Pith. sign in

REVIEW 4 cited by

LLMs unlock new paths to monetizing exploits

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 2505.11449 v1 pith:YCWQVJO4 submitted 2025-05-16 cs.CR cs.AI

LLMs unlock new paths to monetizing exploits

classification cs.CR cs.AI
keywords llmsattacksinsteadargueattackexploitsfronthuman
verification ladder T0 review T1 audit T2 compute T3 formal T4 reserved
0 comments
read the original abstract

We argue that Large language models (LLMs) will soon alter the economics of cyberattacks. Instead of attacking the most commonly used software and monetizing exploits by targeting the lowest common denominator among victims, LLMs enable adversaries to launch tailored attacks on a user-by-user basis. On the exploitation front, instead of human attackers manually searching for one difficult-to-identify bug in a product with millions of users, LLMs can find thousands of easy-to-identify bugs in products with thousands of users. And on the monetization front, instead of generic ransomware that always performs the same attack (encrypt all your data and request payment to decrypt), an LLM-driven ransomware attack could tailor the ransom demand based on the particular content of each exploited device. We show that these two attacks (and several others) are imminently practical using state-of-the-art LLMs. For example, we show that without any human intervention, an LLM finds highly sensitive personal information in the Enron email dataset (e.g., an executive having an affair with another employee) that could be used for blackmail. While some of our attacks are still too expensive to scale widely today, the incentives to implement these attacks will only increase as LLMs get cheaper. Thus, we argue that LLMs create a need for new defense-in-depth approaches.

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.

Forward citations

Cited by 4 Pith papers

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score.

  1. AI Snitches Get Glitches: Towards Evading Agentic Surveillance

    cs.AI 2026-06 unverdicted novelty 7.0

    Introduces agentic surveillance, builds SurveilBench across corporate/education/police scenarios, and shows three prompt-injection techniques to evade, deceive, or over-escalate surveillance agents.

  2. Security and Privacy Prompts in the Wild: What Users Ask LLMs and How LLMs Respond

    cs.CL 2026-06 unverdicted novelty 7.0

    Analysis of 14,727 security and privacy prompts from WildChat finds commercial LLMs give higher-quality responses than open-weight models but can produce inconsistent answers across repeated queries.

  3. AI Snitches Get Glitches: Towards Evading Agentic Surveillance

    cs.AI 2026-06 unverdicted novelty 6.0

    Formalizes agentic surveillance, releases SurveilBench for testing AI reporting behaviors across corporate, education, and police scenarios, and develops three prompt-injection evasion techniques.

  4. AI Agents Enable Adaptive Computer Worms

    cs.CR 2026-06 unverdicted novelty 6.0

    AI agents enable adaptive computer worms that propagate autonomously by reasoning about targets and synthesizing attacks using LLMs on stolen compute.