MIT AI Risk Repository · domain 4: Malicious actors

4.2 Cyberattacks, weapon development or use, and mass harm

Using AI systems to develop cyber weapons (e.g., coding cheaper, more effective malware), develop new or enhance existing weapons (e.g., Lethal Autonomous Weapons or CBRNE), or use weapons to cause mass harm.

Risk entries
82
Frameworks citing it
12
Recorded incidents
15
Incidents since 2020
14
Causal entity (risk entries)
Causal entity (risk entries) 61 0 Human: 61 Human 61 AI: 11 AI 11 Other: 8 Other 8 Not coded: 2 Not coded 2
Causal entity (risk entries)
LabelValue
Human61
AI11
Other8
Not coded2
Intent (risk entries)
Intent (risk entries) 68 0 Intentional: 68 Intentional 68 Other: 10 Other 10 Unintentional: 2 Unintentional 2 Not coded: 2 Not coded 2
Intent (risk entries)
LabelValue
Intentional68
Other10
Unintentional2
Not coded2
Timing (risk entries)
Timing (risk entries) 71 0 Post-deployment: 71 Post-deployment 71 Other: 7 Other 7 Pre-deployment: 2 Pre-deployment 2 Not coded: 2 Not coded 2
Timing (risk entries)
LabelValue
Post-deployment71
Other7
Pre-deployment2
Not coded2
Recorded incidents per yearIncident date; current year partial
Recorded incidents per year 9 0 2017: 1 2017 1 2020: 1 2020 1 2022: 1 2022 1 2023: 1 2023 1 2024: 2 2024 2 2025: 9 2025 9
Recorded incidents per year
LabelValue
20171
20201
20221
20231
20242
20259
Entries by levelRisk categories, subcategories and additional evidence coded to this subdomain
Entries by level 66 0 Risk Category: 16 Risk Category 16 Risk Sub-Category: 66 Risk Sub-Category 66
Entries by level
LabelValue
Risk Category16
Risk Sub-Category66
  • Business operations/infrastructure damage

    "Business operations/infrastructure damage - Damage, disruption, or destruction of a business system and/or its components due to malfunction, cyberattacks, etc."

    A Collaborative, Human-Centred Taxonomy of AI, Algorithmic, and Automation Harms (Abercrombie2024) · Other · Other · Post-deployment

  • Violence/armed conflict

    "Violence/armed conflict - Use or misuse of a technology system to incite, facilitate or conduct cyberattacks, security breaches, lethal, biological and chemical weapons development, resulting in viol...

    A Collaborative, Human-Centred Taxonomy of AI, Algorithmic, and Automation Harms (Abercrombie2024) · Human · Intentional · Post-deployment

  • Security & Defense

    "AI could enable more serious incidents to occur by lowering the cost of devising cyber-attacks and enabling more targeted incidents. The same programming error or hacker attack could be replicated on...

    The Rise of Artificial Intelligence - Future Outlooks and Emerging Risks (Allianz2018) · Human · Intentional · Post-deployment

  • Catastrophic risk due to autonomous weapons programmed with dangerous targets

    "AI could enable autonomous vehicles, such as drones, to be utilized as weapons. Such threats are often underestimated."

    The Rise of Artificial Intelligence - Future Outlooks and Emerging Risks (Allianz2018) · Human · Intentional · Post-deployment

  • Warfare and Physical Harm

    "The use of AI in warfare is highly alarming and may pose dangers to human safety (Hendrycks et al., 2023). Autonomous drone warfare is being aggressively pursued as a tactic in the current war in Ukr...

    Foundational Challenges in Assuring Alignment and Safety of Large Language Models (Anwar2024) · Human · Intentional · Post-deployment

  • Hazardous Biological and Chemical Technologies

    "AI systems such as LLMs, chemical LLMs (Skinnider et al., 2021; Moret et al., 2023), and other LLM- based biological design tools might soon facilitate the production of bioweapons, chemical weapons,...

    Foundational Challenges in Assuring Alignment and Safety of Large Language Models (Anwar2024) · Human · Intentional · Post-deployment

  • Cyber offence

    "General- purpose AI systems could uplift the cyber expertise of individuals, making it easier for malicious users to conduct effective cyber- attacks, as well as providing a tool that can be used in...

    International Scientific Report on the Safety of Advanced AI (Bengio2024) · Human · Intentional · Post-deployment

  • Dual use science risks

    "General- purpose AI systems could accelerate advances in a range of scientific endeavours, from training new scientists to enabling faster research workflows. While these capabilities could have nume...

    International Scientific Report on the Safety of Advanced AI (Bengio2024) · Human · Intentional · Post-deployment

  • Cyber offence

    "Attackers are beginning to use general- purpose AI for offensive cyber operations, presenting growing but currently limited risks. Current systems have demonstrated capabilities in low- and medium- c...

    International AI Safety Report 2025 (Bengio2025) · Human · Intentional · Post-deployment

  • Biological and chemical attacks

    "Growing evidence shows general- purpose AI advances beneficial to science while also lowering some barriers to chemical and biological weapons development for both novices and experts. New language m...

    International AI Safety Report 2025 (Bengio2025) · Human · Intentional · Post-deployment

  • CBRN

    "Chemical, biological, radiological, and nuclear (CBRN) risks are broad classes of threats that have the potential to cause harm to a large number of people. Explosives are also sometimes included in...

    Dimensional Characterization and Pathway Modeling for Catastrophic AI Risks (Chin2025) · Human · Intentional · Post-deployment

  • Cyber offense

    "Cyber risks, especially in the context of cyber offense, are an existing threat that may be exacerbated by AI. [108] demonstrated that teams of LLM agents can exploit zero-day vulnerabilities when gi...

    Dimensional Characterization and Pathway Modeling for Catastrophic AI Risks (Chin2025) · Other · Intentional · Post-deployment

  • Eased development of technologies that make a global catastrophe more likely

    A Survey of the Potential Long-term Impacts of AI: How AI Could Lead to Long-term Changes in Science, Cooperation, Power, Epistemics and Values (Clarke2023) · AI · Unintentional · Post-deployment

  • AI enables development of weapons of mass destruction

    "AI is already enabling the development of weapons which could cause mass destruction —including new weapons that themselves use AI capabilities, such as Lethal Autonomous Weapons [2],10 and the poten...

    A Survey of the Potential Long-term Impacts of AI: How AI Could Lead to Long-term Changes in Science, Cooperation, Power, Epistemics and Values (Clarke2023) · Human · Intentional · Post-deployment

  • Type 5: Criminal weaponization

    One or more criminal entities could create AI to intentionally inflict harms, such as for terrorism or combating law enforcement.

    TASRA: a Taxonomy and Analysis of Societal-Scale Risks from AI (Critch2023) · Human · Intentional · Post-deployment

  • Type 6: State Weaponization

    AI deployed by states in war, civil war, or law enforcement can easily yield societal-scale harm

    TASRA: a Taxonomy and Analysis of Societal-Scale Risks from AI (Critch2023) · Human · Intentional · Post-deployment

  • Cyber Attacks

    "Hackers can obtain malicious code in a low-cost and efficient manner to automate cyber attacks with powerful LLM systems."

    Risk Taxonomy, Mitigation, and Assessment Benchmarks of Large Language Model Systems (Cui2024) · Human · Intentional · Post-deployment

  • Dual Use Science risks

    "Frontier AI systems have the potential to accelerate advances in the life sciences, from training new scientists to enabling faster scientific workflows. While these capabilities will have tremendous...

    Capabilities and Risks from Frontier AI (DSIT2023) · Human · Intentional · Post-deployment

  • Cyber

    "As the programming abilities of AI systems continue to expand, frontier AI is likely to significantly exacerbate existing cyber risks. Most notably, AI systems can be used by potentially anyone to cr...

    Capabilities and Risks from Frontier AI (DSIT2023) · Human · Intentional · Post-deployment

  • Security

    "Though chatbots cannot (yet) develop their own novel malware from scratch, hackers could soon potentially use the coding abilities of large language models like ChatGPT to create malware that can the...

    Generating Harms - Generative AI's impact and paths forwards (EPIC2023) · Human · Intentional · Post-deployment

  • Offensive Cyber Operations (General)

    "Offensive cyber operations are malicious attacks on computer systems and networks aimed at gaining unauthorized access to, manipulating, denying, disrupting, degrading, or destroying the target syste...

    The Ethics of Advanced AI Assistants (Gabriel2024) · Human · Intentional · Post-deployment

  • AI-Assisted Software Vulnerability Discovery

    "A common element in offensive cyber operations involves the identification and exploitation of system vulnerabilities to gain unauthorized access or control. Until recently, these activities required...

    The Ethics of Advanced AI Assistants (Gabriel2024) · Human · Intentional · Post-deployment

  • Malicious Code Generation

    "Malicious code is a term for code—whether it be part of a script or embedded in a software system—designed to cause damage, security breaches, or other threats to application security. Advanced AI as...

    The Ethics of Advanced AI Assistants (Gabriel2024) · Human · Intentional · Post-deployment

  • Indiscriminate Weapons (CBRNE)

    "Indiscriminate Weapons (CBRNE) Acceptable responses may describe the creation or use of or contain information about indiscriminate weapons. Unacceptable responses will enable, encourage, or endorse...

    AILUMINATE: Introducing v1.0 of the AI Risk and Reliability Benchmark from MLCommons (Ghosh2024) · AI · Other · Post-deployment

  • Threats to human institutions and life

    "This group comprises 11% of the articles and centers on risks stemming from AI systems designed with malicious intent or that can end up in a threat to human life. It can be divided into two key them...

    What Ethics Can Say on Artificial Intelligence: Insights from a Systematic Literature Review (Giarmoleo2024) · Other · Other · Other