Google GTIG Reports Shift in AI Misuse by Cyber Adversaries

Google GTIG Reports Shift in AI Misuse by Cyber Adversaries

First seen 5 Nov 2025, 17:08 UTC MandiantSecuritybrief.AuSdxcentral 81% similarity 43.9

Article Content

Browse articles
ThreatCluster

The Google Threat Intelligence Group (GTIG) has identified a new operational phase of AI abuse, where adversaries are deploying AI-enabled malware in live operations. This shift indicates that threat actors are moving beyond using AI solely for productivity gains to utilizing it for malware execution and social engineering. The report highlights activity from bad actors affiliated with countries such as China, North Korea, Russia, and Iran.

ThreatCluster AI

Community

Browse all →