{"691203":{"#nid":"691203","#data":{"type":"news","title":"AI Is Rewriting Cybersecurity\u0027s Rules","body":[{"value":"\u003Ch2\u003E\u003Cstrong\u003ETop 3 Takeaways\u003C\/strong\u003E\u003C\/h2\u003E\u003Cul\u003E\u003Cli class=\u0022ck-list-marker-bold\u0022 data-list-item-id=\u0022eeb89add9349ec415091fe31ebaa1343a\u0022\u003E\u003Cstrong\u003EAI is accelerating cyberattacks.\u003C\/strong\u003E\u003C\/li\u003E\u003Cli class=\u0022ck-list-marker-bold\u0022 data-list-item-id=\u0022edd916d25ee1c6dac5bbbe6ebba43c535\u0022\u003E\u003Cstrong\u003EThe same technology can strengthen defenses.\u003C\/strong\u003E\u003C\/li\u003E\u003Cli class=\u0022ck-list-marker-bold\u0022 data-list-item-id=\u0022ec76b0f5b2756d385f2e78000e51dc367\u0022\u003E\u003Cstrong\u003EThe biggest risk is falling behind.\u003C\/strong\u003E\u003C\/li\u003E\u003C\/ul\u003E\u003Cp\u003EArtificial intelligence is changing cybersecurity on both sides of the battlefield. The technology helping organizations improve efficiency also enables cybercriminals to identify vulnerabilities, develop exploits, and launch attacks at unprecedented speed.\u003C\/p\u003E\u003Cp\u003EResearchers in the School of Cybersecurity and Privacy (SCP) say the greatest concern is not that AI is creating entirely new forms of cyberattacks. Instead, it is accelerating activities that attackers already perform, making existing threats quicker, cheaper, and harder to stop.\u003C\/p\u003E\u003Cp\u003E\u0022AI is dramatically speeding up cyberattacks,\u0022 said\u0026nbsp;\u003Ca href=\u0022https:\/\/saltaformaggio.ece.gatech.edu\/\u0022\u003EBrendan Saltaformaggio\u003C\/a\u003E, associate professor in the SCP and the School of Electrical and Computer Engineering (ECE). \u0022AI can identify vulnerabilities far faster than humans and often in places humans wouldn\u0027t think to look.\u0022\u003C\/p\u003E\u003Ch2\u003E\u003Cstrong\u003EHackers Are Moving Faster\u003C\/strong\u003E\u003C\/h2\u003E\u003Cp\u003EMost cyberattacks include several stages: finding vulnerabilities, developing ways to exploit them, gaining access to systems, and pursuing a goal such as stealing information or disrupting operations. According to\u0026nbsp;\u003Ca href=\u0022https:\/\/www.cc.gatech.edu\/people\/frank-li\u0022\u003EFrank Li\u003C\/a\u003E, associate professor in the SCP and ECE, AI is having its biggest impact on the early phases of that process.\u003C\/p\u003E\u003Cp\u003E\u0022AI can help attackers explore potential decisions and implement attacks faster than in the past, whether it\u0027s identifying software bugs or constructing social engineering hooks,\u0022 Li said.\u003C\/p\u003E\u003Cp\u003EThe pace of attacks has already changed dramatically.\u0026nbsp;\u003Ca href=\u0022https:\/\/www.scheller.gatech.edu\/directory\/faculty\/swire\/index.html\u0022\u003EPeter Swire\u003C\/a\u003E, J.Z. Liang Chair in the SCP and professor of law and ethics in the Scheller College of Business, says attackers are moving from vulnerability discovery to exploitation much faster than in the past.\u003C\/p\u003E\u003Cp\u003E\u0022The average time until an exploit is detected even a couple of years ago was measured in months,\u0022 Swire said. \u0022Now it is measured in hours.\u0022\u003C\/p\u003E\u003Cp\u003EThat compressed timeline is forcing organizations to rethink how quickly they identify, prioritize, and patch vulnerabilities.\u003C\/p\u003E\u003Ch2\u003E\u003Cstrong\u003EThe Risk Reaches Everyone\u003C\/strong\u003E\u003C\/h2\u003E\u003Cp\u003EHealthcare systems, critical infrastructure providers, government agencies, and small businesses remain attractive targets because they often manage sensitive information or essential services while relying on legacy technology. But experts emphasize that no organization is immune.\u003C\/p\u003E\u003Cp\u003E\u0022Unfortunately, everyone is at risk,\u0022 Saltaformaggio said. \u0022AI is not creating new victims; AI is making attackers faster and more effective at targeting the same organizations they have always pursued.\u0022\u003C\/p\u003E\u003Cp\u003EOrganizations with outdated systems or limited cybersecurity resources face particular challenges because AI allows attackers to identify weaknesses in less time and at lower cost than ever before.\u003C\/p\u003E\u003Ch2\u003E\u003Cstrong\u003EFighting AI With AI\u003C\/strong\u003E\u003C\/h2\u003E\u003Cp\u003ECybersecurity defenders also have access to the same technology.\u003C\/p\u003E\u003Cp\u003EExperts say AI can strengthen defenses before, during, and after a cyberattack. Defenders can use AI to identify and patch vulnerabilities more quickly, reducing opportunities for attackers to gain access. AI can also detect subtle signs of intrusion by correlating activity across networks and recognizing patterns that would be difficult for humans to spot in real time.\u003C\/p\u003E\u003Cp\u003EOnce an attack occurs, AI can support rapid investigation and response by analyzing how the compromise happened, identifying root causes, and helping deploy targeted protections.\u003C\/p\u003E\u003Cp\u003E\u0022AI can help defenders in every step of stopping a cyberattack,\u0022 Saltaformaggio said.\u003C\/p\u003E\u003Cp\u003EResearchers at Georgia Tech are already demonstrating AI\u0027s defensive potential. Saltaformaggio pointed to Georgia Tech\u0027s recent success in the Defense Advanced Research Projects Agency\u2019s (DARPA)\u0026nbsp;\u003Ca href=\u0022https:\/\/www.gatech.edu\/news\/2025\/08\/11\/georgia-tech-makes-history-wins-darpa-challenge\u0022\u003EArtificial Intelligence Cyber Challenge\u003C\/a\u003E, which highlighted how AI systems can autonomously discover and reason about software vulnerabilities at large scale. Swire also noted that a Georgia Tech team led by Professor Taesoo Kim won a $4 million DARPA prize for developing advanced AI-based cybersecurity defenses.\u003C\/p\u003E\u003Ch2\u003E\u003Cstrong\u003ESpeed Is the New Defense\u003C\/strong\u003E\u003C\/h2\u003E\u003Cp\u003EDespite the promise of AI-powered security, significant challenges remain. Security teams need AI tools they can trust, ones that explain how they reached conclusions and provide evidence that analysts can verify. Attackers may also attempt to manipulate AI systems, creating new risks for organizations that rely heavily on automated tools.\u003C\/p\u003E\u003Cp\u003ELi says organizations cannot rely on traditional, human-paced security processes to keep up.\u003C\/p\u003E\u003Cp\u003E\u0022AI\u0027s primary impact on cyberattacks is enhancing speed and scale,\u0022 Li said. \u0022Organizations need to adapt to more agile defenses and processes that account for this, in many cases relying on AI as well to help speed up defensive actions.\u0022\u003C\/p\u003E\u003Cp\u003EOrganizations also need to rethink how they respond to vulnerabilities. Swire argues that traditional patch management is no longer fast enough in a world where exploits can emerge within hours.\u003C\/p\u003E\u003Cp\u003E\u0022The entire process for patching systems will have to be re-engineered,\u0022 he said.\u003C\/p\u003E\u003Cp\u003EThe cybersecurity landscape has always been an arms race between attackers and defenders. AI hasn\u0027t changed that reality. It has simply accelerated it. The organizations that will be best positioned are those that adopt AI as quickly as the adversaries they are trying to stop.\u003C\/p\u003E","summary":"","format":"limited_html"}],"field_subtitle":"","field_summary":[{"value":"\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cdiv\u003E\u003Cp\u003EArtificial intelligence is reshaping cybersecurity by accelerating how quickly cybercriminals can identify vulnerabilities, develop exploits, and launch attacks. Georgia Tech cybersecurity experts warn that AI is not creating entirely new threats but making existing cyberattacks faster, cheaper, and more difficult to stop. At the same time, AI-powered cybersecurity tools can help organizations detect vulnerabilities, strengthen defenses, and respond to incidents in real time. As AI-driven cyber threats continue to evolve, organizations that adopt AI-based security strategies will be better positioned to protect critical systems, data, and infrastructure.\u003C\/p\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E\u003C\/div\u003E","format":"limited_html"}],"field_summary_sentence":[{"value":"AI is giving cybercriminals new speed and scale, but researchers say the technology could also become one of cybersecurity\u2019s strongest defenses."}],"uid":"35798","created_gmt":"2026-07-21 18:44:13","changed_gmt":"2026-07-21 19:04:11","author":"Ayana Isles","boilerplate_text":"","field_publication":"","field_article_url":"","location":"Atlanta, GA","dateline":{"date":"2026-07-21T00:00:00-04:00","iso_date":"2026-07-21T00:00:00-04:00","tz":"America\/New_York"},"extras":[],"hg_media":{"680638":{"id":"680638","type":"image","title":"Cybersecurity and AI","body":null,"created":"1784659059","gmt_created":"2026-07-21 18:37:39","changed":"1784659173","gmt_changed":"2026-07-21 18:39:33","alt":"man sitting at computer doing programming. ","file":{"fid":"264927","name":"AdobeStock_480884598.jpeg","image_path":"\/sites\/default\/files\/2026\/07\/21\/AdobeStock_480884598.jpeg","image_full_path":"http:\/\/hg.gatech.edu\/\/sites\/default\/files\/2026\/07\/21\/AdobeStock_480884598.jpeg","mime":"image\/jpeg","size":925220,"path_740":"http:\/\/hg.gatech.edu\/sites\/default\/files\/styles\/740xx_scale\/public\/2026\/07\/21\/AdobeStock_480884598.jpeg?itok=U06hGV0R"}}},"media_ids":["680638"],"groups":[{"id":"1214","name":"News Room"},{"id":"1188","name":"Research Horizons"}],"categories":[{"id":"153","name":"Computer Science\/Information Technology and Security"}],"keywords":[{"id":"2835","name":"ai"},{"id":"9641","name":"Cyber Threats"},{"id":"194393","name":"AI and Cybersecurity"},{"id":"1404","name":"Cybersecurity"},{"id":"194701","name":"go-resarchnews"}],"core_research_areas":[{"id":"193655","name":"Artificial Intelligence at Georgia Tech"}],"news_room_topics":[{"id":"71881","name":"Science and Technology"}],"event_categories":[],"invited_audience":[],"affiliations":[],"classification":[],"areas_of_expertise":[],"news_and_recent_appearances":[],"phone":[],"contact":[{"value":"\u003Cp\u003E\u003Ca href=\u0022mailto:aisles3@gatech.edu\u0022\u003E\u003Cstrong\u003EAyana Isles\u003C\/strong\u003E\u003C\/a\u003E\u003Cbr\u003ESenior Media Relations Representative\u0026nbsp;\u003Cbr\u003EInstitute Communications\u003C\/p\u003E","format":"limited_html"}],"email":[],"slides":[],"orientation":[],"userdata":""}}}