THE BUILD
VoidLink · ИИ пишет инструментAI writes the tool
Эссе-рассуждение о том, что изменилось в эпоху ИИ для расследователей и threat-ресёрчеров. Чем «умнее» и автономнее становится атака, тем банальнее ошибка человека, которая её выдаёт. An essay-style reflection on what has changed in the age of AI for investigators and threat researchers. The smarter and more autonomous the attack becomes, the more mundane the human mistake that gives it away.
Дарья Щербатюк — расследователь и продакт-оунер, учит машины идти по цифровому следу: от ручного поиска связей — к автоматизированным и агентным системам. Daria Shcherbatyuk — cyber investigator and product owner, teaching machines to follow the digital trail: from manual link analysis to automated and agentic systems.
Первоисточники: отчёты исследовательских команд, на которых построен доклад. Уровни — по шкале автономности: от модели, которая пишет инструмент, до модели, которая координирует сама себя. Primary sources: the vendor reports the talk is built on. Levels follow the autonomy scale — from a model that writes the tool to a model that coordinates itself.
VoidLink · ИИ пишет инструментAI writes the tool
Mexico · Gambit Security · ИИ исполняет атакуAI runs the attack
knaithe · Palo Alto Unit 42 · ИИ сам выбирает цельAI picks the target
DREAM Lab · ИИ координирует сам себяAI coordinates itself
Работы, из которых взяты рамки: где живут артефакты агента, как измерять долю ИИ в атаке и почему счёт техник больше ничего не говорит об опасности. The work the framing comes from: where agent artifacts live, how to measure the share of AI in an attack, and why technique count no longer predicts danger.
Первый форензик-разбор персонального ИИ-агента: таксономия артефактов и пять плоскостей улик.
The first forensic study of a personal AI assistant: an artifact taxonomy and five evidence planes.
Год заблокированных аккаунтов, размеченный по ATT&CK. 30 техник в 13 тактиках при медиане 16.
A year of banned accounts mapped onto ATT&CK. 30 techniques across 13 tactics; the median actor uses 16.
Отчёт по GTG-1002: доля работы, выполненной моделью, и признание её ошибок.
The GTG-1002 report: how much of the work the model did, and where it over-claimed.
Разбор четырёх агентных вторжений и границы тезиса «модель и есть вредонос».
Four agentic intrusions, and the limits of the “the model is the malware” framing.
Где лежат транскрипты сессий, что попадает в них открытым текстом и что не удаляется при удалении.
Where session transcripts live, what lands in them in plain text, and what deletion does not erase.
Перепись 180 млн репозиториев: трейлеры соавторства, конфиги агентов, подписи в коммитах.
A census of 180M repositories: co-authorship trailers, agent config files, commit signatures.
Стилометрия сгенерированного кода: почему фразировка комментариев — самый сильный признак.
Stylometry of generated code: why comment phrasing is the strongest single signal.
Личная подборка приёмов и инструментов для расследования кейсов, где есть ИИ: где искать артефакты агентов, что забирать первым и как читать транскрипты сессий. Собирается и пополняется. A personal collection of techniques and tools for investigating AI-involved cases: where agent artifacts live, what to collect first, and how to read session transcripts. A work in progress.