Microsoft Threat Intelligence Podcast

AI as Tradecraft: How Threat Actors Are Operationalizing AI


Listen Later

In this episode of the Microsoft Threat Intelligence Podcast, host⁠ ⁠⁠Sherrod DeGrippo is joined by Greg Schlomer and Vlad H. to discuss new research on Jasper Sleet, a North Korean–aligned threat actor incorporating AI into active operations. 

The conversation examines how AI is being integrated across the attack lifecycle — from highly tailored phishing lures and fabricated job applicant personas to accelerating malware development and refining operational workflows. Rather than treating AI as a novelty, Jasper Sleet is using it to increase speed, scale, and adaptability while reducing many of the friction points that once slowed campaigns. 

They also explore what this shift means for defenders. As AI compresses iteration cycles and lowers barriers to entry, traditional attribution signals evolve, influence operations become more convincing, and defensive teams must tighten the loop between intelligence, detection, and response. This is less about experimentation and more about the operationalization of AI as part of modern tradecraft. 


In this episode you’ll learn:      

  • How AI is changing the speed at which cyber operations evolve 

    • Why jailbreaking AI models is often trivial for motivated adversaries 

      •  The strategic implications of AI leveling the playing field between threat actors 

        Some questions we ask:     

        • Is there resistance among experienced malware authors to adopting AI? 

          • Are we seeing fully AI-written malware in the wild? 

            • What stands out about Jasper Sleet’s use of AI? 

               

              Resources:  

              View Greg Schloemer on LinkedIn  

              View Sherrod DeGrippo on LinkedIn  

               

              Related Microsoft Podcasts:                   

              • Afternoon Cyber Tea with Ann Johnson 

                • The BlueHat Podcast 

                  • Uncovering Hidden Risks     


                    Discover and follow other Microsoft podcasts at microsoft.com/podcasts  


                    Get the latest threat intelligence insights and guidance at Microsoft Security Insider 

                     

                    The Microsoft Threat Intelligence Podcast is produced by Microsoft, Hangar Studios and distributed as part of N2K media network. 

                    ...more
                    View all episodesView all episodes
                    Download on the App Store

                    Microsoft Threat Intelligence PodcastBy Microsoft

                    • 5
                    • 5
                    • 5
                    • 5
                    • 5

                    5

                    22 ratings


                    More shows like Microsoft Threat Intelligence Podcast

                    View all
                    Hacked by Hacked

                    Hacked

                    188 Listeners

                    Security Now (Audio) by TWiT

                    Security Now (Audio)

                    2,009 Listeners

                    The Talk Show With John Gruber by Daring Fireball / John Gruber

                    The Talk Show With John Gruber

                    3,143 Listeners

                    Risky Business by Risky Business Media

                    Risky Business

                    373 Listeners

                    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

                    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

                    651 Listeners

                    CyberWire Daily by N2K Networks

                    CyberWire Daily

                    1,025 Listeners

                    Smashing Security by Graham Cluley

                    Smashing Security

                    319 Listeners

                    Click Here by Recorded Future News

                    Click Here

                    417 Listeners

                    Darknet Diaries by Jack Rhysider

                    Darknet Diaries

                    8,070 Listeners

                    Cybersecurity Today by Jim Love

                    Cybersecurity Today

                    178 Listeners

                    Hacking Humans by N2K Networks

                    Hacking Humans

                    316 Listeners

                    CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

                    CISO Series Podcast

                    194 Listeners

                    Cybersecurity Headlines by CISO Series

                    Cybersecurity Headlines

                    140 Listeners

                    Cyber Hack by BBC World Service

                    Cyber Hack

                    1,593 Listeners

                    Risky Bulletin by Risky Business Media

                    Risky Bulletin

                    45 Listeners