cd /news/ai-safety/tech-companies-call-for-improved-cyb… · home topics ai-safety article
[ARTICLE · art-114592] src=cnet.com ↗ pub= topic=ai-safety verified=true sentiment=↓ negative

Tech Companies Call for Improved Cyber Defenses After AI-Enabled Attacks

OpenAI and 128 companies, including Microsoft, Google, Anthropic, and Oracle, issued an open letter on Friday urging businesses, governments, and institutions to act quickly to bolster cybersecurity against AI-enabled attacks, warning that the world has only a 'limited window' to improve defenses. The letter calls for fixing high-risk weaknesses, sharing cyber-capable AI tools, and increasing government investment in cyber defense, especially for underfunded departments and critical infrastructure.

read2 min views2 publishedAug 28, 2026
Tech Companies Call for Improved Cyber Defenses After AI-Enabled Attacks
Image: Cnet (auto-discovered)

Saying that the world has only a “limited window” to bolster its defense against widespread AI cyberattacks, OpenAI and more than 100 other companies issued a call Friday for businesses, governments and other institutions to act quickly to boost cybersecurity.

The open letter, titled “A call for collective action on cyber defense,” was signed by 128 companies, including some of the biggest players in the AI space, including Microsoft, Google, Anthropic and Oracle.

The letter warns that “AI-enabled cyberattacks will become far more widespread and sophisticated as models around the world become increasingly capable,” putting companies, governments and infrastructure at risk.

But there are “ways to fix weaknesses that have accumulated for years.” The letter says companies must invest much more in security teams to fix old bugs and other vulnerabilities, share their cyber-capable AI tools with other companies and mobilize globally and collectively to “raise security standards and find new solutions.”

The ‘nightmare’ is coming #

AI agents have repeatedly made headlines this summer for wreaking havoc, whether intended or unintended. Models escaped an OpenAI test environment in which they weren’t supposed to access the open internet. They found a software vulnerability, exploited it and got online. Once there, hundreds of AI agents used stolen credentials, communicated with each other on makeshift message boards and eventually hacked into the AI platform Hugging Face.

Read more: AI Agents Are a Cybersecurity Nightmare That’s Only Just Begun There have been more than a dozen major incidents over the past year. Anthropic’s AI models breached three unnamed companies. Meta’s AI hacked a “third-party service” earlier this month. A Claude AI agent hacked a gym in Australia to get its user into a gym class. The problem is that AI agents, trained on heaps of code, are great at finding software flaws and vulnerabilities and will keep plugging away until they complete their tasks.

‘Urgency and coordination’ #

In its open letter, OpenAI describes four broad steps that must be taken. All organizations — both private and public — should fix “highest-risk weaknesses,” only deploy highly secure AI-generated code and strengthen permission and access controls. Cybersecurity companies should strengthen defenses against AI attacks and help deploy them for critical infrastructure operations, such as water and utility systems. Governments at all levels need to invest more funds in cyber defense — especially for greatly underfunded departments — and “give hospitals, water utilities, and local governments access to capable defensive AI.”

Finally, frontier AI companies should, among other things, “ensure agentic identities are traceable and accountable” and share “credible threat assessments with governments, security partners, and open-source maintainers.” Companies must monitor and invest more in monitoring, testing and fixing AI systems.

Teams in charge of essential services should be the initial focal point of getting cyber-capable AI, the letter says. “Fix the most dangerous weaknesses, verify the fixes, and share what works so others can build on it.”

── more in #ai-safety 4 stories · sorted by recency
── more on @openai 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/tech-companies-call-…] indexed:0 read:2min 2026-08-28 ·