AIToday
AI Safety & AlignmentAI Stocks & MarketsAI Business & IndustrySiliconANGLE AIPublished: Sep 3, 2026, 22:03 JST2 min read

AI agents compress cyberattacks to minutes

AI agents compress cyberattacks to minutes

Key takeaway

  • CrowdStrike observed 26 agentic adversaries in 30 days, more than in the prior year.

  • Agentic AI now compresses entire cyberattacks to minutes, not hours.

  • This leaves defenders far less time to respond.

3 Key Points

  1. What happened

    CrowdStrike tracked 26 agentic adversaries in the last 30 days, more than in the prior year, and cites examples like VAULT PANDA running 1,100 commands in 58 minutes and REVENANT SPIDER using an agent in ransomware intrusions.

  2. Why it matters

    Agentic AI is now part of extortion campaigns, espionage, and hacktivism, compressing the entire intrusion timeline from start to finish into minutes—far shorter than the average 29-minute breakout time (fastest 27 seconds) from CrowdStrike's global threat report.

  3. What to watch

    CrowdStrike collaborated with law enforcement on the Sality botnet disruption, a decade-long effort against a network operating for 23 years, signaling increased collective action against AI-driven threats.

Ask the AI about this article →

Context & Analysis

The shift from debating AI adoption by attackers to observing its active use marks a significant change in the threat landscape. CrowdStrike's tracking of 26 agentic adversaries in 30 days—more than in the previous year—indicates that AI is no longer experimental but operational. The compression of attack timelines to minutes, as seen with VAULT PANDA, underscores the challenge for defenders who previously had hours to respond.

This speed advantage is not just about new techniques but about automating the entire intrusion process. The reference to the average breakout time of 29 minutes from the global threat report highlights how even the fastest human-led attacks are now being outpaced by AI agents that can learn and adapt in real time.

The collaboration with law enforcement on the Sality botnet disruption, after a decade of effort against a network that ran for 23 years, suggests that defenders are seeking collective action to counter these threats. Meyers' call to 'raise the cost of doing business' for attackers reflects a strategic shift toward proactive measures, though the full impact of such efforts remains to be seen.

FAQ

What is an 'agentic adversary'?
An agentic adversary is an AI agent used in cyber intrusions, such as ransomware operations, as seen with groups like REVENANT SPIDER.
How fast can these AI-driven attacks happen?
According to CrowdStrike, an entire intrusion operation can be conducted in minutes, exemplified by VAULT PANDA executing 1,100 commands in 58 minutes.
SiliconANGLE AIRead Original Article

Get the latest AI Safety & Alignment news every morning

For example, today's edition would include:

  • AI-driven bioterrorism threat draws warningsSemafor Tech · 2h ago
  • Open-weight AI models lower the bar for cyberattacksITmedia AI+ · 11h ago
  • AI voice fraud costs ¥4.5B, ex-police warnsITmedia AI+ · 11h ago

AI-summarized, only the topics you pick — one digest a day via Email, Slack, or Discord.

Free · takes 30 seconds · unsubscribe anytimeWhat is AIToday? →

Ask AI

Ask AI anything about this article. Q&As are published on this page for other readers too.

Related Articles

Next articleSanDisk pushes HBF ecosystem as AI inference grows