A company released a free vulnerability risk assessment tool for Java virtual machines in the period, targeting a blind spot that had been exploited by attacks conducted with autonomous artificial intelligence.
The chosen target says a lot. That component underpins an enormous share of corporate infrastructure, especially in older systems still in production because they work, and it's precisely where security attention tends to be thinnest.
Explicitly naming autonomous AI attacks in the product description marks a threat's passage from theory into commercial product. Tools sell for problems buyers recognise.
The automated attacker's advantage in this scenario is familiar: patience and scale. Cataloguing component versions across every server in an organisation and cross-referencing known vulnerabilities is tedious work for a person and trivial for a machine.
The defence, however, uses exactly the same advantage, and that's what the tool offers. It's the symmetry that ran through the semester: the capability that worries on one side is the one that protects on the other.
