* [![perspectives](https://origin-www.paloaltonetworks.com/perspectives/wp-content/uploads/2025/02/prespective-icon.png)](https://origin-www.paloaltonetworks.com/perspectives)
* Weaponized Intelligence

English

* [English](https://develop.paloaltonetworks.com/perspectives/weaponized-intelligence)
* [Français (French)](https://www.paloaltonetworks.fr/perspectives/quand-lia-devient-une-arme/)
* [日本語 (Japanese)](https://www.paloaltonetworks.jp/perspectives/%e6%ad%a6%e5%99%a8%e3%81%a8%e3%81%97%e3%81%a6%e5%88%a9%e7%94%a8%e3%81%95%e3%82%8c%e3%82%8b%e3%82%a4%e3%83%b3%e3%83%86%e3%83%aa%e3%82%b8%e3%82%a7%e3%83%b3%e3%82%b9/)
* [Deutsch (German)](https://www.paloaltonetworks.de/perspectives/die-gefahr-durch-ki-gestuetzte-angriffe/)
* [Español (Spanish)](https://www.paloaltonetworks.es/perspectives/inteligencia-convertida-en-arma/)

# Weaponized Intelligence

![Weaponized Intelligence](https://origin-www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/03/Weaponized-Intelligence-featured.jpg)  
**By [Nikesh Arora](https://origin-www.paloaltonetworks.com/perspectives/author/nikesh-arora/ "Posts by Nikesh Arora")** | **5 min read** |  
![share icon](https://paloaltonetworks.com/content/dam/pan/en_US/cxo-perspectives/images/cxo-share.svg)

* LinkedIn button ![linkedin-icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/microsite/cortex/images/share-linkedin.svg)
* Twitter share button ![twitter-icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/microsite/cortex/images/share-twitter-x-black.svg)
* \[Email share button ![email-icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/microsite/cortex/images/share-email.svg)\](mailto:?subject=Weaponized Intelligence\&body=Check out this article https%3A%2F%2Forigin-www.paloaltonetworks.com%2Fperspectives%2Fweaponized-intelligence%2F "Share in Email")
* ![copy-icon](https://origin-www.paloaltonetworks.com/perspectives/wp-content/themes/csp2025/dist/images/icons/icon-share.svg)
  [](https://origin-www.paloaltonetworks.com/perspectives/weaponized-intelligence/?pdf=download&lg=en&_wpnonce=f92ffc4863 "Click here to download") MEET THE AUTHOR  
  ![](https://origin-www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/03/nikesh-arora-headshot.jpg)  
  Nikesh Arora is chairman and CEO of Palo Alto Networks, the world's leading cybersecurity company. During his tenure of seven years, he has led the company through a major transformation to become the global leader in AI and cybersecurity, and the security partner of choice for enterprise organizations and governments around the world. Before joining Palo Alto Networks in 2018, Mr. Arora served as president and chief operating officer of SoftBank Group Corp. Prior to that, Mr. Arora spent ten years at Google, Inc. as a senior executive, where he was senior vice president and chief business officer, president of global sales operations and business development, and president of Europe, the Middle East and Africa. His career also includes serving as chief marketing officer for the T-Mobile International Division of Deutsche Telekom AG, and chief executive officer and founder of T-Motion PLC, which merged with T-Mobile International in 2002. Nikesh Arora serves on the board of Uber Technologies, Inc., and as a non-executive director of Compagnie Financière Richemont S.A., a public Switzerland-based luxury goods holding company. Previously, he served on the boards of SoftBank Group Corp., Airtel, Aviva, Sprint Corp., Colgate-Palmolive Inc., Tipping Point and Yahoo! Japan, among others. He holds an M.B.A. in business administration from Northeastern University, an M.S. in finance from Boston College, and a B. Tech. in electrical engineering from the Institute of Technology at Banaras Hindu University. He has received numerous awards for leadership and influence shaping the culture of Palo Alto Networks including Newsweek's Most Loved Workplaces (2023, 2022, 2021), CRN's Top 100 Executives "Most influential", Comparably's Annual list of Best CEOs for Women, with a score of 100 on the Disability Equality Index (2023, 2022), and HRC Best Places for LGBTQ+ Equality (2022)....

[Learn more](https://origin-www.paloaltonetworks.com/perspectives/author/nikesh-arora/)

## IN THIS ARTICLE

RECOMMENDED READING

  * ![AI Wrote the Code…So Now Who’s Accountable?](https://origin-www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/01/ai-wrote-the-code-featured.jpg)  
    **AI Wrote the Code...So Now Who's Accountable?**  
    Discover ways to move beyond the risks of vibe coding....

[Learn more](https://origin-www.paloaltonetworks.com/perspectives/ai-wrote-the-codeso-now-whos-accountable/)

  * ![AI’s Front Door: Why the Browser Is Your Most Critical Control Point](https://origin-www.paloaltonetworks.com/perspectives/wp-content/uploads/2025/10/ai-front-door-featured.jpg)  
    **AI's Front Door: Why the Browser Is Your Most Critical Control Point**  
    The browser is AI's unlocked front door --- and your biggest risk....

[Learn more](https://origin-www.paloaltonetworks.com/perspectives/ais-front-door-why-the-browser-is-your-most-critical-control-point/)  
*AI is giving attackers their most powerful weapon. Now it has to become the defense.*

The frontier model capabilities are no longer theoretical. Anthropic, OpenAI and others will soon be releasing models that are, by any honest measure, proficient at finding vulnerabilities at scale. These are not incremental improvements. Imagine a horde of agents methodically cataloging every weakness in your technology infrastructure, constantly.

Over the next six months, the barrier to entry for sophisticated attacks will continue to diminish. A hacker's dream weapon will be available to anyone with a credit card and computer.

What makes this moment different is not just capability. It is the asymmetry, and for now, it favors the attacker. A single bad actor will now be able to run campaigns that once required entire teams. The models do not pause for sleep, they scale, and they only have to be right once. Defenders have to be right every time. That is not a fair fight.

The vulnerabilities being targeted are not hard to find. The average company relies on thousands of tech vendors and millions of open-source dependencies with years of accumulated exposure: configuration errors, overlooked API endpoints, access policies that once made sense and were never revisited. It is old chaos that has never been fully remediated, and the new models are very good at finding it.

And it compounds. Employees are testing agents without fully understanding the exposure they are creating. Vibe coding has made software creation accessible to people who were never trained to think about what it opens up. Every desktop now effectively behaves like a server and is likely to have unsupervised AI tools operating near sensitive systems. The attack surface keeps growing, mostly unnoticed.

**The reckoning will arrive sooner than most leaders expect.**

The fastest [AI-assisted attacks are already moving from access to exfiltration in 25 minutes](https://www.paloaltonetworks.com/resources/research/unit-42-incident-response-report), while the average enterprise still takes days to detect an intrusion. These numbers were already uncomfortable. The new frontier models will make them untenable. No company is immune. Not even the AI data centers powering these models, which run on the same enterprise IT they are capable of exposing. The model is not the solution yet, it will exacerbate the problem.

The question I hear most often is: *Now what?*

**The role of the cybersecurity industry: The models creating this problem will play a role in the defense, fighting AI with AI**

The key lies in the fact that the same models that find and exploit vulnerabilities can also be part of the defense, but only if they are quickly integrated into defensive solutions. The advantage for defenders is the ability to deploy these models to swiftly identify, validate, and patch the same vulnerabilities they uncover, essentially in real-time. Attackers have access to this technology, and so do we. The strategy is clear: [we must fight AI with AI](https://www.paloaltonetworks.com/cortex/fight-ai-with-ai).

It's important to remember that these models aren't effective as comprehensive defense systems. They never will be. They are powerful, but they need scaffolding that we've spent years building. The scaffolding for cybersecurity includes:

* **Sensors**: Sensors across the network, cloud, endpoints and browsers, that both collate data, and stop known threats before they go further. Years of technology has been built to protect the edge, and it will need to be supplemented with AI. Models cannot fix what the sensors cannot see. The edge instrumentation is not optional, it is the first condition.
* \*\*AI-enabled data lakes:\*\*Sensors alone generate noise. What converts noise into actionable intelligence is context, and context requires a rich security-specific data lake built to receive, normalize, and retain signal. Logical data lakes are rich enough to give AI the context to convert a suspicious signal into a confirmed signal and an actual response. The data lake is not storage, it allows models to analyze data on the fly, in combination with years of machine learning algorithms that have been created by the industry to anticipate edge cases and known techniques. This combination is hard to replicate, and harder to attack.
* **Build the foundation, break the silos:** There has never been a more important time to reduce fragmentation for the cybersecurity stack. [Research shows](https://www.paloaltonetworks.com/engage/unit42-2025-global-incident-response-report) that in 75% of breaches, logging existed that should have flagged anomalous behavior, but critical signals were buried and never actioned before it was too late. The signals were there, but they were buried across fragmented tools. The data needs to be in the same place, the modern tools need to be self healing. That gap was manageable when attacks moved at human speed. At the speed AI enables, it will become untenable. Consolidation is not a modernization preference. It is a prerequisite.

The solution is not to pit the LLMs against cybersecurity, it's to work together.

* AI labs need to release these capabilities in a responsible fashion, whilst ensuring the defenders and national guardians of security have been consulted.
* New capabilities around cybersecurity and agentic workflows should be secured by design, not launched by AI companies with no regard to security.
* Defenders need to be able to leverage these capabilities swiftly to ensure that we are able to fight AI with AI.

The stakes are high. The window to act is open, and we need to act swiftly with intent, together. Every security leader, every board, every AI company needs to treat this with the urgency it demands.

This is the cybersecurity industry's most consequential moment.

Get the foundation right, and AI becomes the defender. Get it wrong, and no model in the world will save you.

**Our work is well underway. Across the industry with the AI labs, with technology vendors, with our partners, with our customers, we are building the foundation that makes defense possible. The AI labs have a role to play and so do all of you.**

**Cybersecurity resources just got dearer.**

* [AI](https://origin-www.paloaltonetworks.com/perspectives/all-articles/?cat=ai)
* [Secure AI Usage](https://origin-www.paloaltonetworks.com/perspectives/all-articles/?cat=secure-ai-usage)

## Related Content

![](https://origin-www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/03/Why-Cybersecurity-KPIs-Are-Changing-featured.jpg) BLOG

### AI

**Why Cybersecurity KPIs Are Changing (And What This Means for Security Leaders)**

True cyber resilience is impossible to achieve without strategic and tactic...

[Helmut Reisinger](https://origin-www.paloaltonetworks.com/perspectives/author/helmut-reisinger/ "Posts by Helmut Reisinger")
[](https://origin-www.paloaltonetworks.com/perspectives/why-cybersecurity-kpis-are-changing-and-what-this-means-for-security-leaders/)  
![](https://origin-www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/03/RFP-Bottleneck-featured.jpg) BLOG

### AI

**From Weeks to Minutes: How We Applied an AI-First Transformation to the RFP Bottleneck**

Understanding why manual efforts burn hundreds of hours and are bottlenecki...

[Sandeep Uttamchandani](https://origin-www.paloaltonetworks.com/perspectives/author/sandeep-uttamchandani/ "Posts by Sandeep Uttamchandani")
[](https://origin-www.paloaltonetworks.com/perspectives/from-weeks-to-minutes-how-we-applied-an-ai-first-transformation-to-the-rfp-bottleneck/)  
![](https://origin-www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/03/AdobeStock_704394220-16x7-1-scaled.png) BLOG

### AI

**Is Your Enterprise Architecture Ready for the Agentic Workforce?**

Exploring autonomous, agent-to-agent risk: Why your security needs governed...

[Anand Oswal](https://origin-www.paloaltonetworks.com/perspectives/author/anand-oswal/ "Posts by Anand Oswal")
[](https://origin-www.paloaltonetworks.com/perspectives/is-your-enterprise-architecture-ready-for-the-agentic-workforce/)  
STAY CONNECTED

## Connect with our team today

Job Level  
Sign me up to receive news, product updates, sales outreach, event information and special offers about Palo Alto Networks and its partners.  
By submitting this form, I understand my personal data will be processed in accordance with Palo Alto Networks [Privacy Statement](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown) and [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown).  
This site is protected by reCAPTCHA and the Google [Privacy Policy](https://policies.google.com/privacy) and [Terms of Service](https://policies.google.com/terms) apply.
Reach out  
{#footer} Products and Services

* [AI-Powered Network Security Platform](https://www.paloaltonetworks.com/network-security?ts=markdown)

* [Secure AI by Design](https://www.paloaltonetworks.com/ai-security?ts=markdown)

* [Prisma AIRS](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown)

* [AI Access Security](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown)

* [Cloud Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown)

* [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown)

* [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown)

* [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown)

* [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown)

* [Enterprise Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown)

* [Enterprise IoT Security](https://www.paloaltonetworks.com/network-security/enterprise-device-security?ts=markdown)

* [Medical IoT Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown)

* [Industrial OT Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown)

* [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown)

* [Next-Generation Firewalls](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown)

* [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown)

* [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown)

* [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown)

* [SD-WAN for NGFW](https://www.paloaltonetworks.com/network-security/sd-wan-subscription?ts=markdown)

* [PAN-OS](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown)

* [Panorama](https://www.paloaltonetworks.com/network-security/panorama?ts=markdown)

* [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown)

* [Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown)

* [Application Acceleration](https://www.paloaltonetworks.com/sase/app-acceleration?ts=markdown)

* [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown)

* [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown)

* [Prisma Access](https://www.paloaltonetworks.com/sase/access?ts=markdown)

* [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown)

* [Prisma SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown)

* [Remote Browser Isolation](https://www.paloaltonetworks.com/sase/remote-browser-isolation?ts=markdown)

* [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown)

* [AI-Driven Security Operations Platform](https://www.paloaltonetworks.com/cortex?ts=markdown)

* [Cloud Security](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown)

* [Cortex Cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown)

* [Application Security](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown)

* [Cloud Posture Security](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown)

* [Cloud Runtime Security](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown)

* [Prisma Cloud](https://www.paloaltonetworks.com/prisma/cloud?ts=markdown)

* [AI-Driven SOC](https://www.paloaltonetworks.com/cortex?ts=markdown)

* [Cortex XSIAM](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown)

* [Cortex XDR](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown)

* [Cortex XSOAR](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown)

* [Cortex Xpanse](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown)

* [Unit 42 Managed Detection \& Response](https://www.paloaltonetworks.com/cortex/managed-detection-and-response?ts=markdown)

* [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown)

* [Next-Generation Identity Security](https://www.paloaltonetworks.com/idira?ts=markdown)

* [Privileged Access Management](https://www.paloaltonetworks.com/idira/human/privileged-access-management?ts=markdown)

* [Identity and Access Management](https://www.paloaltonetworks.com/idira/human/identity-and-access-management?ts=markdown)

* [Endpoint Privilege Manager](https://www.paloaltonetworks.com/idira/human/endpoint-privilege-manager?ts=markdown)

* [Identity Governance](https://www.paloaltonetworks.com/idira/human/identity-governance?ts=markdown)

* [Workforce Password Management](https://www.paloaltonetworks.com/idira/human/workforce-password-management?ts=markdown)

* [Agentic Identities](https://www.paloaltonetworks.com/idira/agentic?ts=markdown)

* [Secrets Management](https://www.paloaltonetworks.com/idira/machine/secrets-management?ts=markdown)

* [Unified Secrets Governance](https://www.paloaltonetworks.com/idira/machine/unified-secrets-governance?ts=markdown)

* [Application Credentials Delivery](https://www.paloaltonetworks.com/idira/machine/application-credentials-delivery?ts=markdown)

* [Vendor Privileged Access](https://www.paloaltonetworks.com/idira/human/vendor-privileged-access?ts=markdown)

* [Threat Intel and Incident Response Services](https://www.paloaltonetworks.com/unit42?ts=markdown)

* [Prepare for Emerging Risks](https://www.paloaltonetworks.com/unit42/frontier-ai-defense?ts=markdown)

* [Strengthen Your Defenses](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses?ts=markdown)

* [Build Your Security Strategy](https://www.paloaltonetworks.com/unit42/build-your-security-strategy?ts=markdown)

* [Understand the Adversary](https://www.paloaltonetworks.com/unit42/threat-intelligence?ts=markdown)

* [Respond to a Cyber Attack](https://www.paloaltonetworks.com/unit42/respond?ts=markdown)  
  Company

* [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown)

* [Careers](https://jobs.paloaltonetworks.com/en/)

* [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown)

* [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown)

* [Customers](https://www.paloaltonetworks.com/customers?ts=markdown)

* [Investor Relations](https://investors.paloaltonetworks.com/)

* [Location](https://www.paloaltonetworks.com/about-us/locations?ts=markdown)

* [Newsroom](https://www.paloaltonetworks.com/company/newsroom?ts=markdown)  
  Popular Links

* [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown)

* [Communities](https://www.paloaltonetworks.com/communities?ts=markdown)

* [Content Library](https://www.paloaltonetworks.com/resources?ts=markdown)

* [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown)

* [Event Center](https://events.paloaltonetworks.com/)

* [Manage Email Preferences](https://start.paloaltonetworks.com/preference-center)

* [Products A-Z](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown)

* [Product Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/certifications?ts=markdown)

* [Report a Vulnerability](https://www.paloaltonetworks.com/security-disclosure?ts=markdown)

* [Sitemap](https://www.paloaltonetworks.com/sitemap?ts=markdown)

* [Tech Docs](https://docs.paloaltonetworks.com/)

* [Unit 42](https://unit42.paloaltonetworks.com/)

* [Do Not Sell or Share My Personal Information](https://panwedd.exterro.net/portal/dsar.htm?target=panwedd)
  ![Palo Alto Networks Logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/pan-logo-dark.svg)

* [Privacy](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown)

* [Trust Center](https://www.paloaltonetworks.com/legal-notices/trust-center?ts=markdown)

* [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown)

* [Documents](https://www.paloaltonetworks.com/legal?ts=markdown)

Copyright © 2026 Palo Alto Networks. All Rights Reserved

* [![Youtube](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/youtube-black.svg)](https://www.youtube.com/user/paloaltonetworks)
* [![Podcast](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/icons/podcast.svg)](https://www.paloaltonetworks.com/podcasts/threat-vector?ts=markdown)
* [![Facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/facebook-black.svg)](https://www.facebook.com/PaloAltoNetworks/)
* [![LinkedIn](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/linkedin-black.svg)](https://www.linkedin.com/company/palo-alto-networks)
* [![Twitter](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/twitter-x-black.svg)](https://twitter.com/PaloAltoNtwks)
* EN  
  Select your language
