100 Firms Warn AI Cyberattacks Will Grow Within Months, Putting Hospitals and Utilities at Risk
The coalition wants AI developers and governments to put defensive tools, testing, training, and support in the hands of organizations running essential services.
Listen to this story
The audio brief
Story brief
3 key pointsOpenAI and more than 100 companies are urging governments, AI developers, and essential-service operators to accelerate cyber defense, arguing the advantage attackers gain from AI could arrive within months. The coalition points to exploitable basics—unpatched software, weak authentication, misconfigurations, and legacy systems—and calls for continuous frontier-AI testing, shared intelligence, response playbooks,...
- 01
Supporters span Anthropic, Google, Microsoft, CrowdStrike, banks, payment networks, Cisco, SAP, and IBM.
- 02
A mid-August NSA, CISA, and FBI warning said attackers were using AI to write Siemens S7 exploit scripts.
- 03
CrowdStrike reported AI-enabled attacks increased 89% in 2025 versus 2024.
Hospitals, water utilities, and other essential services face a limited period to improve their cyber defenses before AI-enabled attacks become more widespread and sophisticated, the signatories of a new open letter warn. They put that period at months, not years, and argue that attackers may gain from the same advances defenders can use to find and repair weaknesses.
OpenAI published the global cyber-defense letter with more than 100 company co-signers. The group spans AI developers, cloud providers, security companies, banks, and payment networks; named supporters include Anthropic, Google, Microsoft, CrowdStrike, Capital One, Mastercard, Visa, Cisco, SAP, and IBM.
The letter does not cast AI as the source of every security failure. It points instead to longstanding bugs, excessive permissions, misconfigurations, unpatched software, weak authentication, and technical debt in legacy systems. The signatories say today’s security posture will not be enough as AI capabilities improve, and fault historic underinvestment in critical-infrastructure security.
If we act decisively, we can use the defenders' window to make our digital world much more secure.
The open letter, as quoted by CBS News
The prescription is operational as well as political. Organizations are asked to make cyber defense a leadership priority, invest in security teams, test defenses continuously against frontier AI capabilities, and upgrade vulnerable older systems. The letter also calls for shared threat intelligence and tested response playbooks, with results judged by protection coverage, containment speed, and whether fixes work.
Who the letter asks to act
- Governments should strengthen and coordinate defenses at local, national, and international levels.
- Hospitals, water utilities, and local governments should receive capable defensive AI, authorized testing, and hands-on support through trusted providers and partners.
- Frontier AI companies should fund training, provide responsible model access, secure their systems, and offer critical-infrastructure operators technical help.
The coalition explicitly asks AI companies to make security tools affordable for underfunded organizations. That makes availability a central test of the proposal: the letter seeks advanced defensive tools for operators that run essential services, rather than reserving them for well-resourced security teams.
The months-long timeline remains the signatories’ forecast. But a mid-August joint warning from the NSA, CISA, and FBI said attackers were already using AI to write exploit scripts targeting Siemens S7 industrial-control systems in U.S. energy, water, chemical, and manufacturing sectors. Separately, CrowdStrike reported that AI-enabled attacks rose 89% in 2025 from 2024.
Sources
- the-decoder.comOpenAI rallies 100+ companies to sign open letter warning AI-powered cyberattacks on critical infrastructure are imminent
- bbc.comGoogle, Microsoft and OpenAI among 100 firms calling for better cyber defences
- cbsnews.comOpenAI, Anthropic, tech leaders warn of
- foxbusiness.comOpenAI, 100+ companies warn of coming surge in AI-powered cyberattacks, call for global defense push