Super Intelligence: The Rise of Super-Intelligent Threats
A Sekoia perspective on what the White House's latest move means for cyber defense.Key takeawaysThe 2026-10-6 08:33:52 Author: www.sekoia.com(查看原文) 阅读量:5 收藏

A Sekoia perspective on what the White House's latest move means for cyber defense.

An abstract view of planet Earth with overlapping tones and shades of blue, and cloud formations swirling around.

Key takeaways

The White House’s decision to call AI “Super Intelligence” highlights a shift in cybersecurity. Machine-speed offense is outpacing human-led defense.

  • Threat actors can automate more of an intrusion, from reconnaissance to adaptation.
  • Defenders need systems that understand context, act quickly, and learn from each investigation.
  • Security intelligence should remain open, auditable, and under the organization’s control.

On September 29, 2026, the White House signed an executive order replacing the term "Artificial Intelligence" with "Super Intelligence" across the U.S. executive branch. The stated reasoning is that "Super Intelligence" better conveys "the true capabilities of the technologies being developed today", not merely imitating or automating human intelligence, but empowering citizens “to achieve what was previously impossible.”

You can debate the semantics. But strip away the vocabulary, and the announcement reflects something defenders have been living with for a while: machine intelligence is no longer catching up to human capability. It is beginning to outperform it. When the world's largest government adopts that framing in an official policy, it's worth taking seriously.

Capability is dual-use by default

The era of super intelligence inaugurates the era of super-intelligent threats.

Every capability curve in computing has been available to attackers and defenders alike. Usually to attackers first, because they face fewer constraints. There’s no reason to expect super intelligence to behave any differently.

The same reasoning, planning and automation that promise breakthroughs in "science, medicine, energy, and manufacturing" also compress the economics of cyber offense. Reconnaissance, vulnerability research, exploitation and adaptation…  (basically, any work that once required scarce, expensive human expertise)... can increasingly be delegated to machines and run in parallel, continuously. We describe this shift as intelligence asymmetry. Offensive capability is moving from human labor to computers, while most defense is still organized around queues of alerts and scarce human attention. And it goes without saying, but defense built at human speed simply cannot protect an organization attacked at machine speed.

Intelligence is the ultimate threat

For twenty years, the defensive operating model has followed the same old formula. Picture it. Machines generate the signals, then humans investigate and decide. That model assumed the adversary was, ultimately, a person at a keyboard.

That assumption is expiring. When the adversary can use an intelligent system to reason across more information, adapt faster and operate without fatigue, the defensive question changes. Instead of asking ourselves,"How do we process more alerts?" we must ask a much harder question: what should cyber defense become when intelligence itself is the threat?

Defenders need intelligence of their own. They need the continuous ability to understand threats, decide and act at machine speed, while learning from every outcome, and while remaining governed by humans. Automating the old alert-driven model, or placing an AI agent in front of the same alert queue, simply does not meet a machine-scale offense. It preserves the operating model the new threat is making obsolete.

The word that's missing: protection

The executive order is, understandably, a document about promise. It emphasizes opportunity, leadership, and economic benefit. Those things are real, for sure. But there’s a word that deserves equal billing as capability accelerates. Protection.

The more capable these systems become, the more capable the threats built on them become. And the more essential it is that society can defend itself as machine intelligence advances. Progress and protection are not opposing agendas. They have to advance together. A world that races toward super intelligence without building defensive intelligence to match is a world that grows more capable and more exposed at the same time.

Own the data. Govern the intelligence

The announcement also highlights the strategic importance of who actually develops and controls advanced intelligence. For every organization, regardless of geography, the question is becoming more practical. Who exactly controls the systems that defend the business?

As AI deepens its hold on security operations, organizations need more than assurances about where their data is really stored. 

They need: 

  • full, total transparency into how systems operate
  • the ability to choose their infrastructure and models, 
  • clear governance over autonomous actions, 
  • the resilience to continue defending themselves if a provider, model or external service changes.

They also need to benefit from the best available intelligence while retaining control of their data and security decisions. 

Ultimately, it’s all about operational independence. We need defensive systems that work across existing environments, remain auditable and adaptable, and do not turn a critical security function into an opaque dependency on any single provider.

For CISOs everywhere, the principle is simple: advanced intelligence should increase an organization’s capabilities without reducing its control.

What this really means in practice

The response to super-intelligent offense is not more AI features bolted onto yesterday's SOC. It is autonomous defensive intelligence. An open layer that can reason and act across the whole security environment, grounded in:

  • Adversary knowledge: Knowing the infrastructure, techniques and intent behind an attack.
  • Context: The organization's own assets, identities and exposures.
  • Memory: Experience that compounds with every investigation and outcome, instead of resetting.
  • Action: The ability to contain and remediate, connected to the systems that matter.
  • Governance: Autonomy that stays bounded, auditable and reversible, under human command.

And it must be independent and open (i.e. able to work across any stack, any model, anywhere the data lives). Otherwise, organizations risk making a critical security function dependent on a single provider’s platform, precisely when flexibility and control matter most. 

The bottom line

Call it AI or call it Super Intelligence. The name matters less than the trajectory:

Super Intelligence demands a new defensive capability. One that enables organizations to continuously understand threats, decide and act at machine speed, and learn from every outcome.

That is the defensive intelligence Sekoia is building.


文章来源: https://www.sekoia.com/blog/the-era-of-super-intelligence-is-also-the-era-of-super-intelligent-threats
如有侵权请联系:admin#unsafe.sh