New autonomous AI cyberattacks challenge global security

A recent World Economic Forum (WEF) study highlights that cyber risks have become a key concern for Colombia in the coming years. The country has made significant progress in implementing measures to strengthen its cybersecurity, including international cooperation and the establishment of specialized centers aimed at mitigating the impact of increasingly sophisticated cyberattacks.
However, the Latin American Digital Threat Observatory (OLAD) recorded 411 cyberattacks targeting companies and institutions across Latin America during 2024, including attacks on critical infrastructure, espionage, and ransomware, according to its report published on January 28, 2025.
Emerging AI Threats.
In this context, Unit 42’s research, the threat intelligence team of Palo Alto Networks, titled “Agentic AI Attack Framework,” reveals how cybercriminals are beginning to leverage agentic AI, an evolution of artificial intelligence that goes beyond content generation.
Unlike generative AI, which focuses on creating text, images, or code, agentic AI consists of autonomous agents capable of making decisions, adapting to their environment, and executing multiple phases of a cyberattack without direct human intervention.
The report details how these agents can be programmed to perform tasks such as system inspection, crafting personalized phishing emails, evading security controls, manipulating real-time conversations, and erasing digital traces.
Most concerningly, these agents can learn from their mistakes, adjust their behavior, and collaborate with one another, making them a far more dynamic and difficult threat to contain.
Unlike traditional attacks that require human intervention at every stage, agentic AI attacks operate continuously and adaptively. A single agent can initiate an intrusion, assess its progress, modify its strategy, and escalate the attack without direct supervision.
This autonomy poses a significant challenge to cybersecurity teams facing threats that are faster, smarter, and more persistent.
Organizational Impact.
The consequences for organizations can be severe. Cybercriminals can send highly convincing fake emails to steal passwords, infiltrate systems, and move laterally without detection. This can lead to the theft of sensitive information, ransomware seizures of critical systems, and operational paralysis lasting days.
Beyond financial damage, these incidents harm corporate reputation, erode customer trust, and may result in legal penalties if personal or financial data are compromised.
In this landscape, organizations must have advanced and adaptable security infrastructures. Reacting to incidents is no longer enough; anticipating them through continuous monitoring, intelligent analytics, and process automation is essential.
The trend toward platformization helps reduce technological fragmentation, improve digital visibility, and enable rapid response to intrusions. Palo Alto Networks is developing a unified platform covering everything from code development to cloud environments and security operations centers (SOCs), offering a comprehensive view and facilitating centralized threat management—crucial amid increasingly sophisticated attacks.
Strategies for Colombia.
Additionally, adopting architectures like SASE (Secure Access Service Edge) strengthens security by extending protection beyond traditional perimeters, with granular controls based on identity, context, and behavior.
For Colombian organizations, these technologies represent not only a technical upgrade but also a key strategy to protect critical assets and ensure operational continuity against automated threats.
With growing digitalization in key sectors such as healthcare, education, and public services, Colombia becomes an attractive target for emerging threats. Strengthening cybersecurity capabilities is urgent, especially given the rapid adoption of digital technologies across government and business sectors.
In this context, Palo Alto Networks recommends that organizations implement security solutions integrating AI-based detection capabilities, along with awareness programs and incident response plans that address this new category of automated threats.
The evolution toward more autonomous and adaptive cyberattacks demands an equally innovative response. Only through a proactive and collaborative cybersecurity strategy can the risks posed by this new era of agentic AI-driven attacks be effectively mitigated.

