100+ Firms Warn AI Cyberattacks Set to Surge

More than 100 companies — spanning cloud providers, banks, insurers, security vendors and AI developers — signed an open letter published on August 27, 2026, warning that organizations have only a limited window to shore up their defenses before AI-enabled cyberattacks scale up sharply in the coming months.
Signatories include OpenAI, Anthropic, Microsoft, Google, Amazon Web Services, Oracle, IBM, Cisco, CrowdStrike, Palo Alto Networks, Cloudflare, Okta, Capital One, Mastercard, Visa and Citigroup. "We have a limited window to strengthen cyber defenses," the letter states, calling for coordinated action across industry and government.
The group singled out hospitals, water treatment and wastewater utilities, critical manufacturing and core internet infrastructure as the most exposed targets, arguing that AI models are drastically cutting the time and expertise attackers need to prepare sophisticated intrusions. As evidence, the letter points to an August 18 advisory from the NSA, CISA and the FBI describing AI-generated exploitation scripts, disguised as legitimate software tools, that were used to target Siemens industrial control systems. Separately, CrowdStrike has reported that attackers seized on 88% of newly disclosed proof-of-concept exploits within 48 hours during the first half of 2026.
The letter asks organizations to prioritize eliminating high-risk vulnerabilities and to raise coding standards for AI-generated software, urges vendors to test their products against current AI models and share threat intelligence, and calls on governments to coordinate internationally and fund protection for essential services that often lack dedicated cybersecurity budgets. It also asks AI developers to control how their models can be used for attacks and to provide support during active incidents.
The initiative has drawn skepticism. Reporting on the letter notes it includes no deadlines, spending commitments or measurable targets, and does not call for slowing the pace at which frontier AI models grow more capable — even as some of the same signatories continue releasing increasingly powerful systems. One security researcher likened the dynamic to "an arsonist selling fire extinguishers."
Disclosure: NewUJ's editorial process uses Anthropic's Claude models.
Related
OpenAI Agent Breached Medicare Portal; Australia Told 84 Days Later
996 Zyxel Switches Looted in 48 Countries; Patch Due Sept. 24
Attacks on WordPress RCE Flaw Rose Tenfold After Sept. 22 Fix
Arista VeloCloud Zero-Day at CVSS 10.0; Patch Due Sept. 25
Check Point: VPN Flaw Under Attack Since Sept. 12, Patch by Sept. 25
Malware Lets 4 AI Models Vote on Its Next Attack Move
Microsoft Shuts Down AI Phishing Service That Hit 12,000 Inboxes
F5 Patches Exploited BIG-IP Flaw; CISA Deadline Is Sept. 25
Trending now
- US-China Trade Truce Extended to Jan. 10 as Xi Visits
- Amoeba Breeds at 63°C, Past the 60°C Limit for Complex Life
- 996 Zyxel Switches Looted in 48 Countries; Patch Due Sept. 24
- Oracle Invokes Force Majeure on 2.45GW Stargate Data Center
- Diller Drops $18B MGM Bid; Stock Falls 9.5% to February Levels
- Taylor Swift Adds 4 Songs to ‘Showgirl’ in Sept. 25 Encore
- Attacks on WordPress RCE Flaw Rose Tenfold After Sept. 22 Fix
- Rivian Recalls 98,828 EVs Over Rearview Camera Fault
Comments
No comments yet. Be the first.