Saturday, 13 Dec 2025
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > AI > What SOC tools miss at 2:13 AM: Gen AI attack chains exploit telemetry lag-Part 1
AI

What SOC tools miss at 2:13 AM: Gen AI attack chains exploit telemetry lag-Part 1

Last updated: May 10, 2025 1:57 pm
Published May 10, 2025
Share
What SOC tools miss at 2:13 AM: Gen AI attack chains exploit telemetry lag-Part 1
SHARE

Be part of our day by day and weekly newsletters for the newest updates and unique content material on industry-leading AI protection. Study Extra


It’s 2:13 a.m. on a Sunday and the SOC groups’ worst nightmares are about to return true.

Attackers on the opposite facet of the planet are launching a full-scale assault on the corporate’s infrastructure. Due to a number of unpatched endpoints that haven’t seen an replace since 2022, they blew via its perimeter in lower than a minute. 

Attackers with the abilities of a nation-state group are after Lively Listing to lock down your entire community whereas creating new admin-level privileges that can lock out any try to shut them down. In the meantime, different members of the assault group are unleashing legions of bots designed to reap gigabytes of buyer, worker and monetary knowledge via an API that was by no means disabled after the final main product launch.

Within the SOC, alerts begin lighting up consoles like the newest Grand Theft Auto on a Nintendo Change. SOC Analysts are getting pinged on their cell telephones, attempting to sleep off one other six-day week throughout which many clocked almost 70 hours.

The CISO will get a name round 2:35 a.m. from the corporate’s MDR supplier saying there’s a large-scale breach happening. “It’s not our disgruntled accounting group, is it? The man who tried an “Workplace House” isn’t at it once more, is he?” the CISO asks half awake. The MDR group lead says no, that is inbound from Asia, and it’s large.        

See also  Mistral AI gives Le Chat voice recognition and deep research tools

Cybersecurity’s coming storm: gen AI, insider threats, and rising CISO burnout

Generative AI is making a digital diaspora of methods, applied sciences and tradecraft that everybody, from rogue attackers to nation-state cyber armies skilled within the artwork of cyberwar, is adopting. Insider threats are rising, too, accelerated by job insecurity and rising inflation. All these challenges and extra fall on the shoulders of the CISO, and it’s no marvel extra are coping with burnout.

AI’s meteoric rise for adversarial and bonafide use is on the heart of all of it. Getting essentially the most important profit from AI to enhance cybersecurity whereas decreasing danger is what boards of administrators are pushing CISOs to attain.

That’s not a straightforward process, as AI safety is evolving in a short time. In Gartner’s newest Dataview on security and risk management, the analyst agency addressed how leaders are responding to gen AI. They discovered that 56% of organizations are already deploying gen AI options, but 40% of safety leaders admit important gaps of their capacity to successfully handle AI dangers.

Gen AI is being deployed most in infrastructure safety, the place 18% of enterprises are absolutely operational and 27% are actively implementing gen AI-based methods in the present day. Second is safety operations, the place 17% of enterprises have gen AI-based methods absolutely in use. Information safety is the third hottest use case, with 15% of enterprises utilizing gen AI-based methods to guard cloud, hybrid and on-premise knowledge storage methods and knowledge lakes.

Gartner’s newest survey reveals CISOs prioritizing gen AI adoption in infrastructure safety, safety operations, and knowledge safety, with software safety and GRC lagging. Supply: Gartner, Information Safety within the Age of AI Developments

Insider threats demand a gen AI-first response

Gen AI has fully reordered the interior threatscape of each enterprise in the present day, making insider threats extra autonomous, insidious and challenging to establish. Shadow AI is the menace vector no CISO imagined would exist 5 years in the past, and now it’s one of the crucial porous menace surfaces.

See also  AMD data center chips vulnerable to revealing data through ‘BadRAM’ attack

“I see this each week,”  Vineet Arora, CTO at WinWire, not too long ago advised VentureBeat. “Departments bounce on unsanctioned AI options as a result of the instant advantages are too tempting to disregard.”  Arora is fast to level out that staff aren’t deliberately malicious. “It’s essential for organizations to outline methods with strong safety whereas enabling staff to make use of AI applied sciences successfully,” Arora explains. “Whole bans typically drive AI use underground, which solely magnifies the dangers.”

“We see 50 new AI apps a day, and we’ve already cataloged over 12,000,” mentioned Itamar Golan, CEO and co-founder of Prompt Security, throughout a latest interview with VentureBeat. “Round 40% of those default to coaching on any knowledge you feed them, which means your mental property can turn out to be a part of their fashions.”

Conventional rule-based detection fashions are now not enough. Main safety groups are shifting towards gen AI-driven behavioral analytics that set up dynamic baselines of worker actions that may establish anomalies in real-time and comprise dangers and potential threats.

Distributors, together with Immediate Safety, Proofpoint Insider Threat Management, and Varonis, are quickly innovating with next-generation AI-powered detection engines that correlate file, cloud, endpoint and identification telemetry in actual time. Microsoft Purview Insider Risk Management can also be embedding next-generation AI fashions to autonomously establish high-risk behaviors throughout hybrid workforces.

Conclusion – Half 1

SOC groups are in a race towards time, particularly if their methods aren’t built-in with one another and the greater than 10,000 alerts a day they generate aren’t syncing up. An assault from the opposite facet of the planet at 2:13 a.m. goes to be a problem to comprise with legacy methods. With adversaries being relentless of their fine-tuning of tradecraft with gen AI, extra companies have to step up and be smarter about getting extra worth out of their current methods.

See also  Inside LinkedIn’s generative AI cookbook: How it scaled people search to 1.3 billion users

Push cybersecurity distributors to ship the utmost worth of the methods already put in within the SOC. Get integration proper and keep away from having to swivel chairs throughout the SOC ground to examine alert integrity from one system to the following. Know that an intrusion isn’t a false alarm. Attackers are displaying a exceptional capacity to reinvent themselves on the fly. It’s time extra SOCs and the businesses counting on them did the identical.


Source link
TAGGED: attack, chains, exploit, Gen, lagPart, SoC, Telemetry, Tools
Share This Article
Twitter Email Copy Link Print
Previous Article AI-powered headphones offer group translation with voice cloning and 3D spatial audio AI-powered headphones offer group translation with voice cloning and 3D spatial audio
Next Article Recurly Recurly Acquires Redfast and Prive
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

Four predictions shaping the future of data streaming

Richard Timperlake, SVP, EMEA at Confluent, outlines how strategic investments, overcoming legacy challenges, and a…

February 10, 2025

Apex Legends postpones competition amid hacking concerns

Apex Legends has postponed the North America finals for its World Collection championship over considerations…

March 18, 2024

AISAP Raises $13M in Seed Funding

AISAP, a Tel Aviv, Israel-based firm offering an AI-powered level of care assisted prognosis (POCAD)™…

May 5, 2024

Adoption comes at high security cost

The retail trade is among the many leaders in generative AI adoption, however a brand…

September 24, 2025

Iceotope welcomes Christian Belady as Senior Advisor

Iceotope Applied sciences is happy to welcome Christian Belady as Senior Advisor to the corporate.…

April 5, 2024

You Might Also Like

Google’s new framework helps AI agents spend their compute and tool budget more wisely
AI

Google’s new framework helps AI agents spend their compute and tool budget more wisely

By saad
BBVA embeds AI into banking workflows using ChatGPT Enterprise
AI

BBVA embeds AI into banking workflows using ChatGPT Enterprise

By saad
Ai2's new Olmo 3.1 extends reinforcement learning training for stronger reasoning benchmarks
AI

Ai2's new Olmo 3.1 extends reinforcement learning training for stronger reasoning benchmarks

By saad
Experimental AI concludes as autonomous systems rise
AI

Experimental AI concludes as autonomous systems rise

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
You can revoke your consent any time using the Revoke consent button.