Close Menu
Xarkas BlogXarkas Blog
    What's Hot

    Nothing About The Hyundai Inster Should Impress You. But It Does

    October 18, 2025

    Dell 14 Plus review: Premium build and all-day battery at ₹85000, is it enough?

    October 18, 2025

    UK use of AI age estimation tech on migrants fuels rights fears

    October 17, 2025
    Facebook X (Twitter) Instagram
    Xarkas BlogXarkas Blog
    • Tech News

      Dell 14 Plus review: Premium build and all-day battery at ₹85000, is it enough?

      October 18, 2025

      UK use of AI age estimation tech on migrants fuels rights fears

      October 17, 2025

      Top 5 printers for home use balancing low ink costs, duplex printing and Wi-Fi convenience, plus easy mobile setup

      October 17, 2025

      Amazon Great Indian Festival: Up to 65% off on the best 24 inch monitors apt for gaming and every day work

      October 17, 2025

      Amazon Great Indian Festival ends soon, grab kitchen appliances before deals run out: Purifiers, air fryers & more

      October 17, 2025
    • Mobiles

      Realme P4 Series Key Specifications Confirmed Ahead of Launch in India on August 20

      August 12, 2025

      iQOO Z10 Lite 4G With Snapdragon 685 Chip, 50-Megapixel Camera Launched: Price, Specifications

      August 12, 2025

      Flipkart Independence Day Sale 2025 Begins Tomorrow: Deals on iPhone 16, Samsung Galaxy S24, and More

      August 12, 2025

      Vivo V60 Launching Today: Know Price, Features, Specifications and More

      August 12, 2025

      Oppo Find X9 Ultra to Feature Bigger Dual-Cell Battery Than Find X8 Ultra, Tipster Claims

      August 12, 2025
    • Gaming

      VLGE is making it easier to world build and shop on Roblox

      October 17, 2025

      Battlefield 6 Makes Fan Requested Change

      October 17, 2025

      How to Clear Purple Goo Sludge in Pokemon Legends Z-A

      October 17, 2025

      Z-A Shakes Up How Shiny Pokemon Spawns Work

      October 17, 2025

      Legion Remix Lets Players Get an Unexpected Reward

      October 17, 2025
    • SEO Tips
    • PC/ Laptops

      Best gaming laptops for beginners, up to 40% off on Amazon Great Indian Festival Sale

      October 17, 2025

      64% faster video editing with Intel Ultra laptops for creative professionals: Top 8 picks for seamless multitasking

      October 17, 2025

      Best gaming laptops starting at ₹56990 from HP, Dell, Lenovo, ASUS, Acer in Amazon Diwali Sale 2025, top deals covered

      October 15, 2025

      Asus Vivobook 14 Flip Review: A balanced 2-in-1 laptop with powerful performance

      October 15, 2025

      Apple MacBook Model With A-Series Chip, Affordable Price Tag to Launch in Early 2026: Report

      August 12, 2025
    • EV

      Nothing About The Hyundai Inster Should Impress You. But It Does

      October 18, 2025

      GM President Says It’s Preparing For Chinese Competition In America

      October 17, 2025

      Electrify America Adds Real-Time EV Charger Info To Google Maps

      October 17, 2025

      Watch The Sub-$30,000 Slate Truck Survive One Of The Hottest Places In The U.S.

      October 17, 2025

      How Automakers Saved Billions In Fines By Selling Plug-In Hybrids

      October 17, 2025
    • Gadget
    • AI
    Facebook
    Xarkas BlogXarkas Blog
    Home - Featured - Vibe hacking and why cybersecurity experts are worried
    Featured

    Vibe hacking and why cybersecurity experts are worried

    KavishBy KavishOctober 8, 2025No Comments6 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Vibe hacking and why cybersecurity experts are worried
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email


    Although still in the nascent stages, vibe hacking could become a serious concern going forward. Mint explains what makes vibe hacking so dangerous and difficult to detect.

    Table of Contents

    Toggle
    • What is vibe hacking?
    • What makes vibe hacking dangerous?
    • What makes it particularly difficult to detect vibe hacking?
    • Which industries are likely to be affected by vibe hacks?
    • How should companies combat vibe hacking?
    • What are the security tools to fight this menace?

    What is vibe hacking?

    Vibe hacking is the malicious twin of vibe coding, where hackers use AI to generate malicious code at scale. In vibe coding, users, with the help of simple language, can get an artificial intelligence coding agent to write lines of code from natural language prompts.

    There are two kinds of vibe hacking. In the first, hackers use an existing vibe coding platform to write malicious code to attack existing code bases. Vibe coding platforms, unless given access, aren’t privy to the companies’ code base. When given, however, developers can use a vibe coding platform to recommend code for products they’d like to build.

    “Instead of building, if someone gets access to your codebase, it can actually tell the platform exactly what to do to extract data or do something malicious, that is very risky,” said Saket Modi, co-founder and chief executive of Safe Security, a cyber risk management company.

    The other kind is where a hacker doesn’t need to be an expert in breaching systems; instead, they use natural language to get a vibe of a coding platform to write malicious code.

    It’s what happened in the case of a cybercriminal using Anthropic’s Claude Code agent. In August, the US-based AI startup flagged that a hacker had used Claude Code to automate reconnaissance, harvest user credentials, and penetrate networks. Before Anthropic detected the misuse of its coding agent, the hacker had targeted 17 different organisations across healthcare, the emergency services, and government and religious institutions.

    Claude Code was used not only to target these companies but also to make strategic decisions on what data to harvest as well as how to craft psychologically targeted extortion demands, according to Anthropic’s Threat Intelligence report.

    What makes vibe hacking dangerous?

    “Because generative AI lowers the barrier to writing and refining code, criminals with little technical skill can orchestrate sophisticated attacks,” according to Aaron Rose, office of the chief technology officer at Check Point Software. That also means the frequency of cyberattacks increases due to the low barrier to entry in creating them.

    What’s more, vibe hacking attacks are capable of circumventing traditional cyber defence systems. They don’t necessarily need to break into networks or exploit software vulnerabilities either.

    “Attackers can manipulate the ‘intent’ layer of AI systems, tricking models into exfiltrating sensitive data or performing harmful actions through carefully crafted language alone,” said Operant AI co-founder and CEO Vrajesh Bhavsar. Operant AI is a cybersecurity company focused on securing AI systems.

    What makes it particularly difficult to detect vibe hacking?

    Vibe hacking can often be mistaken for conventional breaches. Vibe hacked attack payloads use programming languages like PowerShell and Python and are able to avoid traps left by a company’s cyber security team. Additionally, because of the changing code, there are no static malware samples for experts to analyse and work against either.

    Vibe hacks can look like innocuous files or content, which contain hidden prompts to attack a system. This can range from context poisoning, where shared memory between AI agents is contaminated to slipping in malicious logic into open-source code.

    “Another common pattern is privilege escalation, where an over-permissioned agent ends up misusing credentials,” said Bhavsar. “Zero-click attacks are particularly concerning because they don’t require any human action, just opening a file or connecting to a poisoned tool is enough.”

    Which industries are likely to be affected by vibe hacks?

    Hackers tend to target organisations that possess a significant amount of sensitive information or are considered critical infrastructure. Therefore, industries such as banking, financial services and insurance (BFSI), healthcare, government, and even media are targets for vibe hackers.

    “Healthcare institutions hold vast amounts of sensitive patient data, credentials, and billing information, making them key targets for hackers who can monetize this critical data on the dark web,” said Ajay Biyani, vice president of APJ, India, Middle East & Africa at US-based cybersecurity company Securonix. “The manufacturing sector, which is transforming with Industry 4.0, comes with rising cyber risks due to loT device integration and growing automation, exposing manufacturers to vibe hacking.”

    Hackers also target critical infrastructure, such as energy and utilities, which can have significant national security implications. Even retail and e-commerce aren’t safe on account of companies in the sector handling large volumes of customer data and online transactions.

    Sosafe, a cybersecurity awareness training and human risk management provider, released a report earlier this year that showed 87% of security professionals at companies encountered an AI-driven cyberattack in the last year. The survey covered 500 global security professionals as well as 100 SoSafe customers across 10 countries.

    How should companies combat vibe hacking?

    With AI attacks becoming more sophisticated and enterprises adopting AI into their ecosystems, cybersecurity experts suggest limiting AI tool privileges and access to data.

    As AI threats grow, cybersecurity experts recommend restricting AI tool privileges and data access.

    “Because each Al-generated script is unique, defenders must look for unusual patterns such as unexpected outbound connections to Al providers, scripts invoked by unusual processes, or data exfiltration disguised as routine traffic,” said Rose.

    The other way to fight vibe hacking attempts is by taking on a multi-layered approach, which includes AI-powered security tools as well as training employees to recognise AI-generated threats. “For platforms, especially those running SPAs, regular code reviews and automated vulnerability scanning are critical,” said Apeksha Kaushik, principal analyst at Gartner, a research and advisory firm.

    Cybersecurity company, Darktrace, backed by global investment firm KKR found that 78% of companies’ chief information security officer believe AI is having an impact on cyber threats. Additionally, nine in ten survey participants agree that AI-powered threats will continue to have a significant impact on their organization for the next one to two years.

    What are the security tools to fight this menace?

    When dealing with third-party vendors, asking about their AI use and software bill of materials can also be valuable. Operant AI, for instance, maps every agent identity, tool, access flow, and data touchpoint within a company’s environment.

    “We monitor agents continuously, not just for network activity but for semantic and behavioural anomalies,” said Bhavsar. As attack sophistication and frequency increase, cybersecurity experts argue that the only way forward is to develop and maintain AI-enabled solutions. “You fight fire with fire. On the defence side, everything has to be AI-enabled,” said Safe Security’s Modi.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Kavish
    • Website

    Related Posts

    Nothing About The Hyundai Inster Should Impress You. But It Does

    October 18, 2025

    Dell 14 Plus review: Premium build and all-day battery at ₹85000, is it enough?

    October 18, 2025

    UK use of AI age estimation tech on migrants fuels rights fears

    October 17, 2025

    VLGE is making it easier to world build and shop on Roblox

    October 17, 2025

    GM President Says It’s Preparing For Chinese Competition In America

    October 17, 2025

    Top 5 printers for home use balancing low ink costs, duplex printing and Wi-Fi convenience, plus easy mobile setup

    October 17, 2025

    Comments are closed.

    Top Reviews
    Editors Picks

    Nothing About The Hyundai Inster Should Impress You. But It Does

    October 18, 2025

    Dell 14 Plus review: Premium build and all-day battery at ₹85000, is it enough?

    October 18, 2025

    UK use of AI age estimation tech on migrants fuels rights fears

    October 17, 2025

    VLGE is making it easier to world build and shop on Roblox

    October 17, 2025
    About Us
    About Us

    Email Us: info@xarkas.com

    Facebook Pinterest
    © 2025 . Designed by Xarkas Technologies.
    • Home
    • Mobiles
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.