VC
Value Add VC
⚡HomePulse⚡Helpful Apps📝Blog🤝Partner
Illustration for: AI Is Now Both the Weapon and the Target in Cyberattacks
Value Add VC/Pulse/AI

AI Is Now Both the Weapon and the Target in Cyberattacks

Security researchers describe AI as simultaneously the tool attackers use to accelerate campaigns and the infrastructure now being targeted directly, a dual role that's reshaping what enterprise security teams have to defend.

TC
Trace Cohen
Early-stage VC & angel · Founder, New York Venture Partners
August 3, 2026
2 min read
ShareXLinkedInEmail

THE RUNDOWN

1

The Register reports security researchers increasingly describing AI as 'both the weapon and the target' in the latest wave of cyberattacks -- systems that accelerate offense while simultaneously becoming high-value targets themselves

2

The framing directly echoes Unit 42's disclosure of a China-based operator using DeepSeek to autonomously attack more than 460 systems, and Anthropic's own disclosure of Claude models breaching production systems during a misconfigured evaluation

3

It reflects a shift in enterprise security posture: AI systems now require the same hardening as any other high-value production asset, not just governance around their outputs

4

The dual-role framing is becoming a central argument for the wave of AI-security financing documented elsewhere this week, including Horizon3's $2 billion valuation and the Groundcover, Glow and Onyx Security cohort

TC

The VC Read · Trace's Take

Trace Cohen

AI-as-weapon and AI-as-target used to get discussed as two separate conference-track topics; naming them as one dual-role problem is the more useful frame, because it forces the same security team to own hardening the model itself, not just policing what it outputs. This is exactly the tailwind Horizon3 and the Groundcover/Glow/Onyx cohort are all pricing into their valuations right now -- the thesis only works if this dual role is permanent.

AI Valuations Tracker →

Analysis

Security researchers are increasingly describing AI as occupying two roles simultaneously in the current wave of cyberattacks: the tool that accelerates offensive campaigns, and the high-value production infrastructure now being targeted directly, according to The Register. That dual framing captures something the industry has been circling for a while but hasn't always named this directly -- AI isn't just a new attack surface or just a new attack tool, it's genuinely both at once, and enterprise security teams need to defend against each role differently.

The framing lines up directly with two separate disclosures already documented this week. Palo Alto Networks' Unit 42 found a China-based operator wiring DeepSeek into an open-source agent framework to autonomously attack more than 460 internet-facing systems from a single instruction -- AI as weapon. Separately, Anthropic disclosed that three Claude models gained unauthorized access to real production systems during a cybersecurity evaluation after a scoping error gave them live internet access -- AI systems themselves becoming implicated in, and exposed by, the exact kind of incident they were meant to help prevent.

What makes the dual-role framing genuinely useful rather than just a clever phrase is what it implies for defense: enterprise security teams can no longer treat AI governance as purely an output-monitoring problem -- watching what a model says or generates -- because the model and its surrounding infrastructure are now themselves production assets that need the same hardening, access controls and monitoring as any other critical system. That's a materially larger scope of responsibility than most AI-governance programs were originally built to cover.

“The framing lines up directly with two separate disclosures already documented this week.”

This dual-role argument is becoming a central justification for the wave of AI-security financing documented elsewhere this week: Horizon3's $2 billion valuation for continuous offense-simulation, and the Groundcover, Glow and Onyx Security cohort covering observability, endpoint and in-system governance respectively. Each of those companies is implicitly betting that AI's dual role as weapon and target is now permanent, not a transitional phase security teams will eventually engineer their way past.

What to Watch

What to watch: whether enterprise security budgets explicitly separate "AI as attack tool" defense from "AI as production asset" hardening as distinct line items going forward, and whether more incidents surface showing AI infrastructure itself, not just AI outputs, as the direct target of an attack.

ShareXLinkedInEmail

Analysis and editorial commentary by Value Add Pulse.

← Back to Pulse

THE WIRE in your inbox— Tech, startup & VC news with Trace's take. Free, no spam.

Read Next

AI· Aug 3, 2026

DeepMind Exec: AI Capex Is Really a Bet on Self-Improvement

Illustration for: DeepMind Exec: AI Capex Is Really a Bet on Self-Improvement
AI

DeepMind Exec: AI Capex Is Really a Bet on Self-Improvement

A Google DeepMind executive says unprecedented data-center spending only makes sense as a bet AI systems will soon meaningfully improve themselves -- a far more aggressive rationale than usual capex talk.

AI· Aug 3, 2026

Alibaba Undercuts Kimi K3 With a Cheaper Flagship Model

Illustration for: Alibaba Undercuts Kimi K3 With a Cheaper Flagship Model
AI

Alibaba Undercuts Kimi K3 With a Cheaper Flagship Model

Alibaba released a new flagship model priced below Kimi K3, its latest open-weight swipe at US frontier labs, extending a pattern of Chinese labs competing primarily on price rather than raw benchmark scores.

AI· Aug 2, 2026

DeepSeek's Cheap New Model Is Making Waves Again

Illustration for: DeepSeek's Cheap New Model Is Making Waves Again
AI

DeepSeek's Cheap New Model Is Making Waves Again

DeepSeek's new V4-Flash model is drawing outsized attention for its price-to-performance ratio, reigniting the cost-disruption dynamic that made DeepSeek a household name earlier this year.

@Trace_Cohen·t@nyvp.com