I'm so happy and proud of my @SophosXOps colleagues for the challenging and insane amount of work that went into publishing our 6 part report today "Operation Pacific Rim" (https://www.sophos.com/en-us/content/pacific-rim). We hope that by sharing our experiences that others can take a page from our playbook on going toe to toe with nation-state adversaries and hopefully publish similar information for all of us to take a page from as well.
(1/3)
Under investigation: During a recent threat hunt for DLL sideloading abuse leveraging vmnat.exe, Sophos X-Ops uncovered a likely nation-state campaign targeting an organization in Southeast Asia. Aligning closely with techniques previously attributed to the Mustang Panda threat group, we unraveled a complex and sustained intrusion. 1/7
Has Randall updated this yet for deciding between performing a creative task and trying to iteratively prompt-coax GPT to do it for you?
The risks of AI aren't hypothetical future concerns about dystopian misalignment scenarios. Our round-the-clock discussion about today's powerful-but-early GPT technologies has already arrested our attention, diverting us from much of what we considered important just months ago, and is rapidly altering committed plans from product roadmaps to functional operations to overall missions and strategies. Many organizations will be circumspect, will move too slowly, and get lapped. Many will be paranoid or opportunistic, will lose focus, move too quickly, and make costly mistakes. Calibrating this will be difficult because it's too new to really wrap our heads around. It will take as much time as we choose to give it, but predictability will remain elusive. Many operations will fail through acts of omission or commission. This is going to be more disruptive than the Internet in the same way that the Internet was more disruptive than electricity: one stands on the shoulders of the other, and the successive rate of change and disruption is a function of the adoption of its predecessors.
It's going to be a wild ride, and the AI consultants, armies of them, are silently amassing at your gates...