Five Eyes to CSOs: AI Has Already Changed Your Threat Model — Act Now
A joint advisory from CISA and four allied agencies demands strategic action on AI-amplified threats. Experts say the advice is late, vague, and misses the real risk sitting inside your own network.

The Five Eyes intelligence alliance issued a joint cybersecurity statement Monday urging business and security leaders to overhaul their cyber risk strategies in response to AI-accelerated threats. The group — the US Cybersecurity and Infrastructure Security Agency (CISA), the UK National Cyber Security Centre, the Canadian Centre for Cyber Security, the Australian Cyber Security Centre, and New Zealand's Cyber Security Directorate — warned that frontier AI models will "fundamentally transform" offensive and defensive capabilities on a timeline measured in months, not years.
The CISA advisory frames cyber resilience as a board-level business continuity issue, not a technical one. It lays out three core principles: treat secure-by-design and secure-by-default as standard practice, implement defense in depth, and prepare for novel zero-day exposure. Five practical actions follow — reducing attack surface, accelerating patching, addressing legacy systems, tightening identity and access controls, and testing incident response plans.
The Canadian Centre for Cyber Security told reporters the timing reflects "real, recent shifts" in AI tooling, specifically accelerated vulnerability discovery and exploitation. "Waiting will only narrow the window to respond," the agency said.
Experts aren't impressed.
Joseph Steinberg, a cybersecurity and AI advisor to governments and enterprises, called the statement "generic" and said it "does not provide meaningful guidance about addressing AI risks." His specific objection: four of the five practical actions predate the AI era entirely. The advisory omits AI's transformation of social engineering, expanded reconnaissance capability, generative AI data leakage risks, and the hard-to-reverse problem of poisoned training data — all live threats that organizations should already be countering.
Ilia Kolochenko, CEO of ImmuniWeb and an adjunct professor at Capitol Technology University, argued the statement should have arrived in late 2023. He put the sharpest point on the inside threat: corporate leadership routinely deploys AI systems across their organizations without informing the CSO, let alone conducting a risk assessment. That rush introduces attack surface faster than any external adversary.
"No zero-days or faster exploitation cycles with AI are needed anymore," Kolochenko said. Most large organizations already carry enough shadow IT and misconfigured assets that an attacker can walk out with crown jewels without a single exploit.
Rob Enderle of the Enderle Group called the guidance "incredibly late" but acknowledged it delivers a necessary baseline for organizations still catching up. His bottom line aligns with the advisory's: cyber risk strategy needs to run from the CEO down, not from the SOC up.
CISA, responding to criticism that the statement is too generic, pointed to its AI guidance resources portal, which covers AI data security and secure-by-design AI principles in more granular detail.
The advisory's own admission is telling: "These actions are not new, but are now urgent." That framing is either honest or damning, depending on how long your patch backlog already is.



