortex XSIAM platform had achieved autonomous triage of 85% of security alerts across enterprise deployments, reducing mean-time-to-respond from hours to minutes. Cloudflare has integrated machine-learning-based anomaly detection into its CDN and edge security stack, a relevant capability for streaming platforms that rely on content delivery networks for distribution. Noma Security, one of the letter's signatories, raised $30 million in Series A funding in May 2025 to build AI-specific security tooling that monitors model inputs and outputs for prompt injection and data exfiltration attempts, addressing a threat class that traditional security tools are not designed to catch.
Read full article at siliconangle.com
Enjoy our coverage?
Add StreamingMeme as a preferred source on Google to see more of our streaming news at the top of your Search results.
Add as preferred source