New IBM Security Services Aim to Counter Risks of Frontier AI Models
嗯,用户让我总结一下这篇文章的内容,控制在100个字以内,而且不需要用“文章内容总结”之类的开头。好的,我先看看文章讲的是什么。 文章主要讲IBM推出了一个叫做IBM Autonomous Security的项目,利用AI代理帮助组织评估他们保护自己免受网络安全威胁的能力。这些AI代理可以分析软件漏洞、发现攻击路径、强化安全措施等等。同时,IBM还提供了一个新的网络安全评估服务,详细检查组织IT环境中的安全弱点,并提供缓解指导。 另外,文章提到了前沿AI模型在提升网络安全能力的同时也带来了新的威胁,比如加快攻击速度和降低攻击者技能要求。还有Anthropic的Claude Mythos Preview模型展示了AI在识别和利用软件漏洞方面的强大能力,同时也被用来开发防御技术。 最后,OpenAI推出了GPT-5.4-Cyber版本,专注于网络安全,并通过Trusted Access for Cyber计划限制其发布。 好的,现在我需要把这些信息浓缩到100字以内。重点包括IBM的AI代理、前沿模型的双刃剑作用、Claude Mythos Preview和GPT-5.4-Cyber的情况。 可能的结构:IBM推出AI代理帮助组织应对前沿模型带来的网络安全威胁;前沿模型既提升防御又增加风险;Claude和GPT-5.4-Cyber展示AI在安全领域的潜力与挑战。 这样大概控制在100字左右。 </think> IBM推出AI代理技术帮助组织应对前沿模型带来的网络安全威胁。前沿模型既提升了防御能力,也增加了攻击风险。Claude Mythos Preview和GPT-5.4-Cyber展示了AI在安全领域的双刃剑作用。 2026-4-17 15:58:22 Author: securityboulevard.com(查看原文) 阅读量:2 收藏

IBM wants to use AI agents to help organizations assess their ability to protect themselves from the cybersecurity risks that increasingly advanced AI frontier models pose when they’re used by threat actors.

The IT giant’s consulting unit this week unveiled IBM Autonomous Security, a collection of specialized and coordinated agents that Big Blue executives said will wend their way through an enterprise’s often-sprawling security stack and enable it to work more as a unified system than a collection of tools that work on their own.

The agents are charged with a range of tasks, including analyzing weaknesses in software that expose them to cyber risks, finding exploit paths in runtime environments, bolstering security practices and enforcing policies within security tools, detecting anomalies, and containing cyberthreats.

At the same time, IBM Consulting is offering a new cybersecurity assessment service that can detail security weaknesses in an organization’s IT environment, including gaps in security, exposures in AI policies, and potential paths bad actors can use to exploit such weaknesses. They’ll spot security issues – including attacks – and respond to them.

In addition, the service will offer enterprises mitigation guidance that details the priorities and show how they can more quickly detect and respond to agentic-based threats by enhancing automation in their operations and improving their architectural alignment.

Frontier Models’ Dual Uses

Frontier models are expanding both the cybersecurity capabilities for organizations and the cyberthreat risks they create, including accelerating the speed of attacks and lowering the skill level needed by bad actors to launch sophisticated, automated campaigns.

“Frontier AI offers significant promise for cybersecurity, including accelerating vulnerability discovery and patching, optimizing defensive systems, and enhancing threat detection capabilities,” the Frontier Model Forum, an industry group launched three years ago by Microsoft, Google, Anthropic, and OpenAI that promotes the safe and responsible development of frontier models, wrote in February. “However, these same capabilities create dual-use risks, potentially lowering barriers for malicious actors to exploit known vulnerabilities or discover new attack vectors. As AI capabilities advance, it is crucial to develop robust risk management frameworks that maximize security benefits while proactively addressing emerging risks.”

Mark Hughes, global managing partner of cybersecurity services for IBM Consulting, echoed the sentiment, saying in a statement that “frontier models are creating a new category of enterprise threat that is fast moving, systemic and increasingly autonomous. Meeting that threat requires a systemic defense.”

Illustrating the Dangers

The cybersecurity industry this month got hard lessons in what frontier models are capable of. Anthropic executives last week unveiled Claude Mythos Preview, a general-purpose frontier model that they wrote was “strikingly capable at computer security tasks.”

In particular, the model is particularly good at identifying software vulnerabilities, detecting some that have gone undetected for more than two decades. That said, it’s equally as good at autonomously creating exploits for the security flaws, so good that Anthropic executives are limiting its release to particular users.

“Claude Mythos Preview is a general-purpose, unreleased frontier model that reveals a stark fact: AI models have reached a level of coding capability where they can surpass all but the most skilled humans at finding and exploiting software vulnerabilities,” they wrote.

The vendor also is using it to create guardrails that will be used in an upcoming version of its Claude Opus model that won’t pose the same level of risk as Mythos. In addition, Mythos Preview is being used as the foundation of Project Glasswing, an initiative launched with Amazon Web Services, Apple, Broadcom, Cisco, CrowdStrike, Google, JPMorgan Chase, the Linux Foundation, Microsoft, Nvidia, and Palo Alto Networks.

The companies will use Mythos Preview in their work developing defensive security technologies. In addition, more than 40 other organizations that build or maintain key software infrastructure will use it to scan and secure systems running their first-party and open software.

OpenAI and GPT-5.4-Cyber

This week, OpenAI introduced GPT-5.4-Cyber, a cybersecurity-focused variant of its GPT-5.4 model that also will be limited in its release through its Trusted Access for Cyber (TAC) program for similar reasons.

“Our goal is to make these tools as widely available as possible while preventing misuse,” OpenAI executives wrote. “Ultimately, we aim to make advanced defensive capabilities available to legitimate actors large and small, including those responsible for protecting critical infrastructure, public services, and the digital systems people depend on every day.”

Recent Articles By Author


文章来源: https://securityboulevard.com/2026/04/new-ibm-security-services-aim-to-counter-risks-of-frontier-ai-models/
如有侵权请联系:admin#unsafe.sh