Skip to main content

Frontier AI: what you need to know

The enhanced threat from AI-powered cyber attacks is real, but organisations can use AI to improve defences and embrace opportunities.

Artificial intelligence (AI) is no longer a distant or speculative issue for cyber security. The most advanced AI tools, often referred to as frontier AI, make it easier, faster and cheaper for even low-skilled hackers to carry out sophisticated cyber attacks.

Key messages for leaders and board members

  • AI is making it easier and faster for criminals to attack those organisations that do not have basic cyber security protections in place.

  • The NCSC believes that AI will ultimately be a ‘net positive’ for cyber security, but the path to reaching this point requires urgent action now and board-level engagement.

  • The rise of agentic AI tools (a new class of frontier AI) means organisations need to understand how they are used, and what access they have to systems and data.

  • Maintaining good cyber security fundamentals remains the best way to protect your organisation from all digital threats, whether those are AI-assisted or not.


What does frontier AI mean for cyber security?

Cyber attacks which once required specialist skills (such as writing code, understanding system architecture, or discovering weaknesses in computer systems) can increasingly be automated using AI.  This does not fundamentally change cyber risk, but it does increase the speed and scale at which existing weaknesses can be found and exploited.

Agentic AI tools - a new class of frontier AI - go even further and can plan, make decisions and take actions on your behalf. 

However, by carefully adopting frontier AI tools, network defenders can retain an advantage over cyber criminals. Technology suppliers are already using AI to identify and fix vulnerabilities in their products and services to protect users from new threats.

Organisations that act now can strengthen their resilience, reduce future disruption and demonstrate to customers, prospects and suppliers that they’re ready to face the future opportunities that AI promises. Those that delay risk exposing their organisation to a wave of vulnerabilities that AI tools are rapidly exploiting.
 

AI: a deeper look

The following resources have been created by the NCSC for security professionals and the wider technical community. 


International collaboration

Frontier AI is a global challenge that requires a global response. Together with international partners across government, industry and academia, we have contributed to the following publications.