{"id":771017,"date":"2024-05-08T08:58:04","date_gmt":"2024-05-08T06:58:04","guid":{"rendered":"https:\/\/businesstech.co.za\/news\/?p=771017"},"modified":"2024-05-08T08:58:10","modified_gmt":"2024-05-08T06:58:10","slug":"winning-the-cybersecurity-war-with-ai","status":"publish","type":"post","link":"https:\/\/businesstech.co.za\/news\/industry-news\/771017\/winning-the-cybersecurity-war-with-ai\/","title":{"rendered":"Winning the cybersecurity war with AI"},"content":{"rendered":"\n<p>AI is changing many industries, but its impact is particularly evident in cybersecurity. On the face of it, AI adds a potent new capability to the already well-stocked armouries of cybercriminal gangs. <\/p>\n\n\n\n<p>AI allows them to schedule automated attacks, thus scaling their operations and making it much harder for defenders to deal with them. Another challenge is that cybercriminals can employ AI to improve malware, equipping it to bypass traditional security measures. This increases the likelihood that attacks are not detected and neutralised in time.<\/p>\n\n\n\n<p>Stephan Gilliland, Head of Information and Cybersecurity at CoCre8, says generative AI (GenAI) gives cybercriminals the capability to take their phishing attacks to a whole new level, using social engineering techniques to dupe unwary users more effectively. <\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong><a href=\"https:\/\/www.cocre8.com\/?utm_source=BusinessTech&amp;utm_medium=article&amp;utm_term=May+2024\" target=\"_blank\" rel=\"noreferrer noopener\">Click here to find out more about CoCre8<\/a><\/strong><\/li>\n<\/ul>\n\n\n\n<p>For example, GenAI enables voice and even video phishing. A clerk receiving what seems like an instruction from the CFO to expedite a payment into a certain account is likely to obey it. It\u2019s an unfortunate reality that AI can create a good audio facsimile after listening to the subject\u2019s voice for only 90 seconds, a truly terrifying capability. Fake video is less advanced at this stage, but all indications are that it will improve. Welcome to the world of the believable deepfake. <\/p>\n\n\n\n<p>\u201cThat\u2019s the bad news. The good news is that AI puts the same powerful capabilities into the hands of corporate security teams. Here\u2019s the kicker: like all technologies, AI has the effect of levelling the playing field for the underdogs,\u201d he says. \u201cTechnology has enabled smaller companies to compete more effectively with corporate giants; similarly, overstretched and outgunned defence teams now have the capability to compete with the well-resourced cybercriminal gangs which, until now, seem to have had the upper hand.\u201d<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Doing the grunt work<\/h2>\n\n\n\n<p>For one thing, Gilliland says, defence teams are at an innate disadvantage because they have so many duties to perform, whereas attack teams can be single-minded. Now, defenders can outsource the analysis of network traffic and system logs to detect threats faster and more efficiently. \u201cAI can also be used to respond to attacks automatically, blocking malicious traffic or isolating infected systems at the same \u2018machine speed\u2019 as the attackers, and much faster than any human could do,\u201d Gilliland says.<\/p>\n\n\n\n<p>An example of the smart use of AI is the Fortitude platform, developed locally in South Africa. It uses powerful GenAI to automate time-consuming but vital tasks: vulnerability assessment, penetration testing, running exploits and brute-force attacks, all performed at lightning speed. \u201cDefence teams can do much more much more quickly, which is why 63% of IT and security professionals believe that AI will improve corporate cybersecurity, according to a recent Google survey,\u201d he adds. \u201cBy taking care of highvolume, repetitive tasks, AI frees up scarce, skilled cybersecurity professions to focus on what they do best, thinking laterally and formulating strategy. They don\u2019t have to wade through a lot of \u2018noise\u2019 in order to find the genuine threats.\u201d<\/p>\n\n\n\n<p>He points to NetApp as an example of the smart use of AI to enhance the security of its market-leading storage solutions. NetApp uses AI and machine learning to automate ransomware protection by detecting anomalies in the file system. If an anomaly is detected, the system automatically creates a snapshot so that damage is minimised and a rapid recovery is facilitated. NetApp also detects anomalies in user behaviour and takes immediate action.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Looking after the troops<\/h2>\n\n\n\n<p>In the pre-AI world, cybersecurity professionals were effectively on a war footing 24\/7. Because their skills are scarce (and expensive), they carried a heavy load, constantly under pressure to keep up with a rapidly changing threat landscape. Long hours were the norm, made worse by the responsibility for keeping the organisation safe.<\/p>\n\n\n\n<p>Security environments are typically as heterogenous as the systems they\u2019re protecting, creating a tsunami of alerts that can prove overwhelming. Alert fatigue is a real challenge for security teams.<\/p>\n\n\n\n<p>\u201cAs AI grows in sophistication, it can take on an increasing amount of the workload, which creates a much more positive working environment for humans,\u201d Gilliland says. \u201cIt can filter out false positives and prioritise genuine threats for the team to investigate and respond to.\u201d <\/p>\n\n\n\n<p>It can also help bridge the skills gap that continues to characterise the industry. One recent study showed that there are some 500 000 positions unfilled worldwide, with the global shortfall likely to hit 3.5 million by 2025. Reasons for this dearth include tough working conditions and an intrinsically difficult job.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">AI can reverse this trend<\/h2>\n\n\n\n<p>The key to leveraging AI successfully in the fight against cybercrime is not to see it as a way to reduce jobs, but, rather, to make current teams more effective. \u201cCISOs and CIOs need to understand that the power of AI lies in its power to automate repetitive tasks and craft rapid, automatic responses,\u201d Gilliland says. <\/p>\n\n\n\n<p>\u201cAI is at its best when it\u2019s used to augment human capabilities, not replace them. There\u2019s no doubt that the bad guys will continue to find new ways to use AI; it\u2019s vital that defence teams have the human capability to come up with solutions. AI will give them the space they need.\u201d<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><a  data-lightbox=\"post-image\" href=\"https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2024\/05\/Untitled-design-12.png\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"1024\" src=\"https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2024\/05\/Untitled-design-12-1024x1024.png\" alt=\"\" class=\"wp-image-771024\" title=\"Stephan Gilliland, Head of Information and Cybersecurity at CoCre8.\" srcset=\"https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2024\/05\/Untitled-design-12-1024x1024.png 1024w, https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2024\/05\/Untitled-design-12-300x300.png 300w, https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2024\/05\/Untitled-design-12-150x150.png 150w, https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2024\/05\/Untitled-design-12-768x768.png 768w, https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2024\/05\/Untitled-design-12.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/a><\/figure>\n\n\n\n<p>Contact Stephan Gilliland on <a href=\"mailto:stephan.gilliland@cocre8.com?utm_source=BusinessTech&amp;utm_medium=article&amp;utm_term=May+2024\" target=\"_blank\" rel=\"noreferrer noopener\"><strong>stephan.gilliland@cocre8.com<\/strong><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Used intelligently, AI can help overstretched cybersecurity teams leverage their strengths and defeat the black hats.<\/p>\n","protected":false},"author":57,"featured_media":771020,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10459],"tags":[15127,16021],"class_list":["post-771017","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-industry-news","tag-cocre8","tag-cocre8-technology-solutions"],"_links":{"self":[{"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/posts\/771017","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/users\/57"}],"replies":[{"embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/comments?post=771017"}],"version-history":[{"count":5,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/posts\/771017\/revisions"}],"predecessor-version":[{"id":771029,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/posts\/771017\/revisions\/771029"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/media\/771020"}],"wp:attachment":[{"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/media?parent=771017"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/categories?post=771017"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/tags?post=771017"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}