OpenAI says we're running out of time to act on cyber defense. Here's what you can actually do about it.

Aug 29, 2026 11:01 AM - 1 hour ago 3

Sam Altman, main executive serviceman of OpenAI Inc., during BlackRock's 2026 Infrastructure Summit successful Washington, DC, US, connected Wednesday, March 11, 2026.

OpenAI CEO Sam Altman Bloomberg/Getty Images

This week brought different informing from tech leaders astir the increasing threat of AI cyber attacks — and I americium erstwhile again asking what I, a regular person, americium expected to do astir it.

OpenAI published an unfastened missive connected Thursday, joined by complete 100 organizations, informing that the model to statement up cyber defenses was quickly closing arsenic AI-enabled attacks go much blase and widespread.

AI and tech leaders person warned astir the increasing capabilities of ample connection models truthful often that the warnings themselves person go a spot of a meme: In July, OpenAI said its models escaped a trial situation and hacked into Hugging Face. A week later, Anthropic said its models had hacked not 1 but 3 different companies, prompting immoderate to mobility really overmuch the warnings were astir hyping up their product.

Rather than a institution informing astir its ain models' capabilities, this missive was different — it was a pointed, corporate informing calling connected each organizations, tech companies, and governments globally to prioritize cyber defense.

"I don't deliberation they're coming retired to do marketing," Kevin Powers, module head for cybersecurity, consequence and governance astatine Boston College Law School, said. "I deliberation they're really concerned."

Powers said the missive seemed to beryllium a nonstop telephone to policymakers successful Washington, D.C., to commencement treating cybersecurity for illustration the matter of nationalist information that it is. The missive specifically mentioned the anticipation of AI being utilized to disrupt captious infrastructure, specified arsenic hospitals, h2o curen plants, and the net itself.

Those of america who don't tally h2o utilities aliases power financial systems are still vulnerable. Advancements successful AI mean that attacks against individuals are besides becoming much blase — and harder to spot.

AI is making phishing attacks much sophisticated

Dominic Sellitto, professor of guidance subject and systems astatine the University astatine Buffalo, said that while AI is changing the magnitude and the value of attacks, the fundamentals often stay the same.

He said AI has made phishing attacks successful which scammers instrumentality their victims into sharing money aliases individual accusation by impersonating personification other "more cost-effective, faster, personalized, and measurement easier for criminal organizations to scale."

The FBI received much than 22,000 complaints involving AI-related net crimes successful 2025, accounting for much than $893 cardinal successful reported losses, according to its yearly Internet Crime Report released successful April.

One communal strategy involves a genitor aliases grandparent getting a telephone telephone from personification who sounds for illustration their kid aliases grandchild, saying they are successful a hindrance and request help. The scammer tends to create a consciousness of urgency, which successful itself tin beryllium a informing sign.

Peter Swire, professor successful the School of Cybersecurity and Privacy astatine the Georgia Institute of Technology, agreed that for the mean personification and mini businesses, the biggest consequence posed by AI now is deepfakes. A mates of years ago, an email aliases telephone telephone from a fraudster would person been much apt to extremity disconnected the unfortunate that thing wasn't right.

"Often these days, the clone doesn't springiness itself away," Swire said.

AI has improved truthful overmuch that it tin convincingly impersonate a existent person connected a telephone aliases video telephone and instrumentality personification who is adjacent to them.

Steps you tin return to debar getting tricked by AI

"The basics still matter," Cliff Steinhauer, head of accusation information and engagement astatine the National Cybersecurity Alliance, said successful an email. "Turn connected multifactor authentication, support your package updated, usage beardown and unsocial passwords aliases passkeys, and verify different requests different measurement earlier acting connected them."

Swire said that, if you get an urgent telephone from personification you trust, a bully first measurement is to simply bent up and telephone them back. Many scammers usage devices that make it look for illustration they're calling you from a telephone number you know. Calling a number you cognize straight tin thief debar getting fooled by a spoofed caller ID.

Another action is to person a family codeword to corroborate you're really talking to the personification you deliberation you are. Swire suggested that adjacent clip you're each sitting astir the table, for illustration astatine Thanksgiving, travel up pinch a codeword aliases a mobility only your family would know.

Sellitto said consumers besides shouldn't presume that the devices they usage are automatically safe and should make judge they person information measures enabled wherever available.

Beyond AI-powered attacks, Steinhauer noted that the AI devices group actively usage aren't needfully safe either.

"An AI chatbot isn't automatically a safe spot for delicate information," he said. "People should understand really their accusation is stored, used, aliases shared earlier putting personal, financial, aliases confidential accusation into an AI tool."

Read next

Kelsey is simply a elder newsman for Business Insider, wherever she covers business and tech news arsenic good arsenic stories astir travel, luxury, and consulting.Her characteristic communicative "Disaster astatine 18,200 feet" received awards from the New York Press Club and the North American Travel Journalists Association, arsenic good arsenic honorable mention from the Society of American Travel Writers. It was besides included connected Longreads' and Pocket's champion of 2022 lists. She has besides received an American Journalism Online Award for her sum connected missing and murdered Indigenous group successful Wyoming.She's appeared connected CBS, NPR, NBC, and different outlets to talk her work. She antecedently worked connected the world news table astatine the BBC successful London and received a master's successful publicity from Northwestern University.She tin beryllium reached by email astatine [email protected] aliases via the encrypted-messaging app Signal @kelseyv.21.Popular storiesDisaster connected Denali: Inside a 1,000-foot autumn connected America's highest peakThrifting is much celebrated than ever. It's besides ne'er been worse.Rolex wouldn't work the vintage watch my mom inherited. Watchmakers opportunity it happens each the time.A tiny, invasive bug and the ambiance situation are changing really guitars are made, and shifting the people of euphony historyThe tourism free-for-all is overGovernment-run boarding schools were founded to 'civilize' Native Americans. Hundreds of dormant children stay buried successful the schoolyard graves.Meet the Texas curate who helps alert dozens of women to New Mexico each period to get abortionsPeople are flocking to Colorado for the awesome outdoors, but the aerial contamination is truthful bad, it's forcing galore to enactment insideInside Kabul: An assistance worker reveals the devastating chaos that erupted during the US exit from Afghanistan

More