For several years, the forecast has remained unchanged: AI lowers the skill barrier, AI writes novel malware, and AI will soon run attacks end to end with minimal human direction This article explores malware ai soon. . Not from those who reverse-engineer malware for a living, who were generally skeptical throughout, but from the commentary layer surrounding them: keynote panels, vendor positioning, and an inexhaustible supply of thought leadership.

It's a continuous tax on every decision made: which tool to employ, what to name it, whether this particular network sweep warrants a log entry. In our predictions for 2026, published in January, we suggested that claims of fully autonomous AI-driven attacks should be viewed skeptically due to their tendency to minimize observable steps while revealing excessive activity as a detectable signature.

Meanwhile, the Winning Technique Is Asking Nicely In the same year everyone was predicting autonomous attack waves, the most effective way into a company was ClickFix: a page that asks the visitor to prove they are not a robot, quietly puts a command on their clipboard, and guides them through running it themselves. He spoke with SC Media UK, arguing that generative tools are not going to write the next WannaCry, that cybercrime remains a human-oriented field, and that AI-generated code is poor enough that the people shipping it often cannot tell it does not work.