Report: AI now capable of executing cyberattacks entirely independently
AI systems can now drive complex cyberattacks autonomously, reducing the time from vulnerability discovery to exploitation to mere hours, according to a report from Check Point Research.

What happened?
Security firm Check Point Research reveals in a report published on 4 August 2026 that AI is now capable of carrying out comprehensive cyberattacks autonomously without ongoing human guidance. The technology has the capacity to independently identify vulnerabilities, breach networks, and analyse stolen data. Consequently, the time from the disclosure of a vulnerability to an attack occurring has shortened from days to just a few hours.
Key facts
| Publiceringsdatum | 4 augusti 2026 |
|---|---|
| Antal AI-kommandon vid incident | Över 5 300 kommandon |
| Drabbade enheter vid incident | 9 mexikanska myndigheter |
| Sårbarhet till angrepp | Minskat från dagar till timmar |
Why it matters
When attacks are driven by autonomous AI systems, the response time for IT security personnel decreases drastically. In a documented intrusion against nine Mexican government agencies, two commercial AI tools were combined to execute over 5,300 AI-generated commands across 34 sessions, demonstrating the scale and velocity of these new threats.
Who is affected?
All organisations, government agencies, and companies managing digital infrastructure are affected by the increased speed of these attacks. Cybersecurity teams and IT departments must transition to more automated defences to counter these threats.
Impact on the EU
This development places higher demands on organisations within the EU to comply with regulations such as the NIS2 Directive and the EU AI Act regarding cybersecurity and risk management. Automated attack tools mean that real-time monitoring and response are now critical for European agencies and businesses.
What else you should know
Check Point Research emphasises that the combination of commercial AI tools significantly lowers the barrier to entry for complex attacks. This enables even less sophisticated actors to carry out large-scale and rapid intrusions.
Quick answers about this story
Vad har hänt?
När hände det?
Varför spelar det roll?
Påverkar det Sverige?
The link opens in a new window and leads to the publisher's own site.
Källan har spårats automatiskt från utgivaren via Aheadlines signalkedja.
AI-verktyg i artikeln
Topics
Get similar news straight to your inbox
The reader's room
Send in a question or an addition. The newsroom reads everything before it's published and replies when relevant. No AI-generated text – just people.
Sign in to submit a comment or question.
Read the article through your role
- Assess technical risk: model choice, vendor lock-in, data flow and running cost.
- Update the architecture doc if new APIs or regulations touch production.
- Ensure observability + rollback plan before rolling out to production.
Generated angle — not editorial analysis of "Report: AI now capable of executing cyberattacks entirely in"