Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
CybersecurityManagementSecurity & Business Resilience

Education & Training

5 AI Attack Patterns Organizations Can’t Ignore

The default assumption should be not to trust AI inputs.

By Etay Maor
AI robots
Image: Aphithana Chitmongkolthong / iStock / Getty Images Plus / Via Getty Images
August 21, 2026

Artificial intelligence (AI) technology is changing trust, access, execution, and methods of deception. With 88% of organizations using AI in at least one business function, associated risks have snowballed into a clear and present danger. As AI-driven risks continue to evolve, security teams must learn to stay ahead of the attack patterns.

1. Document Forgery is a Low-Effort Attack Path

Synthetic document fraud is a fast-spreading disease. AI image systems like ChatGPT have made it easy to create sensitive documents like passports, IDs, receipts, and supporting records. The problem isn’t that fake documents look genuine, but that we are seeing the rise of zero-knowledge threat actors create forgeries with a few prompts and little effort. Such AI-driven forgeries put pressure on onboarding, KYC, vendor validation, and approval workflows that still treat documents as a sign of trust. An attacker only needs a foot in the door, and if a document looks authentic enough to move a step further into the system, the attacker has gained ground.

2. Malicious AI Services Making Cybercrime Scalable

When large language models (LLMs) appeared on the scene, they were just another attack vector criminals could exploit to launch attacks. But criminals soon realized that mainstream LLMs have comprehensive guardrails. This disappointment was short-lived with the arrival of uncensored GenAI tools such as WormGPT, which enable malicious operations at scale. After the shutdown of WormGPT, other variants entered, such as Grok, Mixtral AI, and Kawai GPT. There is no dearth of malicious AI services that can help criminals generate phishing lures, impersonate content, or produce malicious code at scale.

“As AI becomes more deeply embedded across diverse functions such as operations, finance, and marketing, the boundaries between untrusted external and internal inputs begin to blur.”

3. The Rise of “Living off AI” Attacks

As AI becomes more deeply embedded across diverse functions such as operations, finance, and marketing, the boundaries between untrusted external and internal inputs begin to blur. An AI model can be compromised by placing malicious instructions inside content that enables AI workflows. This can happen through a malicious support request, message, or document submitted from the outside and ingested via an AI-connected tool. The AI model interprets instructions as actionable context and executes it with legitimate internal permissions. The attacker can use the organization’s own AI workflow against itself to expose sensitive data and manipulate critical internal systems.

4. The Evolved Nature of Prompt Injections

An indirect prompt injection attack, as seen in techniques like HashJack, is yet another cause for concern. It is like visiting your trusted neighborhood store, buying things without a second thought, then later realizing the invoice was padded. The attack surface is no longer limited to malicious web pages but also includes trusted web interactions. In a technique like HashJack, a set of harmful instructions is hidden after the # symbol in a legitimate URL. The site is genuine, and the link looks harmless, but the AI browser assistant can ingest those hidden instructions.

5. Trusted AI Extensions Co-opted in Attacks

Weaponization of trusted AI extensions, illustrated by the abuse of Claude Skills, is becoming an execution-layer risk when users are allowed to install or approve code modules that extend the model’s capabilities. Here, a legitimate “skill” can be modified with minor edits to hide malicious behavior; because it looks safe, it passes routine review. Users believe they are enabling a useful capability but unwittingly set the stage for this corrupted ”skill” to deliver malicious code.

Risks of AI in Business Functions
Image: Isasoulart / iStock / Getty Images Plus / Via Getty Images

 

Security AI Inputs and Agent Interactions

The default assumption should be not to trust AI inputs. In practical terms, this means all prompts, attachments, URLs, copied text, and important context must be validated, sanitized, and contextually isolated before they can influence an AI workflow.

Organizations also need a governance framework that accounts for the widespread adoption of AI, one that helps build a definitive inventory of AI-enabled tools, map the processes in which these are embedded, and identify critical integrations. This helps define human oversight and approval requirements for high-risk AI actions, including systemic changes, data exports, and similar activities. Finally, it is imperative not to rely on visual or content-based signals alone, and to strengthen document verification, validation, and anomaly detection.

KEYWORDS: artificial intelligence (AI) cyber attack data breach insider threats threat actor

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Etay maor

Etay Maor is the Senior Director of Security Strategy for Cato Networks. Previously, Maor was the Chief Security Officer for IntSights, where he led strategic cybersecurity research and security services. Maor has also held senior security positions at IBM, where he created and led breach response training and security research, and RSA Security’s Cyber Threats Research Labs, where he managed malware research and intelligence teams. Maor is an adjunct professor at Boston College and is part of Call for Paper (CFP) committees for the RSA Conference and QuBits Conference. He holds a BA in Computer Science and a MA in Counter-Terrorism and Cyber-Terrorism.

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Cyber tech background

    Security’s Top Cybersecurity Leaders 2026

    Security magazine’s Top Cybersecurity Leaders 2026 award...
    Top Cybersecurity Leaders
  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Career Intelligence
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the Security audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of Security or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • Northland Controls sponsored content
    Sponsored byNorthland Controls

    The Execution Gap: Why Great Security Design Doesn't Always Deliver Great Security

Popular Stories

security

6 Crisis Response Best Practices (That Actually Hold Up When Things go Sideways)

Photograph of apartment complex patios

Enhancing Residential Building Security

Blurry photo of people moving through the mall

Violence Remains Top Concern for Retailers

5 Minutes with Johnson

Can Organizations Trust Their Own AI?

Patient in bed

When Cyberattacks Hit Medical Devices, Patients Pay the Price

Kaseware sponsored webinar
Schneider Electric sponsored webinar

Events

August 25, 2026

Critical Infrastructure Security Is National Security: Protecting Essential Operations in an Era of Escalating Risk

LIVE: August 25, 2026 at 2 PM EDT Learn why critical infrastructure security has become a national security imperative, and the strategies organizations can adopt to improve visibility, collaboration, and response across their security operations.

August 27, 2026

Leveraging AI & Mobility to Advance Your Security Domain

LIVE: August 27, 2026 at 2 PM EDT Explore how AI-driven cloud security solutions can elevate your security domain enhancing threat detection, streamlining operations, and delivering the resilience modern organizations demand.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products


Alertmedia sponsored webinar

Related Articles

  • Healthcare Data Compliance: Maintaining Integrity, Privacy and Security

    Why hospitals can’t ignore this cybersecurity awareness month

    See More
  • Healthcare Data Compliance: Maintaining Integrity, Privacy and Security

    Three Reasons Healthcare CISOs Can’t Ignore Vendor Compliance

    See More
  • Glasses in front of coding on screen

    The Good Hackers Security Leaders Can’t Afford to Ignore

    See More

Related Products

See More Products
  • High-Rise Security and Fire Life Safety, 3rd edition

  • contemporary.jpg

    Contemporary Security Management, 4th Edition

See More Products
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2026. All Rights Reserved BNP Media, Inc. and BNP Media II, LLC.

Design, CMS, Hosting & Web Development :: ePublishing