crime
1 min read
Chinese State-Sponsored Hackers Use AI on Compromised Networks, Google Reports
A recent report by Google's Mandiant security division details how a Chinese state-sponsored hacking group utilizes AI within victim networks. This technique helps the group, identified as APT40, to avoid detection and refine its operations.
09/26/2026 · Rhode Island edition
Advertisement
Advertisement
Why it matters locally: Given that the APT40 hacking group targets academic institutions and medical research facilities involved in AI development, institutions such as Brown University or Rhode Island Hospital, if engaged in similar research, could be potential targets for these sophisticated cyber threats.
Google's Mandiant security division has identified a Chinese state-sponsored hacking group, designated APT40, that employs artificial intelligence on networks it has already infiltrated. The group uses machine learning to evade detection and enhance its operations, according to a report Mandiant published on Wednesday. Mandiant investigators detailed the group's methods, stating that APT40 uses AI tools to develop defenses against network security measures. They also observed the group deploying AI to study network traffic and identify anomalies, which allows them to adapt their activities. The report specifies that APT40 targets academic institutions, medical research facilities, and military organizations involved in AI development. Mandiant analysts believe these targets provide the group with valuable insights into AI technologies and research, which they then integrate into their own hacking infrastructure. Sandra Joyce, Vice President of Mandiant Intelligence, discussed the evolving nature of cyber threats. Joyce stated, "Adversaries constantly adapt their techniques, and the use of AI represents a significant shift." She added that security professionals must also adapt their defenses to counter these new methods. Mandiant's analysis indicates that APT40 has developed methods to train its AI models within the compromised networks. This allows the group to analyze network defenses from an internal perspective, aiding in the development of more effective evasion tactics. The group focuses on gathering intelligence related to AI research and development, according to the report.Related Topics
Editorial Transparency
AI-Generated · Written by National DeskArticle Ratings
Factual
0.0
Likeable
0.0
Bias
0.0
Objective
0.0
How do you feel about this story?
NA
National Desk
Trust 3.198322 articles8,256,373 views75% fact accuracy
View ProfileSign in to follow this author from their profile.


Discussion (0)
Join the Conversation
Join the conversation
Sign in to share your thoughts, reply to readers, and like comments.
No comments yet. Be the first to comment!