Need for Speed: AI-Driven Attacks Are Changing Security Strategies

Cybersecurity teams are struggling to keep pace with AI-powered attacks that are outpacing traditional threats. These attacks are fast, relentless, and automated, forcing organizations to rethink their security strategies.

The latest Black Hat USA 2026 conference highlighted the growing concern over AI-driven attacks, which are changing the game for cybersecurity teams. According to a Dark Reading readership poll, 50% of respondents selected “AI-driven attacks vs. AI-powered defenses in the SOC” as the topic that mattered most for their organization. This is not surprising given the rapid advancements in artificial intelligence and its adoption by both security researchers and threat actors.

One key area where AI is making a significant impact is in the discovery and exploitation of vulnerabilities. Large language models (LLMs) are being used to identify new vulnerabilities at an unprecedented rate, often within hours of public disclosure. This shrinking window for patching has left security teams scrambling to prioritize and deploy patches in a timely manner. Ensar Seker, CISO at SOCRadar, notes that attackers are now able to weaponize vulnerabilities much more quickly, putting additional pressure on organizations.

Another challenge facing cybersecurity teams is the ability of AI-powered attacks to analyze patches and develop exploits for flaws. This has led to a situation where security teams cannot simply treat Patch Tuesday as a straightforward “deploy everything immediately” exercise. Instead, they must carefully prioritize which patches to deploy, taking into account potential side effects that some patches may introduce in certain environments.

The ability of AI-powered attacks to analyze and adapt is also making traditional security measures less effective. Benjamin Harris, founder and CEO of watchTowr, notes that AI has significantly lowered the bar for understanding what patches do, even if vendors don’t provide clear communication. This has made security through obscurity a questionable strategy, especially in the era of AI-powered attacks.

The impact of AI on cybersecurity is not limited to the speed at which vulnerabilities are discovered and exploited. AI is also being used by threat actors to automate their campaigns, making them more relentless and efficient. Unlike human hackers, malicious agents don’t require rest or vacation time, and they don’t throw in the towel when faced with obstacles.

The bottom line for cybersecurity teams is that they need to adapt quickly to the changing landscape of AI-powered attacks. This requires a fundamental shift in how organizations approach security, from relying on traditional measures to adopting more proactive and automated defenses. As Joe Toomey, vice president of underwriting security at cyber insurer Coalition, notes, “Companies need to be aware of and responsive to the shift in the pace of exploitation.”


Source: Dark Reading — 2026-10-05