Artificial intelligence is officially reshaping the cybersecurity battlefield.

According to a brand-new threat intelligence report released on August 25, 2026 by Taiwanese research firm TeamT5, Chinese state-affiliated hacking groups have more than doubled their cyberattack volume. Their secret weapon? Offloading mundane work and malware development to open-source AI models, most notably DeepSeek.


Why "Cheap AI" Beats Elite Frontier Models

The report, first highlighted by Bloomberg, flips a common tech assumption on its head. While the world worries about ultra-advanced, multi-billion-dollar frontier AI models, hackers are actually choosing cheaper, highly accessible, and flexible tools to scale their operations.

  • The Guardrail Deficit: According to Charles Li, Chief Analyst at TeamT5, Western AI models have strict, hard-to-bypass safety guardrails. In contrast, models like DeepSeek offer high performance with very low cyber guardrails, making them the premier choice for malicious actors.

  • Cost Efficiency: Elite models like Moonshot’s Kimi K3 are technically more powerful, but their operational costs are prohibitively expensive for mass hacker scale.

  • The "Push-Button" Reality: Hackers are not using AI to miraculously invent impossible bugs. Instead, they use it to automate 80% to 90% of routine grunt work (like scanning networks and writing base exploit code), freeing up human hackers to execute breaches at twice the speed.


Real Logs: How Hackers are Deploying AI

TeamT5 captured operational scripts and server logs exposing exactly how known state-sponsored groups are utilizing the tech:

  1. Grimfengxi: Used AI to generate functional exploit codes to break into targets.

  2. Teleboyi: Automated reconnaissance by using the model to map company domains and collect over 1,000 target IP addresses.

  3. Huapi: Leveraged Chinese open-source AI models to efficiently compromise a major Taiwanese company's email infrastructure.


What This Means for Crypto & Cybersecurity

As AI-driven cybercrime accelerates, it directly influences the Web3 and Cryptocurrency sectors. Decentralized networks, bridges, and digital asset exchanges must prepare for a future where automated threat actors test their infrastructure 24/7.

When hackers can scale their attack output by 200% at near-zero cost, traditional patching cycles and slow security workflows will no longer suffice. Security must now evolve to be just as automated as the threats it fights.

How do you see the rise of AI affecting Web3 security?

#AI #CyberSecurity #DeepSeek #TechNews #Web3Security