Cannabis Industry Warned About Escalating AI Cyberattacks
A warning has been issued by over 100 companies, including tech giants like OpenAI and Google, about the rapid escalation of AI cyberattacks. These attacks are becoming increasingly sophisticated due to the use of artificial intelligence, which can assist with reconnaissance, identify vulnerabilities, and generate or modify attack code.
The cannabis industry is particularly vulnerable to these attacks, having already experienced several security breaches in recent years. In November 2024, STIIIZY disclosed a breach that exposed the personal data of approximately 380,000 customers. Years earlier, an unsecured cloud-storage bucket connected to POS provider THSuite was found to have exposed scanned government IDs and purchase histories associated with over 30,000 people.
The use of AI in cyberattacks has lowered the technical barrier for launching sophisticated attacks, allowing attackers who are less sophisticated to launch attacks that previously required considerably more expertise and time. This poses a significant threat to cannabis businesses, which often possess valuable collections of customer information and operate with limited IT resources.