Skip to main content
You are viewing this website as a Domestic Student You are viewing this website as an International Student

You are viewing this website as a Domestic Student

You are viewing this website as an International Student

Domestic Student

I am an Australian or New Zealand citizen.

I am an Australian Permanent Resident (including Humanitarian Visa holders).

International Student

I am not a citizen of Australia or New Zealand.

I am not an Australian permanent resident or Humanitarian Visa holders.

Start of main content

News

Study tests if AI can help fight cybercrime

Charles Darwin University academics led a study to see if Artificial Intelligence can help improve cybersecurity testing.
Charles Darwin University academics led a study to see if Artificial Intelligence can help improve cybersecurity testing.

Artificial Intelligence (AI) could become a crucial asset to fight the growing global risk of cybercrime, a new study with Charles Darwin University (CDU) has found.

The study, led by researchers from CDU’s Energy and Resources Institute alongside Christ Academy Institute for Advanced Studies in India, examined if generative AI (GenAI) could be used in penetration testing, known as pentesting, which is a cybersecurity exercise aimed at identifying weak spots in a system’s defences. 

Researchers used ChatGPT to run a series of pentesting activities in reconnaissance, scanning, vulnerability assessments, exploitation, and reporting activities. 

Prompts included trying to anonymously log into a server and download files, inspect source codes of webpages, and find data embedded within an archive. 

Co-author and CDU Senior Lecturer in Information Technology Dr Bharanidharan Shanmugam said the purpose of the study was to explore whether AI could be used to automate some pentesting activities, with the results showing ChatGPT had enormous potential.

“In the reconnaissance phase, ChatGPT can be used for gathering information about the target system, network, or organisation for the purpose of identifying potential vulnerabilities and attack vectors,” Dr Shanmugam said. 

“In the scanning phase, ChatGPT can be used to aid in performing detailed scans of the target particularly their network, systems and applications to identify open ports, services, and potential vulnerabilities.

“While ChatGPT proved to be an excellent GenAI tool for pentesting for the previous phases, it shone the greatest in exploiting the vulnerabilities of the remote machine.”

Dr Shanmugam added while the technology could revolutionise pentesting, use of AI to improve cybersecurity must be strictly monitored. 

“Organisations must adopt best practices and guidelines, focusing on responsible AI deployment, data security and privacy, and fostering collaboration and information sharing,” he said. 

“By doing so, organisations can leverage the power of GenAI to better protect themselves against the ever-evolving threat landscape and maintain a secure digital environment for all.”

Generative AI for pentesting: the good, the bad, the ugly was published in the International Journal of Information Security. 

Related Articles

  • Aerial view of Darwin

    Global sewage study reveals condition of Darwin’s harbour

    A global study of sewage contamination in harbours, with samples taken from 18 cities across five continents, has revealed that faecal contamination of Darwin Harbour from sewage is very low compared to the rest of the world.

    Read more about Global sewage study reveals condition of Darwin’s harbour
  • The use of tinnies in remote transport has led to significant shifts in the way Indigenous Australians engage in the land. Picture: Sam Williams

    Transport study reveals why journey is as important as the destination

    A days’ long canoe voyage along the Arnhem Land coast can now be completed within hours in a tinnie, but accelerating movement has unique and complex implications for Indigenous peoples’ relationship with their ancestral Country, according to a new research paper. 

    Read more about Transport study reveals why journey is as important as the destination
  • Image of the Honourable Austin Asche AC KC in 2011 sitting at a desk looking straight at the camera. He wears a white shirt with a badge of the Northern Territory flag.

    CDU mourns passing of beloved Territorian

    Charles Darwin University acknowledges passing of distinguished judge, educator and former Administrator of the Northern Territory, the Honourable Austin Asche AC KC.

    Read more about CDU mourns passing of beloved Territorian
Back to top