cd /news/ai-safety/unit-42-warns-ai-has-shifted-balance… · home topics ai-safety article
[ARTICLE · art-113407] src=cyberscoop.com ↗ pub= topic=ai-safety verified=true sentiment=↓ negative

Unit 42 warns AI has shifted balance of power from defenders to attackers

Palo Alto Networks' Unit 42 warned that AI has shifted the balance of power from defenders to attackers, citing a customer attack where an agentic framework exploited 50 applications in under 10 hours, a task that would have taken at least 10 days pre-AI. Sam Rubin, senior vice president of Unit 42, called it a 'generational shift in cybersecurity,' noting that defenses built over years are unprepared for machine-speed attacks. The warning follows the April launch of Project Glasswing with Anthropic, which estimated such capabilities would reach attackers within a year.

read2 min views1 publishedAug 27, 2026
Unit 42 warns AI has shifted balance of power from defenders to attackers
Image: Cyberscoop (auto-discovered)

Unit 42’s top brass has seen enough from internal frontier AI model testing and malicious in-the-wild use of commercially available AI tools to be genuinely concerned.

“I can tell you without exaggeration that we believe that this is a generational shift in cybersecurity,” Sam Rubin, senior vice president of Palo Alto Networks’ threat intelligence arm, said in a media briefing Wednesday.

A period of relative balance between security and exposure has been broken by frontier AI model capabilities that could allow attackers to find and exploit network weaknesses with speed, Rubin said.

Unit 42 warned that capabilities demonstrated by readily available agentic AI models, and those unlocked by frontier AI models that remain gated for defense, have shifted the balance of power from defenders to attackers.

“The defenses that we’ve had built up over years weren’t necessarily built for or prepared for these machine-speed attacks,” Rubin said. “Organizations are ill-equipped to detect and to respond quickly in the face of these attacks.

Back in April, when Anthropic brought Palo Alto Networks and other major technology companies together to form Project Glasswing, an initiative to find and address security defects with its Mythos model, Unit 42 estimated the same capabilities would be in the hands of attackers within a year.

“Well, here we are five months later, and we’re starting to see the early waves of this threat in the wild,” Rubin said.

Unit 42 is actively investigating an attack on one of its customers where an attacker used an agentic framework to exploit 50 applications and other weaknesses across the enterprise in less than 10 hours. Rubin estimates AI allowed the attacker to accomplish in 10 hours what would have taken at least 10 days in a pre-AI era.

Attackers are already using AI across the entire attack chain, said Sherrod DeGrippo, vice president of threat intelligence at Unit 42. “We are not far from fully agentic attacks across all at once, but right now it’s piece by piece by piece,” she said.

“AI has seeped into every part of what threat actors do,” including malware development at scale, delegation, social engineering and ransomware negotiations, DeGrippo added.

As such, she sees the threat landscape shifting in four areas. AI is a force multiplier, identity is the primary compromise vector, attackers are burrowing into foundational libraries and software supply chains “baked into the fabric of our digital world,” and nation-sponsored threat groups are learning more about points of weakness in enterprise systems, DeGrippo said.

Nobody is fully prepared for what’s coming and it would be naive or a bad defender mindset to think otherwise, she said. “This is a transformative period, and how organizations navigate that transformation is going to be make-or-break for a lot of them.”

── more in #ai-safety 4 stories · sorted by recency
── more on @unit 42 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/unit-42-warns-ai-has…] indexed:0 read:2min 2026-08-27 ·