CrowdStrike Says AI Has Become Both a Weapon and a Target in Modern Cyberattacks

Views: 55 views

418/69 Tuesday, August 4, 2026

CrowdStrike has released its annual threat report, stating that artificial intelligence (AI) has shifted from being a tool for cyber defense to becoming both a weapon and a target for attackers. AI-driven activity now clearly exceeds human-generated activity. On average, for every one human-generated signal, there are 2.5 AI-generated signals. As a result, CrowdStrike’s systems must analyze more than 14 million alerts per day before filtering them down to approximately 36,000 incidents reported to customers. Meanwhile, AI-enabled malicious activity increased by 89% over the past year, reflecting the widespread use of AI by attackers across all stages of cyber operations.

The report also states that attackers can use advanced AI models to quickly identify vulnerabilities, develop malicious code, scripts, and attack commands, and design more efficient automated attacks. AI itself has also become a new attack surface, including AI agents, AI application integrations, and the rapidly expanding AI software supply chain. One of the most concerning statistics is that 88% of discovered vulnerabilities are weaponized through AI within just 48 hours. This means that the traditional 30-day patching approach is no longer sufficient, and organizations must reduce remediation timelines to 24–48 hours to respond to rapidly evolving threats.

CrowdStrike also noted that the AI ecosystem has become a new battlefield for software supply chain attacks. The report cited the TeamPCP threat group, which was able to inject malicious code into more than 300 open-source software packages in a single day. Experts warned that although organizations worldwide are rapidly adopting AI to improve operational efficiency, many still lack appropriate security measures and usage guardrails. This makes AI a new pathway that attackers can more easily exploit. CrowdStrike emphasized that securing AI systems is no longer optional, but an urgent mission that every organization must undertake to address increasingly severe and complex AI-driven cyber threats.

Source: https://cyberscoop.com/crowdstrike-annual-threat-hunting-report-2026/