AI正被用于制造深度伪造、对抗攻击等新型网络威胁,本文系统梳理了这些风险与防御策略。
AI-Driven Cybersecurity Threats: A Survey of Emerging Risks and Defensive Strategies
- 按四类威胁分类,建立AI能力与攻击方式的对应关系
- 综述70余篇文献,指出现有防御存在短板
- 强调可解释性与合规性对构建可信安全系统至关重要
人工智能的双重用途正在重塑网络安全格局,催生四大类新威胁:深度伪造与合成媒体、对抗性AI攻击、自动化恶意软件以及基于AI的社会工程。本文旨在分析这些新兴风险、攻击机制及防御体系的不足。提出一个将AI能力与威胁模式关联的比较分类框架,回顾了70余篇学术与产业界文献,并识别出关键研究机遇,如混合检测流水线与基准测试框架。论文按威胁类型主题化组织,每部分涵盖技术背景、真实事件、法律框架与应对措施。研究强调,必须构建具备可解释性、跨学科协同与法规合规性的AI防御系统,以维护数字生态的信任与安全。
原文摘要 · Abstract (English)
Artificial Intelligence's dual-use nature is revolutionizing the cybersecurity landscape, introducing new threats across four main categories: deepfakes and synthetic media, adversarial AI attacks, automated malware, and AI-powered social engineering. This paper aims to analyze emerging risks, attack mechanisms, and defense shortcomings related to AI in cybersecurity. We introduce a comparative taxonomy connecting AI capabilities with threat modalities and defenses, review over 70 academic and industry references, and identify impactful opportunities for research, such as hybrid detection pipelines and benchmarking frameworks. The paper is structured thematically by threat type, with each section addressing technical context, real-world incidents, legal frameworks, and countermeasures. Our findings emphasize the urgency for explainable, interdisciplinary, and regulatory-compliant AI defense systems to maintain trust and security in digital ecosystems.
Thank you to arXiv for use of its open access interoperability. PaperDance 不是 arXiv 官方产品;中文卡片由大模型生成,请以原文为准。