Chinese AI models raise cybersecurity concerns, new report warns

Chinese AI models raise cybersecurity concerns, new report warns

Chinese AI models raise cybersecurity concerns, new report warns

https://foxbaltimore.com/news/nation-world/chinese-ai-models-raise-cybersecurity-concerns-new-report-warns-artificial-intelligence-business-government-military

Publish Date: 2026-06-22 15:58:00

Source Domain: foxbaltimore.com

Chinese artificial intelligence models are rapidly gaining popularity in the United States, driven in part by lower costs and growing capabilities. But a new report from defense contractor Booz Allen Hamilton is raising questions about whether those savings could come with cybersecurity risks.

Researchers at the company examined four widely used Chinese AI models to evaluate how they performed when tasked with writing computer code. (TNND)

Researchers at the company examined four widely used Chinese AI models to evaluate how they performed when tasked with writing computer code. Their findings suggest some models generated significantly more security vulnerabilities under specific conditions, particularly when prompted to believe they were working for U.S. government users.

“Can code developed by these AI models be trusted?” posed Brad Medairy, president of Booz Allen’s national cyber business.

According to the study, the vulnerabilities were not traditional malware or obvious malicious code. Instead, researchers said some models appeared to alter their behavior based on the identity of the user, producing software with weaknesses that could potentially be exploited by nefarious actors.

“What we’re talking about here in vulnerabilities, this is a new class of threat,” said Eric Syphard, a senior vice president at Booz Allen.

Researchers compared the phenomenon to a “sleeper agent” — a system that appears to function normally until certain conditions trigger a different response. Unlike conventional cyberattacks that rely on hackers breaking into networks or exploiting software flaws, the concern is that organizations could unknowingly introduce vulnerabilities simply by relying on AI-generated code.

“This is a category of threat that we as a country need to figure out how to quantify and measure, how to apply guardrails that don’t dampen innovation but also keep these systems secure,” Syphard said.

Supporters of the report…

Source