Snehal Antani, CEO of Horizon3.ai, a cybersecurity firm that uses AI to autonomously probe organizations for real-world vulnerabilities, argues that claims of AI models hacking companies on their own are overstated. Currently, these systems perform well in controlled cyber range tests but face challenges against defended and deceptive production networks. Their limitations include greedy decision-making, poor adaptation in protected environments, overdependence on limited training data, and a tendency to interact with suspicious decoys even after recognizing them as traps. Nonetheless, the threat continues to grow as human hackers have access to virtually unlimited "AI interns" for uncovering vulnerabilities. Additionally, the rapid rise of vibe-coded applications and AI agents is expanding the pool of insecure systems vulnerable to attack.
Source