
A reported AI-agent campaign hit RubyGems with malicious packages, public-data scraping, and attempted API key theft.
NSA, CISA, FBI and other U.S. agencies say attackers are using AI to generate exploit scripts for Siemens S7 controllers, lowering the time and skill needed to target industrial control systems.

U.S. agencies including the NSA, CISA and FBI warn that attackers are using AI to build exploit scripts targeting Siemens S7 programmable logic controllers. The key risk is speed and accessibility: AI can reduce the technical expertise and time needed to create working industrial control system exploit scripts and malicious tools.
The advisory says threat actors can gather public information about vulnerabilities, identify exposed and exploitable PLCs, and use AI-generated scripts to act on that information. If PLCs are exposed to the Internet, the agencies warn they are at high risk for exploitation.
The affected sectors cited include energy, water, chemical and manufacturing. The agencies classify the situation as an active threat, making basic exposure management and mitigation planning a priority for organizations running industrial control systems.
The report points to an evolution in threat actor capabilities rather than a fully autonomous AI hacking scenario. The Decoder notes that in simulations by the UK’s AI Safety Institute, models had so far failed to hack operational technology systems on their own, getting stuck on the IT systems in front of them rather than the devices themselves.

A reported AI-agent campaign hit RubyGems with malicious packages, public-data scraping, and attempted API key theft.

Fields Medal winners say AI-made answers could erode mathematical understanding.

Anthropic says Claude was used in cyber, weapons, surveillance and model-distillation cases.

A Brevo breach let attackers send phishing emails to Trezor customers.