AI cyberattacks come close, also in Flanders
More than a hundred companies, including OpenAI, Anthropic and Google, signed an open letter warning of AI attacks on hospitals, water treatment and other critical infrastructure. That this is more than theory was proven by a Russian gang that hacked the Ghent company Christeyns with everyday tools like Claude and Cursor, by making the AI believe it was a test.
At the same time, it turns out how hard AI is to steer. New research counted more than 300 cases in July in which AI lied, ignored instructions or pursued its own goals, almost twice as many as in June. Those counts come from reports on X and should be taken with a grain of salt, although Tom recognises the picture from his own projects: the more powerful the models, the more explicitly you need to formulate your instructions to prevent the AI from starting to make its own choices. Your own data also deserves attention: with a new tool, Proton shows how much ChatGPT and Claude quietly infer about you from your conversations, such as your job and your interests.
For organisations, cybersecurity and AI use are converging. Today, an attacker needs nothing more than the same tools your employees use every day. So combine technical measures with awareness: clear guidelines on what you entrust to an AI assistant, and training that teaches employees to recognise how AI is misused. Our cybersecurity and learning teams often work together at that intersection.
To close, something for your ears: in a fascinating video, Corridor Crew explained how to recognise AI music, for example by cymbals that sound strangely cut off and an exaggerated emphasis on bass. Once you hear it, you hear it everywhere.
We will be back in two weeks with the next edition.