Industry executives and experts share their predictions for 2024. Read them in this 16th annual VMblog.com series exclusive.
Generative AI and Large Language Models Will Reshape Cloud Security and Threat Sophistication
By Chen Burshan, CEO, Skyhawk Security
There’s no disputing McKinsey’s assessment that 2023 has been the breakout year for generative AI (gen AI) and large language models (LLMs). We’ve seen an enormous burst of gen AI experimentation, adoption and innovation fueled by the AI foundation models that have come onto the market.
The ability to identify patterns in massive amounts of data, and do it at hyper speeds, makes gen AI a great fit for threat detection and other applications in cybersecurity. Training the models on millions of security data points from across the web can significantly improve threat detection performance. Of course, as with any new technology, gen AI can be exploited by malicious actors.
From our vantage point as the first cloud security company to embed gen AI functionality into the threat detection process, Skyhawk has identified three key trends that we think will affect cloud security practices in 2024.
1. LLMs Will Reshape Cloud Security
In 2024, the evolution of gen AI and LLMs+ is poised to redefine the cybersecurity chain, elevating efficiency and minimizing manpower dependencies in cloud security. One example is detection tools fortified by LLMs. We’ll see LLMs bolster log analysis to provide early, accurate and comprehensive detection of both known and elusive zero-day attacks. The analytical prowess of LLMs will uncover subtle, intricate patterns and anomalies, allowing for the identification and mitigation of complex threats and enhancing the overall security posture.
We’re going to continue to see gen AI intensify the sophistication of both cyber attacks and defensive mechanisms, necessitating innovative strategies and fostering the creation of agile, responsive security frameworks. The amalgamation of AI and LLMs will streamline security operations and protocols, enabling professionals to concentrate on strategic analysis and innovation, and ensuring robust detection and counteraction of threats, which will fortify the integrity, confidentiality, and availability of information in the cloud.
2. The Emergence of Multimodal Gen AI Models Will Elevate Social Engineering Threats
We’re entering an uncanny valley. Attackers can now create text, sound and video content that is eerily convincing, blurring the line between genuine and malicious communications.
One of the most concerning developments is the rise of personalized spear-phishing campaigns. AI empowers attackers to craft tailored messages that exploit individuals’ trust in familiar contacts, colleagues, friends, or family members. Voice cloning technology adds another layer of authenticity. AI-generated deepfake videos can convincingly impersonate individuals, coercing victims into actions they would not ordinarily consider. This entire process can be automated via AI and attacks can be sent out at a large scale. This sophistication in phishing attacks necessitates a proactive and adaptive approach to cybersecurity.
3. We’ll See More Cloud Native Security Incidents with No Perimeter and Multiple Attack Vectors
This is going to shift the market perception because enterprises will realize that no matter how thoroughly they secure the perimeter, threat actors will get in. Cloud Security Posture Management and Cloud Native Application Protection will not prevent a breach and they will not detect a threat in real time. This will necessitate an increase in the maturity of current security practices and accelerate the adoption of solutions like Cloud Investigation and Response Automation and Cloud Native Threat Detection and Response.
While it doesn’t take a crystal ball to predict the continued, and accelerating, growth of gen AI and LLM in cybersecurity, it does take due diligence to separate “gen AI-washing” from innovative application of the technology to solve real problems. As cloud perimeters dissolve and threat actors up the game, 2024 will be another challenging year for preventing breaches. Using gen AI and LLMs to move cloud threat detection to real time can help.
##
ABOUT THE AUTHOR
Chen Burshan is CEO of Skyhawk Security and manages all the company’s day-to-day operations. Chen has led product and strategy teams for companies in the security space for more than ten years, most recently as EVP Products at ActiveFence and as VP Strategy, GM and Site Manager at Dome9 (Acquired by Check Point). At Dome9, he helped develop the company into a leader of the CSPM (Cloud Security Posture Management) space and was brought to lead Skyhawk Security (spinoff of Radware and backed by Tiger Global Management) to build the next generation of cloud security. His journey as a product leader and manager in technology companies began over 20 years ago, with roles at IBM, Cisco, Kashya, and Zerto. Chen is the inventor of 24 patents in numerous areas of technology.






