AI is getting closer to being able to exploit OT, and that's very bad news for critical infrastructure (www.techradar.com)

🤖 AI Summary
Researchers from Forescout have demonstrated that AI can successfully port remote code execution (RCE) exploits to Programmable Logic Controllers (PLCs), achieving both Denial of Service (DoS) attacks and the execution of attacker-supplied ARM shellcode. However, the process required significant human effort and over $500 in API costs, indicating that while AI-driven exploitation of Operational Technology (OT) is theoretically possible, it remains impractical for most criminals at this stage. This finding is noteworthy for the AI/ML community as it highlights the potential for AI to interact with critical infrastructure, though current limitations suggest it is not yet a major threat from typical cybercriminals. The researchers caution, however, that nation-state actors with ample resources may not face the same barriers, as seen in past attacks like Sandworm’s on Poland’s power grid. Therefore, while the immediate risk to OT systems is relatively low, the implications for high-stakes environments remain dire, underscoring the need for enhanced security measures against sophisticated cyber threats.
Loading comments...
loading comments...