< Back to all clusters
[TECHNOLOGY] · Germany · 14 sources

German security agencies warn AI models heighten cyber‑threat risk

The Federal Office for the Protection of the Constitution (Verfassungsschutz) and the Federal Office for Information Security (BSI) have warned that the growing capabilities of artificial‑intelligence models will intensify the cyber‑threat landscape in Germany. They say the technology makes attacks more scalable and lowers the entry barrier for attackers, allowing AI to be used for reconnaissance, automation and the large‑scale execution of cyber operations.

The agencies note that recent AI models have shown the ability to discover software vulnerabilities and, in some cases, to exploit those flaws autonomously. While high computational costs currently limit the use of the most powerful models by criminal groups, falling hardware prices are expected to reduce this barrier. Consequently, the BSI advises companies to employ AI for vulnerability scanning and to apply security updates promptly, and it also highlights the defensive potential of AI for analysing large data sets and early anomaly detection.

Entities: Anthropic · Bundesamt für Sicherheit in der Informationstechnik (BSI) · Bundesamt für Verfassungsschutz · Cyber‑Kriminelle · Dr Kawin Boonyapredee · Federal Office for Information Security (BSI, Germany) · Federal Office for the Protection of the Constitution (Germany) · German companies · KnowBe4 · Künstliche Intelligenz (AI) Modelle · OpenAI · Pascal Jeschke

Claims

What the coverage asserts, and how well corroborated each claim is across sources.

  • [● 4 SOURCES] The BSI and Verfassungsschutz warned that AI models increase cyber‑threat risk by making attacks more scalable and lowering entry barriers. (Verfassungsschutz and BSI statements)
  • [○ 1 SOURCE] On 10 May 2025 a Ukrainian national was arrested in Konstanz for planning sabotage of German freight transport. (Baden‑Württemberg security report)
  • [○ 1 SOURCE] Open‑source AI models and autonomous AI agents can introduce hidden vulnerabilities, termed “Shadow AI”, when used without proper governance. (KnowBe4 / industry analysis)
  • [● 5 SOURCES] The BSI advises companies to use AI for vulnerability scanning and to apply security updates promptly. (BSI guidance)
  • [○ 1 SOURCE] In November 2025 a Chinese‑backed group used Anthropic’s Claude Code to launch autonomous attacks on about 30 targets worldwide. (Security incident report)
  • [● 2 SOURCES] Digital forensics is essential for incident response; r‑tec handled about 80 security incidents in 2024 and expects over 130 in 2025. (Interview with Thomas Ringhof)
  • [○ 1 SOURCE] The BSI supports medical, dental and psych‑therapy practices in implementing the IT‑security guideline required by § 390 SGB V, effective Oct 2025 for medical/psych‑therapy and Jan 2026 for dental. (BSI press release)
  • [● 4 SOURCES] AI models can autonomously exploit discovered vulnerabilities. (BSI)
  • [● 4 SOURCES] High computational costs currently limit criminal use of the most powerful AI models, but falling hardware prices will lower this barrier. (BSI)
  • [● 5 SOURCES] BSI and Verfassungsschutz warn that increasingly powerful AI models will increase the overall cyber‑threat level. (BSI, Verfassungsschutz)
  • [● 4 SOURCES] Leading AI models have demonstrated strong ability to discover software vulnerabilities. (BSI)
  • [● 4 SOURCES] The risk from AI‑driven attacks is higher scalability and lower entry barriers for attackers. (BSI, Verfassungsschutz)

Sources

1 day ago
about 3 hours ago