AIToday
AI Safety & AlignmentITmedia AI+Published: Oct 8, 2026, 19:01 JST

日立 says attackers use AI; IBM sees no trace

日立 says attackers use AI; IBM sees no trace

3 Key Points

  1. What happened

    Hitachi's Kanako Gushi said attackers are almost certainly using AI, cutting exploit time from weeks to hours. IBM said it found no AI traces in recent incidents, yet argued cheap frontier models mean attackers have no reason not to use AI.

  2. Why it matters

    AI also speeds up defense, with Hitachi cutting threat-model creation from weeks to hours.

WHO IT HITSJapanese enterprises and their security teams — CISOs, SOC analysts and incident responders — face pressure to inventory assets, patch faster and build cyber business-continuity plans, since peers report more SOC and incident-response cases.

Not sure about something? Ask the AI

Questions and answers are published on this page.

Summaries like this, in your inbox every morning.

Context & Analysis

The debate over AI's role in cyberattacks is complicated by a data problem that vendors freely acknowledge. Hitachi declined to disclose individual case counts, Accenture said Japan lacks its own statistical dataset, and IBM noted that published incidents cannot be reliably dated to the month they appear. An unnamed vendor added that reports after September exceeded 70, but some breaches dated back to July and August, inflating the apparent count.

On the defensive side, the four vendors converged on a theme that is decidedly unglamorous: understanding what must not stop, minimizing what is exposed, applying patches and preparing for the assumption of intrusion. Hitachi's Gushi called the combination of AI and human expertise the key to next-generation defense, and argued that defenders cannot keep up without AI. The unnamed vendor framed the constraint as managerial rather than technical, warning that if decisions to act or halt systems do not run smoothly, AI defenses go to waste. Accenture's Fujii said executives increasingly ask whether to prioritize hardening or resilience, suggesting those trade-offs are becoming a board-level question.

FAQ
Are cyberattacks on Japanese companies actually increasing?
Vendors disagreed. Hitachi and Accenture said attacks and response cases are rising, while IBM said it is hard to tell whether incidents occurred recently or were simply disclosed now. An unnamed vendor saw no clear increase.
How does AI help defenders?
Hitachi said AI excels at large-scale code analysis and cut threat-model creation from weeks to hours. Accenture said AI agents can finish vulnerability and source-code checks in days instead of weeks or months. IBM pointed to SOC monitoring, vulnerability detection and patch prioritization.
What should companies do first?
Hitachi and IBM advised mapping assets and prioritizing protection. IBM and an unnamed vendor urged basic measures like patching. Accenture recommended securing externally exposed surfaces and drawing up a cyber BCP, even an imperfect one.

AI news that matters for your work, delivered every morning.

Pick your industry and the AI tools you use, and get news related to your work every day.

Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →

Ask AI

Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.

Questions and answers are published on this page.

Related Articles

Next articleAnthropic leads three-lab AI frontier: Claude does 26% of its R&D