Cybercriminals Get Smarter: AI, Trusted Tools and Old Vulnerabilities Fuel New Wave of Attacks
This week's cybersecurity roundup paints a concerning picture: trusted tools are being turned against users, old vulnerabilities are getting renewed attention, and artificial intelligence is making it cheaper and easier for attackers to build effective exploits. Researchers have also found that many attacks being exploited in the wild are simpler to pull off than businesses might expect.
Key incidents flagged this week include attacks targeting industrial control systems (PLCs) enhanced by AI, security issues affecting GitLab, and the exposure of Stripe API keys that could allow unauthorised access to payment systems. These incidents underline a common theme: attackers are increasingly targeting the software and platforms that businesses rely on daily, rather than relying solely on brand-new techniques.
For small and medium businesses, the message is clear — even trusted, everyday tools and services can become attack vectors if left unpatched or misconfigured. As AI lowers the barrier to entry for cybercriminals, businesses of all sizes should assume they could be targeted, not just large enterprises.