15,000 reader codes in the form of AI Agent software detected: Network security alarm

NGUYỄN ĐĂNG |

According to Kaspersky experts, AI has become a core part of cybersecurity threats, while contributing to shaping the future of cybersecurity.

New era of cybersecurity

According to Mr. Adrian Hia - CEO of Kaspersky Asia-Pacific (APAC), recent cyberattacks in the region show that the boundary between the digital world and the real world is almost non-existent.

Not long ago, Nichirei Corporation of Japan faced an attack that disrupted its logistics network. Meanwhile, India's manufacturing industry has become one of the hotspots suffering from ransomware attacks targeting industrial systems in the APAC region. Attack groups continuously paralyze production lines and information technology systems serving industrial production activities.

Mr. Hia also emphasized that AI agents (AI Agents) are creating a new link in the software supply chain. In 2026 alone, Kaspersky's security experts discovered more than 15,000 malware samples disguised as AI Agent software. This significantly expands the scope of attacks for sabotage and cyber espionage activities.

As AI increasingly becomes a core part of cyber security threats, and also becomes a driving force to strengthen defense capabilities, APAC organizations should not just stop at preventing attacks. More importantly, organizations need to ask themselves if they are really capable of monitoring and detecting what is happening inside their systems," Mr. Hia emphasized.

SOC applies AI to restore the ability to monitor and detect threats

According to a new report from Kaspersky's system intrusion assessment department, data from 31% of analyzed incidents shows that malicious activities have been silently taking place in the organization's system for more than three months before being detected.

Notably, 52% of serious incidents are only detected after more than 90 days from the time the attacker successfully infiltrated. Even Kaspersky recorded an intrusion that had silently existed in the system for 4 years before being detected. In those 4 years, the harmful agent was hidden in the system without being detected.

These findings reflect major challenges in network security operations. Although many organizations have invested in security technologies, the technology still cannot compensate for the limitations in monitoring, detection and response readiness.

From in-depth research, Kaspersky experts emphasize that the modern and unified Network Security Operations Center (SOC) is becoming a key factor in business operations.

When organizations still apply coping security methods or lack continuous monitoring capabilities, bad actors will have more time to expand the scope of intrusion in the system, gain access at a higher level and access important systems and data.

Conversely, a well-built and well-operated SOC will shorten this time period by providing comprehensive monitoring capabilities, a team of professionals and the necessary operating procedures to detect threats before they break out into serious incidents.

NGUYỄN ĐĂNG
RELATED NEWS

Network security to protect the rights of the people and national interests

|

Politburo Member, Prime Minister Le Minh Hung emphasized that ensuring network security must be closely and synchronously linked between protecting the system and protecting people.

Ho Chi Minh City aims for free public WiFi: Network security experts share secrets to security

|

Ho Chi Minh City - Network security experts recommend users to proactively protect personal data when using free public WiFi.

Hanoi Department of Health warns about the use of products and biological preparations from stem cells

|

Hanoi Department of Health has just issued a warning about the use of products and biological preparations from stem cells.

Ho Chi Minh City central road prohibits cars from traveling in one direction for Metro Line 2 construction

|

HCMC - Cars are banned from traveling on Cach Mang Thang Tam Street (from Ly Thuong Kiet to 3/2 Street) for construction of Metro Line No. 2 (Ben Thanh - Tham Luong).

The land area of the ITC building fire in the center of Ho Chi Minh City has changed after more than 2 decades

|

Ho Chi Minh City - Nearly 24 years after the ITC fire, the "golden" land in the center of Ho Chi Minh City has become a green park serving people.

Heavy rain causes landslides, two more provincial roads in Lao Cai are cut off

|

Lao Cai - Soil and rocks from the slope slid down after heavy rain, causing two provincial roads 162 and 175 to be blocked and cut off.

Dak Lung bridge collapsed due to truck crane, local authorities propose repairing old bridge and building new bridge

|

Dong Nai - Functional agencies are blockading the scene of the Dak Lung bridge collapse, regulating vehicles to move in other directions.

Network security to protect the rights of the people and national interests

Lê Thanh Phong |

Politburo Member, Prime Minister Le Minh Hung emphasized that ensuring network security must be closely and synchronously linked between protecting the system and protecting people.

Ho Chi Minh City aims for free public WiFi: Network security experts share secrets to security

NGỌC ÁNH |

Ho Chi Minh City - Network security experts recommend users to proactively protect personal data when using free public WiFi.

Đà Nẵng lập tổ chuyên gia an ninh mạng, siết lừa đảo bằng AI

Hoàng Bin |

Đà Nẵng thành lập Tổ chuyên gia an ninh mạng, tập trung đấu tranh với các thủ đoạn lừa đảo, giả mạo và lợi dụng trí tuệ nhân tạo để tạo thông tin giả.