2 Sources
[1]
Sophos Finds AI Is Transforming Cybercrime with Faster Attack Cycles
The report finds that AI's most immediate impact on cybercrime is speed, as well as a rise in attacks using identity as the primary initial access vector (IAV), rather than inventing new attack types at this stage. Sophos released its AI Security 2026 Report, finding that attackers are operationalizing artificial intelligence (AI) to collapse attack workflows from weeks to days. The report finds that AI's most immediate impact on cybercrime is speed, as well as a rise in attacks using identity as the primary initial access vector (IAV), rather than inventing new attack types at this stage. "Attackers still need initial access, still move laterally, and still exfiltrate through observable channels. What has changed is the clock," said John Peterson, Chief Technology Officer, Sophos. "For the first time we have observed AI being actively used as an operational force multiplier. While the tools and techniques were familiar, the speed of development, testing, and iteration was materially different. That is the AI threat that security teams need to prepare against. It means faster cycles and shorter windows to respond, with greater pressure on defenders to detect and contain activity before impact." Key findings from the Sophos 2026 AI Security Report The threat actor was running a software development operation inside a customer's network and using approximately 12 AI agents to write and test attacks against endpoint agents, including Sophos, CrowdStrike, and Microsoft Defender. They produced nearly 80 modules and more than 70 evasion techniques and turned what would have taken a human weeks into a few days. This dramatically accelerated the timeline of attack techniques reaching operational readiness. This intelligence collection effort meant that we could stay ahead of the threat, defeating attacks before they made it into the wild. Attackers are creating new pathways into enterprise networks by compromising OAuth tokens, AI service credentials, developer tools, and exposed AI infrastructure. This demonstrates that AI is now as much an identity, governance, and supply chain issue as it is a model security issue. This is also reflected in the recent Sophos 2026 State of Ransomware report which showed that, for the first time in more than three years, identity has become the primary IAV. Incidents highlighted in the report include an AI-themed investment scam which drew a UK-based victim into a fake AI-powered investment platform through months of AI-themed lessons and coordinated messaging. The victim ultimately lost hundreds of thousands of pounds. AI development infrastructure is also being targeted directly with attacks involving compromised developer tools and credential-stealing malware. Supply chain risks around model weights, training data provenance, MCP servers and inference infrastructure are also becoming more prolific. "This report makes clear that AI security is no longer just about model behavior or speculative future risks. AI is actively being absorbed into criminal workflows and social engineering operations, as well as into enterprise software development and identity systems within legitimate organisations. That means the threat is in the here and now," said Peterson. "As frontier models continue to advance, the next few months will be defined by how quickly organizations can govern AI use, secure the identities and connections around it, and keep pace with attackers who are capable of rapidly adopting new capabilities." The report is based on findings from Sophos X-Ops Managed Detection and Response (MDR) casework, SophosLabs analysis, Sophos Counter Threat Unit (CTU) intelligence, Sophos AI research, and endpoint and network observations across more than 625,000 customers worldwide.
[2]
Sophos AI Security Report Highlights Compressed Attack Timelines and Risks of Ungoverned AI Identities
Sophos AI Security 2026 report finds attackers are moving beyond experimentation and operationalizing AI for attacks Sophos today released its AI Security 2026 Report, finding that attackers are operationalizing artificial intelligence (AI) to collapse attack workflows from weeks to days. The report finds that AI's most immediate impact on cybercrime is speed, as well as a rise in attacks using identity as the primary initial access vector (IAV), rather than inventing new attack types at this stage. "Attackers still need initial access, still move laterally, and still exfiltrate through observable channels. What has changed is the clock," said John Peterson, Chief Technology Officer, Sophos. "For the first time we have observed AI being actively used as an operational force multiplier. While the tools and techniques were familiar, the speed of development, testing, and iteration was materially different. That is the AI threat that security teams need to prepare against. It means faster cycles and shorter windows to respond, with greater pressure on defenders to detect and contain activity before impact." Key findings from the Sophos 2026 AI Security Report * AI is compressing attack timelines and accelerating operational readiness. * Enterprise AI identities, OAuth tokens, agents, APIs, and development tools are becoming high-value targets. * AI-assisted social engineering and deepfakes are now operational tools. * Threat actors are incorporating AI into underground markets, recruitment, prompt engineering, jailbreaking, malware development workflows, and criminal services. * AI development infrastructure and supply chains are being targeted. AI in the hands of attackers In one of the report's most significant findings, Sophos uncovered a campaign tracked as STAC6994, actively using AI to drive their operations; one of the first provable demonstrations of this happening. The threat actor was running a software development operation inside a customer's network and using approximately 12 AI agents to write and test attacks against endpoint agents, including Sophos, CrowdStrike, and Microsoft Defender. They produced nearly 80 modules and more than 70 evasion techniques and turned what would have taken a human weeks into a few days. This dramatically accelerated the timeline of attack techniques reaching operational readiness. This intelligence collection effort meant that we could stay ahead of the threat, defeating attacks before they made it into the wild. AI identities become a new attack surface The report identifies enterprise AI adoption as the fastest-growing source of new exposure. As coding agents, assistants, and open-weight models take on privileged access to core systems, attackers are targeting the trust, credentials and access permissions surrounding these systems. As a result, AI identities, agents, OAuth connections, and API keys are increasingly becoming a high-value attack surface, and governance is not keeping pace. Attackers are creating new pathways into enterprise networks by compromising OAuth tokens, AI service credentials, developer tools, and exposed AI infrastructure. This demonstrates that AI is now as much an identity, governance, and supply chain issue as it is a model security issue. This is also reflected in the recent Sophos 2026 State of Ransomware report which showed that, for the first time in more than three years, identity has become the primary IAV. AI-powered social engineering and deepfakes become operational AI-assisted social engineering and deepfakes are making scams more scalable, more convincing across languages, and significantly cheaper to produce. Incidents highlighted in the report include an AI-themed investment scam which drew a UK-based victim into a fake AI-powered investment platform through months of AI-themed lessons and coordinated messaging. The victim ultimately lost hundreds of thousands of pounds. AI development infrastructure is also being targeted directly with attacks involving compromised developer tools and credential-stealing malware. Supply chain risks around model weights, training data provenance, MCP servers and inference infrastructure are also becoming more prolific. "This report makes clear that AI security is no longer just about model behavior or speculative future risks. AI is actively being absorbed into criminal workflows and social engineering operations, as well as into enterprise software development and identity systems within legitimate organisations. That means the threat is in the here and now," said Peterson. "As frontier models continue to advance, the next few months will be defined by how quickly organizations can govern AI use, secure the identities and connections around it, and keep pace with attackers who are capable of rapidly adopting new capabilities." The report is based on findings from Sophos X-Ops Managed Detection and Response (MDR) casework, SophosLabs analysis, Sophos Counter Threat Unit (CTU) intelligence, Sophos AI research, and endpoint and network observations across more than 625,000 customers worldwide.
Share
Copy Link
Sophos released its AI Security 2026 Report showing attackers are operationalizing AI to collapse attack workflows from weeks to days. The report documents the first provable case of threat actors using approximately 12 AI agents to develop nearly 80 attack modules and 70 evasion techniques, dramatically accelerating operational readiness while targeting AI identities and enterprise infrastructure.
Sophos has released its AI Security 2026 Report, revealing that cybercrime is undergoing a fundamental shift as attackers operationalize artificial intelligence to compress attack timelines from weeks to mere days
1
2
. The research, based on findings from Sophos X-Ops MDR casework, SophosLabs analysis, and observations across more than 625,000 customers worldwide, demonstrates that AI security threats are no longer speculative but actively deployed in criminal operations1
. "Attackers still need initial access, still move laterally, and still exfiltrate through observable channels. What has changed is the clock," said John Peterson, Chief Technology Officer at Sophos2
.
Source: CXOToday
In one of the report's most significant findings, Sophos uncovered campaign STAC6994, representing one of the first provable demonstrations of attackers actively using AI agents to drive operations
2
. The threat actor operated a software development operation inside a customer's network, deploying approximately 12 AI agents to write and test attacks against endpoint security tools including Sophos, CrowdStrike, and Microsoft Defender1
. These AI agents produced nearly 80 modules and more than 70 evasion techniques, turning what would have taken human operators weeks into just a few days2
. This dramatically accelerated timeline means security teams face shorter windows to detect and contain activity before impact, with greater pressure on defenders to respond to compressed attack timelines.The report identifies enterprise AI adoption as the fastest-growing source of new exposure, with ungoverned AI identities becoming a critical vulnerability
2
. As coding agents, assistants, and open-weight models gain privileged access to core systems, attackers are targeting OAuth tokens, AI service credentials, developer tools, and exposed AI infrastructure1
. This demonstrates that AI security is now as much an identity, governance, and supply chain issue as it is a model security issue2
. The shift is also reflected in the recent Sophos 2026 State of Ransomware report, which showed that for the first time in more than three years, identity has become the primary initial access vector1
.
Source: DT
Related Stories
AI-assisted social engineering and deepfakes are making scams more scalable, convincing across languages, and significantly cheaper to produce
2
. The report highlights an AI-themed investment scam that drew a UK-based victim into a fake AI-powered investment platform through months of coordinated messaging and AI-themed lessons, ultimately resulting in losses of hundreds of thousands of pounds1
. Threat actors are incorporating AI into underground markets, recruitment, prompt engineering, jailbreaking, malware development workflows, and criminal services2
.AI development infrastructure is being targeted directly with attacks involving compromised developer tools and credential-stealing malware
1
. Supply chain risks around model weights, training data provenance, MCP servers, and inference infrastructure are becoming more prolific2
. "As frontier models continue to advance, the next few months will be defined by how quickly organizations can govern AI use, secure the identities and connections around it, and keep pace with attackers who are capable of rapidly adopting new capabilities," Peterson noted1
. Organizations must prioritize securing AI identities, implementing robust governance frameworks, and monitoring for signs of AI-accelerated attacks to stay ahead of threats that are already operational.Summarized by
Navi
02 Jan 2026•Technology

03 Jan 2025•Technology

12 May 2026•Technology

1
Technology

2
Policy and Regulation

3
Science and Research
