OpenAI、Anthropic等科技巨头警告:应对AI网络威胁的“窗口期”有限


2026年8月27日 美国东部时间下午3:58 / 哥伦比亚广播公司新闻(CBS News)

记者梅根·塞鲁洛(Megan Cerullo),MoneyWatch栏目

全球最强大人工智能工具的主要开发商警告称,他们的技术可能很快会被用于针对医院、科技公司等企业和机构实施精密网络攻击。

在周四发布的一封公开信中,OpenAI、Anthropic、谷歌、微软等数十家机构的负责人表示,当前存在一个“有限窗口期”来强化网络防御,防范可能造成严重后果的AI驱动网络攻击。信中补充称,这一窗口期可能仅余数月。

签署这封信的机构还包括CrowdStrike等安全公司,以及花旗集团、第一资本金融公司等银行。

信中提到,推动AI发展的技术进步既可能加大公共服务和技术基础设施面临的风险,也能帮助各机构识别并“修复”易受攻击的弱点。

“如果我们果断采取行动,就能利用防御者的窗口期,让我们的数字世界变得更加安全,”信中写道。

CrowdStrike近期发布的一份网络安全报告显示,2025年AI驱动的网络攻击较2024年增长了89%。

如何防范攻击

这些企业表示,当前的网络安全现状“不足以应对威胁”。

“长期存在的漏洞、过度的权限设置、错误配置、不安全且未打补丁的软件、弱身份验证,以及遗留系统的技术债务,都让系统暴露在风险之中,”信中说道。

信中称,需要加强并投入资源建设安全团队,同时为对抗AI网络攻击的防御方配备最先进的AI技术工具。

信中还呼吁企业和专家共享专业知识。

“共享威胁情报和经过验证的应对预案,并以受保护的组织数量、攻击遏制速度以及修复措施是否有效来衡量进展,”信中补充道。

行动呼吁

信中指出,所有机构都应将网络安全置于优先地位。这可能包括替换或升级易受攻击的老旧技术系统。

专业网络安全公司有义务持续测试防御能力,以应对不断演变的网络攻击手段。信中补充称,各国政府也可通过协调行动,以及在地方、国家和国际层面为网络防御战略提供资金,在遏制网络威胁方面发挥关键作用。

最后,信中表示,包括签署本文件的企业在内的领先AI公司,有责任为相关培训提供资金,以“负责任”的方式开放其模型的访问权限,并对模型进行充分的安全防护。

https://www.cbsnews.com/video/chatgpt-solved-complex-cybersecurity-task-8-hours-new-research/

专家称:ChatGPT仅用约8小时即可完成通常需要数周的网络安全任务

(06:21)

OpenAI, Anthropic, tech leaders warn of “limited window” to defend against AI cyber threats

August 27, 2026 3:58 PM EDT / CBS News

By Megan Cerullo Reporter, MoneyWatch

Leading developers of the most powerful artificial intelligence tools are warning that their technology may soon be used to carry out sophisticated cyberattacks against companies and institutions, ranging from hospitals to technology firms.

In an open letter published Thursday, the leaders of OpenAI, Anthropic, Google, Microsoft and dozens of other signatories said there is a “limited window” to strengthen cyber defenses and protect against potentially devastating AI-enabled cyberattacks. That window may last only months, it added.

The signatories also include security companies like CrowdStrike and banks including Citi and Capital One.

The same AI advances that could increase risks to public services and technology infrastructure can also help organizations identify and “fix weaknesses” that leave them vulnerable, the letter said.

“If we act decisively, we can use the defenders’ window to make our digital world much more secure,” the letter said.

A recent CrowdStrike report on cybersecurity found that AI-enabled attacks increased by 89% in 2025 compared to 2024.

How to defend against attacks

The companies said that the status quo for cybersecurity “won’t be enough.”

“Longstanding bugs, excessive permissions, misconfigurations, insecure and unpatched software, weak authentication and technical debt in legacy systems have left systems exposed,” the letter said.

Security teams need to be beefed up and invested in, while defenders against AI cyberattacks need to be equipped with the most sophisticated AI-enabled tech, it said.

The letter also called on companies and experts to share their expertise.

“Share threat intelligence and tested playbooks, and measure progress by how many organizations are protected, how quickly attacks are contained, and whether fixes work,” it added.

Call to action

Every organization needs to prioritize cybersecurity, according to the letter. That might include replacing or upgrading older tech systems that are vulnerable to attack.

Specialized cybersecurity firms have an obligation to test defenses against evolving cyber capabilities continually. Governments also have a key role to play in containing cyber threats through coordinated actions and by funding cyber defense strategies at the local, national, and international levels, it added.

Lastly, the letter said it is incumbent upon frontrunner AI companies — including those that signed the document — to fund training, provide “responsible” access to their models, and adequately secure them.

https://www.cbsnews.com/video/chatgpt-solved-complex-cybersecurity-task-8-hours-new-research/

ChatGPT solved cybersecurity task that typically takes weeks in about 8 hours, expert says

(06:21)

评论

发表回复

您的邮箱地址不会被公开。 必填项已用 * 标注

湘ICP备2026001899号-2