Artificial intelligence experts are cautioning the public to enhance their cybersecurity practices by using strong passwords and promptly updating software on their devices to combat the emergence of “AI-driven computer worms.” These new cyber threats can execute customized attacks on devices, draining processing power and stealing information as they seek out new targets.
In a recent development, a team from the University of Toronto, led by Nicolas Papernot, the Canadian Institute for Advanced Research AI chair, demonstrated that publicly available AI models can enable a worm to adapt its attack strategy dynamically as it propagates among internet-connected devices like laptops, printers, and cameras. The research, conducted in partnership with the Vector Institute, was shared with national science, security, and defense authorities before publication.
Papernot, an associate professor of computer engineering and computer science at U of T, emphasized the importance of not neglecting software updates and the regular changing of passwords to safeguard against these evolving cyber threats. He stressed the significance of adopting multi-factor authentication and ensuring swift deployment of software patches by organizations.
Unlike traditional computer viruses, worms can spread autonomously from one machine to another without human intervention. The researchers at U of T described how their lab-created worm gathers data as it traverses devices, exploiting new breaches to uncover passwords and vulnerabilities to infiltrate additional machines. The ability of these AI-driven worms to learn and adapt poses a significant challenge as they can develop tailored attack strategies for each victim device, surpassing traditional defense mechanisms.
According to Papernot, the cost-effectiveness of building and deploying these AI-driven worms makes them a formidable threat, as they can leverage the computing power of infected devices to launch successive attacks at a minimal cost. This shift in cybersecurity risk underscores the urgency for heightened vigilance and proactive measures to mitigate potential cyber intrusions.
Recent incidents involving AI agents going rogue and the rapid development of advanced malware underscore the escalating concerns surrounding AI’s potential impact on cybersecurity. Papernot’s research findings underscore the need for enhanced cybersecurity measures in Canada, particularly for critical infrastructure sectors that are increasingly exposed to cyber threats.
In conclusion, the evolving landscape of cyber threats necessitates a proactive approach to cybersecurity hygiene, including regular software updates, robust password practices, and strategic defense mechanisms to mitigate the risks posed by AI-driven worms.



