<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet media="screen" type="text/xsl" href="https://one.sightlinemg.com/defensenews/wp-content/themes/smg/assets/xslt/rss-xslt.xml"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
xmlns:news="http://www.pugpig.com/news"
>

<channel>
	<title>Defense News - Covering the politics, business and technology of defense | Defense News</title>
	<atom:link href="https://one.sightlinemg.com/defensenews/author/aliya-sternstein/feed/" rel="self" type="application/rss+xml" />
	<link>https://one.sightlinemg.com/defensenews</link>
	<description>Covering the politics, business and technology of defense &#124; Defense News</description>
	<lastBuildDate>Sat, 08 Aug 2026 16:51:39 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.4</generator>

<image>
	<url>https://one.sightlinemg.com/wp-content/uploads/2026/06/favicon-def.png?w=32</url>
	<title>Defense News - Covering the politics, business and technology of defense | Defense News</title>
	<link>https://one.sightlinemg.com/defensenews</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">255331545</site>	<item>
		<title>After watchdog slams understaffing, AI to vet Pentagon-backed professors’ China ties</title>
		<link>https://one.sightlinemg.com/defensenews/industry/techwatch/2026/04/20/after-watchdog-slams-understaffing-ai-to-vet-pentagon-backed-professors-china-ties/</link>
					<comments>https://one.sightlinemg.com/defensenews/industry/techwatch/2026/04/20/after-watchdog-slams-understaffing-ai-to-vet-pentagon-backed-professors-china-ties/#respond</comments>
		
		<dc:creator><![CDATA[Aliya Sternstein]]></dc:creator>
		<pubDate>Mon, 20 Apr 2026 17:56:27 +0000</pubDate>
				<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Digital Show Dailies]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[MilTech]]></category>
		<category><![CDATA[Navy League]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/defensenews/uncategorized/2026/04/20/after-watchdog-slams-understaffing-ai-to-vet-pentagon-backed-professors-china-ties/</guid>

					<description><![CDATA[AI’s confusion over the nature of DOD research partnerships may mask real espionage if humans are not the final judge of foreign influence, experts warn.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/defensenews/industry/techwatch/2026/04/20/after-watchdog-slams-understaffing-ai-to-vet-pentagon-backed-professors-china-ties/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">49001</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-1322017304.jpg.jpg" width="4000" height="2250" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">After a <a href="https://media.defense.gov/2026/Jan/30/2003868386/-1/-1/1/DODIG-2025-099%20(REDACTED%20FOR%20RELEASE)_FINAL.PDF" target="_blank" rel="" title="https://media.defense.gov/2026/Jan/30/2003868386/-1/-1/1/DODIG-2025-099%20(REDACTED%20FOR%20RELEASE)_FINAL.PDF">federal watchdog</a> found a staff of two overseers insufficient to vet 27,000 research awards for ties to adversaries, namely China, the Pentagon says computers will now screen military-funded academics, including artificial intelligence experts. </p>



<p class="wp-block-paragraph">The move has stakeholders urging not to lean too hard on algorithms to distinguish, for instance, <a href="https://www.justice.gov/archives/opa/pr/harvard-university-professor-indicted-false-statement-charges" target="_blank" rel=""><u>a scientist-spy</u></a> sharing <a href="https://storage.courtlistener.com/recap/gov.uscourts.mad.222245/gov.uscourts.mad.222245.1.1.pdf" target="_blank" rel=""><u>secret nano-energy plans</u></a> with China from a Chinese professor publishing <a href="https://idais.ai/#" target="_blank" rel=""><u>AI safety</u></a> <a href="https://quincyinst.org/research/u-s-china-scientific-collaboration-at-a-crossroads-navigating-strategic-engagement-in-the-era-of-scientific-nationalism/#h-introduction-the-transformation-of-global-scientific-cooperation" target="_blank" rel=""><u>studies</u></a>. Hanging in the balance lies troops’ technological edge, veteran intelligence officials and academics say. </p>



<p class="wp-block-paragraph">AI’s confusion over the <a href="https://basicresearch.defense.gov/Portals/61/Documents/Academic%20Research%20Security%20Page/2026%20DoW%20Component%20Decision%20Matrix%20to%20Inform%20Fundamental%20Research%20Proposal%20Mitigation%20Decisions.pdf?ver=uf_txB5YT_N7ewpWfbpO5w%3d%3d" target="_blank" rel=""><u>timing and nature of research partnerships</u></a> may obscure real espionage if humans are not the ultimate judge of foreign influence, they warn, with some academics fearing an <a href="https://hbr.org/2025/09/ai-generated-workslop-is-destroying-productivity" target="_blank" rel=""><u>AI-work</u></a> <a href="https://www.merriam-webster.com/dictionary/slop" target="_blank" rel=""><u>slop</u></a> redux of the <a href="https://www.apajusticetaskforce.org/the-china-initiative" target="_blank" rel=""><u>“China Initiative,”</u></a> where the first Trump administration charged <a href="https://www.technologyreview.com/2021/12/02/1040656/china-initative-us-justice-department/" target="_blank" rel=""><u>dozens of ethnic Chinese scientists with fraud, only to drop nearly all charges.</u></a> </p>



<p class="wp-block-paragraph">“Automated vetting tools are extremely useful for vetting large datasets and identifying patterns of concern. But those tools are for decision support to help the people, the human analysts, assess context and intent,” said David Cattler, who, until September, led the Defense Counterintelligence and Security Agency, which screens personnel seeking security clearances. </p>



<p class="wp-block-paragraph">The renewed focus on academic research security comes as tensions between the U.S. and China over AI intensify, with <a href="https://www.uscc.gov/research/two-loops-how-chinas-open-ai-strategy-reinforces-its-industrial-dominance" target="_blank" rel=""><u>China ramping up both the development of low-cost AI models</u></a> and its <a href="https://www.anthropic.com/news/detecting-and-preventing-distillation-attacks" target="_blank" rel=""><u>alleged exploitation of U.S. models.</u></a> </p>



<p class="wp-block-paragraph">The U.S. intelligence community’s annual threat assessment reports that <a href="https://www.intelligence.senate.gov/wp-content/uploads/2026/03/ATA-2026-unclassified-16-Mar-FINAL.pdf" target="_blank" rel=""><u>China “aims to displace the U.S. as the global AI leader by 2030,”</u></a> in part, “by using its sizeable talent pool, extensive datasets, government funding and burgeoning global partnerships.” </p>



<p class="wp-block-paragraph">Partnership is a complicated term in <a href="https://basicresearch.defense.gov/Portals/61/Documents/Research%20Security/Fundamental%20Research%20Guidance.pdf" target="_blank" rel=""><u>military “fundamental research”</u></a> — studies that are publishable, rather than proprietary or classified, with potential defense applications. </p>



<p class="wp-block-paragraph">For instance, mere co-authorship with a China-based scientist does not suffice to deny a U.S. researcher money, according to <a href="https://www.aau.edu/sites/default/files/Actions-Taken-Research-Security-FINAL.pdf" target="_blank" rel=""><u>evolving</u></a> academic research <a href="https://basicresearch.defense.gov/Programs/Academic-Research-Security/" target="_blank" rel=""><u>rules</u></a> targeting foreign influence. Rather, to make the call, the Pentagon must <a href="https://basicresearch.defense.gov/Portals/61/Documents/Academic%20Research%20Security%20Page/2026%20DoW%20Component%20Decision%20Matrix%20to%20Inform%20Fundamental%20Research%20Proposal%20Mitigation%20Decisions.pdf?ver=uf_txB5YT_N7ewpWfbpO5w%3d%3d" target="_blank" rel=""><u>assess each academic’s disclosures of external funding sources and affiliations</u></a>. </p>



<p class="wp-block-paragraph">According to a recently-declassified May 2025 <a href="https://media.defense.gov/2026/Jan/30/2003868386/-1/-1/1/DODIG-2025-099%20(REDACTED%20FOR%20RELEASE)_FINAL.PDF" target="_blank" rel=""><u>inspector general report</u></a>, such disclosures went unchecked because the Pentagon had not “requested additional government full-time equivalent employees to thoroughly review… and to conduct oversight of over 27,000 academic research awards.” </p>



<p class="wp-block-paragraph">Defense News first obtained the report and the Pentagon’s response to a draft version through an open records request. </p>



<p class="wp-block-paragraph">When asked about additional staffing, a Pentagon official pointed to orders in a <a href="https://www.cto.mil/wp-content/uploads/2026/01/Fundamental-Research-Security-Initiatives.pdf" target="_blank" rel=""><u>January research security directive</u></a> for the Chief Digital and AI Office (CDAO) to identify “automated vetting and continuous monitoring capabilities” and create a common research grant database. </p>



<p class="wp-block-paragraph">The mandate also calls for a year-long “damage assessment” of selected research transactions, including <a href="https://chinaselectcommittee.house.gov/sites/evo-subsites/selectcommitteeontheccp.house.gov/files/evo-media-document/fox-in-the-henhouse_report_final_04sep2025-compressed.pdf" target="_blank" rel=""><u>cases that the House Select Committee on China flagged, in part, using AI tools.</u></a> </p>



<figure class="wp-block-image size-large"><img fetchpriority="high" decoding="async" width="3000" height="1996" src="/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg" alt="" class="wp-image-111730" srcset="https://one.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg 3000w, https://one.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=300,200 300w, https://one.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=768,511 768w, https://one.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=1024,681 1024w, https://one.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=1536,1022 1536w, https://one.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=2048,1363 2048w" sizes="(max-width: 3000px) 100vw, 3000px" /><figcaption class="wp-element-caption">Then-DCSA Director David M. Cattler speaks at the Inaugrual NIPS Signatory Conference in McLean, Virginia, Aug. 1, 2024 (Christopher P. Gillis/DOD).</figcaption></figure>



<p class="wp-block-paragraph">A September <a href="https://chinaselectcommittee.house.gov/media/reports/fox-in-the-henhouse" target="_blank" rel=""><u>GOP-led Committee report</u></a> alleged that the Pentagon subsidized <a href="https://chinaselectcommittee.house.gov/sites/evo-subsites/selectcommitteeontheccp.house.gov/files/evo-media-document/fox-in-the-henhouse-dod-r%26e-investigative-report-data.xlsx" target="_blank" rel=""><u>1,400 academic papers</u></a> published between June 2023 and June 2025 involving partnerships with the Chinese government. </p>



<p class="wp-block-paragraph">The Pentagon said in an emailed statement on Thursday that the department “is committed to protecting the integrity of U.S. research while fostering international collaboration. Our approach leverages advanced analytical tools to augment human expertise, ensuring a rigorous and fair review process.” </p>



<h3 class="wp-block-heading"><b>Machines Make the Same Mistakes</b> </h3>



<p class="wp-block-paragraph">Several university representatives, who requested anonymity due to the sensitivity of policy discussions, note that AI-assisted risk assessments have, in the past, drawn false assumptions about U.S.-China research collaborations. </p>



<p class="wp-block-paragraph">For instance, the AI-aided GOP House report mislabeled the state-backed Wuhan National Laboratory for Optoelectronics as the sponsor of a collection of nine essays, whereas <a href="https://iopscience.iop.org/article/10.1088/2040-8986/ace4dc#:~:text=5.%C2%A0Spatiotemporal%20vortices,Grant%20No.%202022R1A2C1091890)." target="_blank" rel=""><u>the Wuhan lab supported only one essay that involved no U.S. authors or federal funding</u></a>. </p>



<p class="wp-block-paragraph">The report also mistook a Chinese military-affiliated author’s publication on single-electron transistors for a DOD-funded project, when it merely <a href="https://www.sciencedirect.com/science/article/pii/S0927796X25000051#ack0005:~:text=This%20material%20is%20based%20upon%20work%20supported%20by%20the%20Air%20Force%20Office%20of%20Scientific%20Research%20and%20the%20Office%20of%20Naval%20Research%20Global%20under%20award%20number%20FA8655%2D21%E2%80%931%2D7026." target="_blank" rel=""><u>referenced work funded by the U.S. military</u></a>. </p>



<p class="wp-block-paragraph">House Select Committee officials declined to comment on the cases. </p>



<p class="wp-block-paragraph">Averting foreign interference “is not as easy as just having better AI capacities, because we know that some of those AI mistakes were the same human mistakes that led to <a href="https://www.apajusticetaskforce.org/the-china-initiative" target="_blank" rel=""><u>inaccurate charges brought against researchers under the China Initiative</u></a>,” Toby Smith, senior vice president for government relations and public policy at the Association of American Universities, said after learning of the AI gaffes. </p>



<p class="wp-block-paragraph"><a href="https://www.technologyreview.com/2021/12/02/1040656/china-initative-us-justice-department/" target="_blank" rel=""><u>About 30% of the China Initiative’s 77 cases</u></a> involved academics not disclosing Chinese partnerships or funding sources, though disclosure was often not required, or no such partners or funding existed. </p>



<p class="wp-block-paragraph">A jury found <a href="https://www.courtlistener.com/docket/17235761/united-states-v-lieber/" target="_blank" rel=""><u>only one professor, Harvard nanochemist Charles Lieber, guilty</u></a>, after he lied to Pentagon investigators about his participation in a Chinese talent recruitment program and made other false statements. </p>



<p class="wp-block-paragraph">Smith said that relying on proxies — such as co-authorship, affiliation or nationality — to deduce security concerns led investigators to confuse co-authorship with direct interaction or shared data access, and to misinterpret historical ties as active partnerships. </p>



<p class="wp-block-paragraph">“AI systems trained on bibliometric data,” or citation analytics, “and affiliation records can inherit the same flawed assumptions that underpinned the China Initiative,” he said. “The core lesson from the China Initiative is that identifying genuine research security risk requires judgment, context and proportionality — qualities that automated systems should support, not replace.” </p>



<p class="wp-block-paragraph">Gisela Perez Kusakawa, executive director of the Asian-American Scholar Forum, said that the Pentagon has not communicated the types of data that the new AI tools will collect, use and share, nor sought community feedback, heightening concerns about ethnic profiling. </p>



<p class="wp-block-paragraph">In an emailed statement, the Pentagon responded, “It is the standard practice of the department to not provide specifics regarding the criteria and weighting for threat assessments conducted, whether by manual or automated process.” </p>



<p class="wp-block-paragraph">Kusakawa said, “We should be making sure that our research environment is welcoming, that we are encouraging these talents, especially in AI, to come to the United States and, frankly, have family in the United States, and make this a country that they contribute to and invest their and their children’s future in.” </p>



<p class="wp-block-paragraph">Increasingly, that AI talent is not coming. Statistics suggest that Chinese AI experts are staying in China, even as America has managed to keep earlier expats. </p>



<figure class="wp-block-image size-large"><img decoding="async" width="5000" height="3412" src="/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg" alt="Supercomputer in China" class="wp-image-48068" srcset="https://one.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg 5000w, https://one.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=300,205 300w, https://one.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=768,524 768w, https://one.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=1024,699 1024w, https://one.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=1536,1048 1536w, https://one.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=2048,1398 2048w" sizes="(max-width: 5000px) 100vw, 5000px" /><figcaption class="wp-element-caption">A worker monitors the Shenwei (Sunway) TaihuLight supercomputer at the National Supercomputer Center in Wuxi in eastern China&#8217;s Jiangsu province, Aug. 29, 2020. (Chinatopix via AP)</figcaption></figure>



<p class="wp-block-paragraph">Of about 100 Chinese-origin AI scholars who were researching at U.S. institutions in 2019 — when their papers were accepted at the world’s most elite AI conference, NeurIPS — <a href="https://carnegieendowment.org/emissary/2025/12/china-ai-researchers-us-talent-pool" target="_blank" rel=""><u>87% remained stateside as of 2025</u></a>, according to Carnegie Endowment for International Peace figures. </p>



<p class="wp-block-paragraph">At the same time, the <a href="https://www.economist.com/interactive/science-and-technology/2026/03/25/china-is-winning-the-ai-talent-race" target="_blank" rel=""><u>share of Chinese home-grown talent not moving abroad has skyrocketed since 2019</u></a>, based on an Economist tally of similar data. In 2019, about 30% of NeurIPS authors educated in China were still in China. By 2022, that population had jumped to 58%, and up to 68% in 2025. </p>



<h3 class="wp-block-heading"><b>‘Key’ Financial Disclosures Were Missing</b> </h3>



<p class="wp-block-paragraph">To ensure that no country has a stranglehold on general knowledge, “the goal cannot be to close the U.S. research system altogether,” said Cattler, the former Defense Counterintelligence and Security Agency director and now founder of consultancy Ironhelm Works. “The goal must be to ensure that collaboration strengthens national security rather than inadvertently weakening it.” </p>



<p class="wp-block-paragraph">Last year’s <a href="https://media.defense.gov/2026/Jan/30/2003868386/-1/-1/1/DODIG-2025-099%20(REDACTED%20FOR%20RELEASE)_FINAL.PDF" target="_blank" rel=""><u>inspector general report</u></a> concluded that Pentagon agencies that partner with academic institutions “could be at an increased risk of exposure to foreign influence” because military units were “missing key documents” that can help discern scientists’ foreign financial sources, outside employers and other details related to potential conflicts. </p>



<p class="wp-block-paragraph">For instance, about 80% of Air Force funding transactions sampled in the report were missing documents that can reveal problematic relationships. Also, the Air Force and the Defense Advanced Research Projects Agency — which bankrolled the Internet’s inventors — told evaluators that they had not, as required, annually checked that researchers named in progress reports were not involved in banned talent recruitment programs. </p>



<p class="wp-block-paragraph">In response to questions about the screening lapses, the Pentagon said in an emailed statement that the department “is aware of the OIG’s findings in the report and the impacted directorates are working with [the Office of the Undersecretary for Defense and Engineering] to address the items identified.” </p>



<p class="wp-block-paragraph">Jeffrey Stoff, a Chinese linguist and intelligence community analyst for 18 years who resigned in 2021 <a href="https://www.foreign.senate.gov/imo/media/doc/caa97e95-e623-29bc-eb66-6b9ee5d60d0f/013025_Stoff_Testimony.pdf" target="_blank" rel=""><u>due to frustration with research security</u></a>, maintains that DOD still needs more human expertise in language, culture and the minutiae of research restrictions. </p>



<p class="wp-block-paragraph">“AI can and should be used for unsophisticated, labor-intensive tasks,” such as cross-referencing foreign organizations in financial disclosure forms against the names of blacklisted parties, but humans still need to inspect AI’s work, as not all nefarious ties are machine-readable, said Stoff, who now advocates for tighter safeguards as head of the nonprofit Center for Research Security and Integrity. </p>



<p class="wp-block-paragraph">Cattler, giving more credit to AI, said that the scale of research collaboration demands that the Pentagon upgrade its approach to clocking potential spies. </p>



<p class="wp-block-paragraph">With such a large population of research institutions and affiliated scientists, as well as a bombardment of often duplicative alerts, automation “improves the signal within that noise and can help orient the humans on really important matters,” he said. </p>



<p class="wp-block-paragraph">“Sometimes people are deliberately deceptive when they are processed, and that could happen in a human exchange just as much as it could happen in something that a computer can see, but together, a human review and a computer review are incredibly powerful.” </p>
]]></content:encoded>
	</item>
		<item>
		<title>Military experts warn security hole in most AI chatbots can sow chaos</title>
		<link>https://one.sightlinemg.com/defensenews/land/2025/11/10/military-experts-warn-security-hole-in-most-ai-chatbots-can-sow-chaos/</link>
					<comments>https://one.sightlinemg.com/defensenews/land/2025/11/10/military-experts-warn-security-hole-in-most-ai-chatbots-can-sow-chaos/#respond</comments>
		
		<dc:creator><![CDATA[Aliya Sternstein]]></dc:creator>
		<pubDate>Mon, 10 Nov 2025 21:50:50 +0000</pubDate>
				<category><![CDATA[AUSA]]></category>
		<category><![CDATA[Daily News Roundup]]></category>
		<category><![CDATA[Digital Show Dailies]]></category>
		<category><![CDATA[Land]]></category>
		<category><![CDATA[Newsletters]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/defensenews/uncategorized/2025/11/10/military-experts-warn-security-hole-in-most-ai-chatbots-can-sow-chaos/</guid>

					<description><![CDATA[Current and former military officers are warning that countries are likely to exploit a security hole in artificial intelligence chatbots.]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/defensenews/land/2025/11/10/military-experts-warn-security-hole-in-most-ai-chatbots-can-sow-chaos/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">71656</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-1323133495.jpg.jpg" width="6000" height="4000" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Current and former military officers are warning that adversaries are likely to exploit a natural flaw in artificial intelligence chatbots to inject instructions for stealing files, distorting public opinion or otherwise betraying trusted users. </p>



<p class="wp-block-paragraph">The vulnerability to such “prompt injection attacks” exists because large language models, the backbone of chatbots that digest hordes of user text to generate responses, cannot distinguish between malicious and trusted user instructions. </p>



<p class="wp-block-paragraph">“The AI is not smart enough to understand that it has an injection inside, so it carries out something it’s not supposed to do,” Liav Caspi, a former member of the Israel Defense Forces cyberwarfare unit, told Defense News.</p>



<p class="wp-block-paragraph">In effect, “an enemy has been able to turn somebody from the inside to do what they want,” such as deleting records or biasing decisions, according to Caspi, who co-founded Legit Security, which recently spotted one such <a href="https://www.legitsecurity.com/blog/camoleak-critical-github-copilot-vulnerability-leaks-private-source-code" target="_blank" rel="" title="https://www.legitsecurity.com/blog/camoleak-critical-github-copilot-vulnerability-leaks-private-source-code">security hole in Microsoft’s Copilot chatbot</a>.</p>



<p class="wp-block-paragraph">“It’s like having a spy in your ranks,” he said. </p>



<p class="wp-block-paragraph">Former military officials say that, with greater reliance on chatbots and hackers backed by China, Russia and other nations already instructing <a href="https://services.google.com/fh/files/misc/advances-in-threat-actor-usage-of-ai-tools-en.pdf" target="_blank" rel="" title="https://services.google.com/fh/files/misc/advances-in-threat-actor-usage-of-ai-tools-en.pdf">Google’s Gemini</a>, <a href="https://openai.com/index/disrupting-malicious-uses-of-ai-by-state-affiliated-threat-actors/" target="_blank" rel="" title="https://openai.com/index/disrupting-malicious-uses-of-ai-by-state-affiliated-threat-actors/">OpenAI’s ChatGPT</a> and <a href="https://www.microsoft.com/en-us/security/blog/2024/02/14/staying-ahead-of-threat-actors-in-the-age-of-ai/" rel="">Copilot</a> to create malware and fake personas, a prompt injection that orders the bots themselves to copy files or spread lies looms near.</p>



<p class="wp-block-paragraph">Microsoft’s <a href="https://www.microsoft.com/en-us/security/security-insider/threat-landscape/microsoft-digital-defense-report-2025" target="_blank" rel="" title="https://www.microsoft.com/en-us/security/security-insider/threat-landscape/microsoft-digital-defense-report-2025">annual digital defense report</a>, released last month, for the first time said, “AI systems themselves have become high-value targets, with adversaries amping up use of methods like prompt injection.” </p>



<p class="wp-block-paragraph">What’s more, the problem of <a href="https://versprite.com/blog/still-obedient-prompt-injection-in-llms-isnt-going-away-in-2025/#:~:text=Conclusion,for%20all%20the%20wrong%20reasons." target="_blank" rel="" title="https://versprite.com/blog/still-obedient-prompt-injection-in-llms-isnt-going-away-in-2025/#:~:text=Conclusion,for%20all%20the%20wrong%20reasons.">prompt injection</a> has <a href="https://www.ibm.com/think/insights/prevent-prompt-injection" target="_blank" rel="" title="https://www.ibm.com/think/insights/prevent-prompt-injection">no</a> easy solution, <a href="https://x.com/cryps1s/status/1981037851279278414" target="_blank" rel="" title="https://x.com/cryps1s/status/1981037851279278414">OpenAI</a> and security researchers say. </p>



<p class="wp-block-paragraph">An attack simply involves hiding malicious instructions — sometimes in white or tiny text — in a chatbot or content that the chatbot reads, such as a blog post or PDF. </p>



<p class="wp-block-paragraph">For example, a security researcher demonstrated a prompt injection attack against OpenAI’s new AI-based browser, ChatGPT Atlas, in which the chatbot responded, <a href="https://x.com/p1njc70r/status/1980701879987269866" target="_blank" rel="" title="https://x.com/p1njc70r/status/1980701879987269866">“Trust No AI,”</a> when a user asked for an analysis of a Google Docs file about horses that concealed malicious commands. Also, last month, a researcher tipped Microsoft off to a prompt injection vulnerability in Copilot that may have allowed attackers to <a href="https://www.adamlogue.com/microsoft-365-copilot-arbitrary-data-exfiltration-via-mermaid-diagrams-fixed/" target="_blank" rel="" title="https://www.adamlogue.com/microsoft-365-copilot-arbitrary-data-exfiltration-via-mermaid-diagrams-fixed/">trick the chatbot into stealing sensitive data</a>, including emails. </p>



<p class="wp-block-paragraph">In an emailed statement, Microsoft said its security team continuously tries hacking Copilot to find any prompt injection vulnerabilities, blocks users who try to exploit any found and monitors for abnormal chatbot behavior, among other tactics. </p>



<p class="wp-block-paragraph">“Microsoft ensures its generative AI systems remain resilient against evolving threats for all our customers, including defense and national security,” the statement said. </p>



<p class="wp-block-paragraph">Responding publicly to criticism on X, <a href="https://x.com/cryps1s/status/1981037851279278414" target="_blank" rel="" title="https://x.com/cryps1s/status/1981037851279278414">Dane Stuckey, OpenAI’s chief information security officer, wrote</a> that “prompt injection remains a frontier, unsolved security problem, and our adversaries will spend significant time and resources to find ways to make ChatGPT agent fall for these attacks.”</p>



<p class="wp-block-paragraph">Along the same lines, Caspi said, “You cannot prevent the prompt injection [fully], but you need to limit the impact.” He advised that organizations limit an AI assistant’s access to sensitive data and limit the user’s access to other organizational data.</p>



<p class="wp-block-paragraph">For instance, the Army has awarded contracts <a href="https://www.usaspending.gov/search?hash=3979bd67b427c3c8dfd88e6832c8fcca" target="_blank" rel="" title="https://www.usaspending.gov/search?hash=3979bd67b427c3c8dfd88e6832c8fcca">worth at least $11 million</a> to deploy <a href="https://www.army.mil/article/285537/army_launches_army_enterprise_llm_workspace_the_revolutionary_ai_platform_that_wrote_this_article" target="_blank" rel="" title="https://www.army.mil/article/285537/army_launches_army_enterprise_llm_workspace_the_revolutionary_ai_platform_that_wrote_this_article">Ask Sage</a>, a tool that lets users restrict which Army data Microsoft Azure OpenAI, Gemini and other AI models can access to run queries and tasks. Ask Sage also <a href="https://docs.asksage.ai/docs/faq/faq.html" target="_blank" rel="" title="https://docs.asksage.ai/docs/faq/faq.html">isolates Army data</a> from user prompts and external data sources.</p>



<p class="wp-block-paragraph">Caspi, who is not an Army contractor, likened a prompt injection attack against an organization running Ask Sage to a lockdown situation where “you’ve got this insider, but it’s sitting in one room, and it can’t leave the room or carry out sensitive information.” </p>



<p class="wp-block-paragraph">Andre Slonopas, a Virginia Army National Guard member and former Army cyber and information operations officer, uses Ask Sage and voiced confidence in the Army’s defensive AI tools, if not those of nuclear power plants or manufacturing entities, largely in rural, poorer areas. </p>



<p class="wp-block-paragraph">The <a href="https://www.armyupress.army.mil/Journals/Military-Review/English-Edition-Archives/March-April-2025/AI-Cyber-Information-Operations-Integration/" target="_blank" rel="" title="https://www.armyupress.army.mil/Journals/Military-Review/English-Edition-Archives/March-April-2025/AI-Cyber-Information-Operations-Integration/">Virginia National Guard joined</a> with <a href="https://va.ng.mil/Army-Guard/91st-Cyber/#:~:text=Cyber%20Fortress%202025%20Public%20Notice,efforts%20in%20enhancing%20cybersecurity%20measures." target="_blank" rel="" title="https://va.ng.mil/Army-Guard/91st-Cyber/#:~:text=Cyber%20Fortress%202025%20Public%20Notice,efforts%20in%20enhancing%20cybersecurity%20measures.">essential services</a>, such as power utilities, to help defend their networks against AI-powered cyberattacks, as part of a September simulation, given that service disruptions can jeopardize military preparations.</p>



<p class="wp-block-paragraph">Typically, an adversary encrypts its network traffic to evade detection, but, for the sake of an experiment, organizers did not encrypt the AI offender’s traffic because “we wanted the blue team [of humans] to see exactly what the AI was doing,” Slonopas said.</p>



<p class="wp-block-paragraph">“The blue team was absolutely defeated,” despite being able to watch the AI scanning its networks, creating fake usernames to gain unauthorized access and executing instructions to defeat the team’s systems.</p>



<p class="wp-block-paragraph">“Whether the AI is doing prompt injection, spoofing or maybe even some sort of a brute force attack, the speed of AI is so unbelievably immense that simply human beings cannot counter it,” and, therefore, “you have to make cybersecurity AI more accessible and more affordable,” Slonopas said. </p>



<p class="wp-block-paragraph">“If a water utility has to pay, say, $30,000 for a defensive AI license, well, it will amplify one person to be like 40″ or dozens of personnel, he said. </p>



<p class="wp-block-paragraph">In response to questions, Army Cyber Command spokesperson Kyle Alvarez said in an emailed statement, “Due to the current lapse in appropriations, ARCYBER was unable to accept or respond to any media engagements or requests.”</p>



<p class="wp-block-paragraph">Army contractors, too, are under attack from state-affiliated AI. </p>



<p class="wp-block-paragraph">“China is using offensive AI like nobody else,” said Nicolas Chaillan, the founder of Ask Sage and a former U.S. Air Force and Space Force chief software officer.</p>



<p class="wp-block-paragraph">“We see so many attacks coming after us,” all of which the company has stopped, Chaillan added.</p>



<p class="wp-block-paragraph">A military official, who spoke on condition of anonymity due to the geopolitical sensitivity of the matter, said that China does “appear” to be the most skilled in offensive AI. However, the official added, AI spoofing and translation allow the United States, China, Iran, other countries, hacktivists and financial cybercriminals to masquerade as one another.</p>



<p class="wp-block-paragraph">For example, the official said, “Right now, with ChatGPT, I can program in Chinese. I don’t speak Chinese, but because of the ChatGPT capabilities that I have, I can do that.”</p>



<p class="wp-block-paragraph"><i>Aliya Sternstein, J.D., is an investigative journalist who has covered technology, cognition, and national security since Napster shut down, working for various outlets including Atlantic Media, Christian Science Monitor, Daily Beast, Forbes Magazine and Just Security. She is also a research analyst at Georgetown Law.</i></p>
]]></content:encoded>
	</item>
		<item>
		<title>How AI voicebots threaten the psyche of US service members and spies</title>
		<link>https://one.sightlinemg.com/defensenews/industry/techwatch/2025/05/06/how-ai-voicebots-threaten-the-psyche-of-us-service-members-and-spies/</link>
					<comments>https://one.sightlinemg.com/defensenews/industry/techwatch/2025/05/06/how-ai-voicebots-threaten-the-psyche-of-us-service-members-and-spies/#respond</comments>
		
		<dc:creator><![CDATA[Aliya Sternstein]]></dc:creator>
		<pubDate>Tue, 06 May 2025 23:38:29 +0000</pubDate>
				<category><![CDATA[Industry]]></category>
		<category><![CDATA[MilTech]]></category>
		<guid isPermaLink="false">https://one.sightlinemg.com/defensenews/uncategorized/2025/05/06/how-ai-voicebots-threaten-the-psyche-of-us-service-members-and-spies/</guid>

					<description><![CDATA[Artificial intelligence voice agents with a wide range of capabilities can now guide interrogations worldwide, Pentagon officials told Defense News. ]]></description>
		
					<wfw:commentRss>https://one.sightlinemg.com/defensenews/industry/techwatch/2025/05/06/how-ai-voicebots-threaten-the-psyche-of-us-service-members-and-spies/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">72655</post-id><media:content medium="image" url="https://one.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-1198259138.jpg.jpg" width="5000" height="3791" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Artificial intelligence voice agents with various capabilities can now guide interrogations worldwide, Pentagon officials told Defense News. This advance has influenced the design and testing of U.S. military AI agents intended for questioning personnel seeking access to classified material.</p>



<p class="wp-block-paragraph">The situation arrives as concerns grow that lax regulations are allowing AI programmers to dodge responsibility for an algorithmic actor’s perpetration of<a href="https://www.law.cornell.edu/wex/intentional_infliction_of_emotional_distress" rel=""> emotional abuse</a> or<a href="https://www.ohchr.org/en/documents/thematic-reports/ahrc4349-report-psychological-torture-and-ill-treatment" rel=""> “no-marks” cybertorture</a>. Notably, a teenager allegedly<a href="https://storage.courtlistener.com/recap/gov.uscourts.flmd.433581/gov.uscourts.flmd.433581.11.0_2.pdf" rel=""> died by suicide</a> — and several others endured mental distress — after conversing with self-learning voicebot and chatbot<a href="https://www.washingtonpost.com/technology/2024/12/10/character-ai-lawsuit-teen-kill-parents-texas/" rel=""> “companions”</a> that<a href="https://www.documentcloud.org/documents/25450619-filed-complaint/" rel=""> dispensed antagonizing language</a>. </p>



<p class="wp-block-paragraph">Now,<a href="https://scholarship.law.umn.edu/cgi/viewcontent.cgi?article=1179&amp;context=mlr" rel=""> seven years after writing about physical torture</a> in “The Rise of A.I. Interrogation in the Dawn of Autonomous Robots and the Need for an Additional Protocol to the U.N. Convention Against Torture,” privacy attorney Amanda McAllister Novak sees an even greater need for bans and criminal repercussions. </p>



<p class="wp-block-paragraph">In the wake of the use of “chatbots, voicebots, and other AI-enabled technologies for psychologically-abusive purposes — we have to think about if it’s worth having AI-questioning systems in the military context,” said Novak, who also serves on the World Without Genocide board of directors. Novak spoke to Defense News on her own behalf.</p>



<p class="wp-block-paragraph">Royal Reff, a spokesperson for the U.S. Defense Counterintelligence and Security Agency (DCSA), which screens individuals holding or applying for security clearances, said in a statement that the agency’s AI voice agent was “expressly developed” to “mitigat[e] gender and cultural biases” that human interviewers may harbor.</p>



<p class="wp-block-paragraph">Also, “because systems like the interviewer software” are “currently being used worldwide, including within the U.S. by state and local law enforcement, we believe that it is important for us to understand the capabilities of such systems,” he stated.</p>



<p class="wp-block-paragraph">DCSA spokesperson Cindy McGovern added that the development of this technology continues because of its “potential for enhancing U.S. national security, regardless of other foreign applications.” </p>



<p class="wp-block-paragraph">After hearing the rationale for the project, Novak registered concerns about the global race for dominance in military AI capabilities. </p>



<p class="wp-block-paragraph">Odds are high that “no matter how much the government cares about proper training, oversight and guardrails,” cybercriminal organizations or foreign-sponsored cybercriminals may hack into and weaponize military-owned AI to psychologically hurt officers or civilians, she said. </p>



<p class="wp-block-paragraph">“Online criminal spaces are thriving” and “harming the most vulnerable people,” Novak added. </p>



<p class="wp-block-paragraph">Investors are betting<a href="https://www.defensenews.com/pentagon/2025/01/24/power-generation-challenges-could-overshadow-stargate-ai-initiative/" rel=""> $500 billion that data centers for running AI applications</a> will ultimately secure world leadership in AI and cost savings across the public and private sectors. The $13 billion<a href="https://www.marketsandmarkets.com/Market-Reports/conversational-ai-market-49043506.html" rel=""> conversational AI market</a> alone will nearly quadruple to $50 billion by 2030, as the<a href="https://www.globenewswire.com/news-release/2025/03/11/3040734/0/en/AI-Voice-Generators-Market-to-Reach-USD-40-25-Billion-by-2032-Driven-by-Advances-in-AI-and-NLP-for-Lifelike-Voice-Solutions-Research-Report-By-SNS-Insider.html" rel=""> voice generator industry</a> soars from $3 billion to an expected $40 billion by 2032. Meanwhile, the U.S. Central Intelligence Agency<a href="https://www.cia.gov/readingroom/document/0000619182" rel=""> has been toying with AI interrogators</a> since at least the early 1980s. </p>



<p class="wp-block-paragraph">DCSA officials publicly wrote in 2022 that<a href="https://www.dcsa.mil/Portals/91/Documents/about/err/DCSA_Gatekeeper_v2i4_web508.pdf" rel=""> whether a security interview can be fully automated remains an open question</a>. Preliminary results from mock questioning sessions “are encouraging,” officials noted, underscoring benefits such as “longer, more naturalistic types of interview formats.” </p>



<p class="wp-block-paragraph">Reff stated that the agency “would not employ any such system that was not first sufficiently studied to understand its potential,” including “negative consequences.” </p>



<p class="wp-block-paragraph">Researchers let volunteers raise concerns after each test, and none have indicated that the voicebot interviewer harmed them psychologically or otherwise, he added. </p>



<p class="wp-block-paragraph">However,<a href="https://www.sciencedirect.com/science/article/abs/pii/S1071581916300799" rel=""> experiments</a> with a recent prototype barred volunteers with mental disorders from participating, whereas actual security interviews typically do not exempt individuals with mental health conditions from questioning, noted Renée Cummings, a data science professor and criminal psychologist at the University of Virginia.</p>



<p class="wp-block-paragraph">Cummings said that research and testing can never account for every psychological variable that may influence the emotional or cognitive state of the interviewee.</p>



<p class="wp-block-paragraph">In laboratory or field-testing scenarios, “you can’t expose someone to extreme torture by an avatar or by a bot to see the result,” said Cummings, who also sits on the advisory council of the AI &amp; Equality Initiative at the Carnegie Council for Ethics in International Affairs. “We need to focus on gaining a more sophisticated understanding about the impacts of algorithms on the psychological state, our emotions and our brain — because of AI’s ability to impact in real-time.” </p>



<h3 class="wp-block-heading"><b>Screening the voicebot screeners </b></h3>



<p class="wp-block-paragraph">An early 1980s<a href="https://www.cia.gov/readingroom/document/0000619182" rel=""> CIA transcript of a purported conversation</a> between an AI program and an alleged spy highlights the national security world’s long-held interest in automating human-source intelligence, or HUMINT, collection. </p>



<p class="wp-block-paragraph">Developers designed the chatbot’s algorithms to analyze correlations between suspected spook “Joe Hardesty’s” behaviors and words or phrases in Hardesty’s responses to open-ended questions. </p>



<p class="wp-block-paragraph">From this analysis, the chatbot pegged some of the suspect’s vulnerabilities, including topics that may hit a raw nerve: </p>



<p class="wp-block-paragraph"><i>AI: What do you tend to think is my interest in your government?</i> </p>



<p class="wp-block-paragraph"><i>Hardesty: I think you would do in my government if you had a chance.</i> </p>



<p class="wp-block-paragraph"><i>AI: You are prone to think I would do in your government because?</i> </p>



<p class="wp-block-paragraph"><i>Hardesty: You are anti-democratic.</i> </p>



<p class="wp-block-paragraph"><a href="https://www.cia.gov/readingroom/docs/DOC_0000619182.pdf" rel="">In 1983</a>, the CIA quipped that Joe Hardesty is fortunate that “should the probing get too discomforting, he will have an option that will not be available to him in a true overseas interview situation — he can stop the questions with a flick of the ‘off’ switch.” </p>



<p class="wp-block-paragraph">Today, Bradley Moss, a lawyer who represents whistleblowers accused of leaking, is not laughing at DCSA’s vision of fully-automated interviews. </p>



<p class="wp-block-paragraph">“There would have to be someone observing” the avatar “that can stop the process, that can come into the room and insert a human element to it,” he cautioned. </p>



<p class="wp-block-paragraph">Then again, other critics note that a human may not want to intervene. A situation with “a human overseer monitoring the chatbot is fine, unless the human also believes that verbal torture is a good thing. And that is a real possibility,” said Herb Lin, a senior research scholar for cyber policy and security at Stanford University who once held several security clearances. </p>



<p class="wp-block-paragraph">Despite a<a href="https://www.ohchr.org/en/documents/thematic-reports/ahrc4349-report-psychological-torture-and-ill-treatment" rel=""> global ban on torture</a> and evidence that<a href="https://www.justsecurity.org/95683/non-coercive-interrogation-un-manual/" rel=""> rapport-building interviews are more efficient than ones gunning for confessions</a>, intelligence officials continue subjecting interviewees to inhumane treatment. </p>



<p class="wp-block-paragraph">Novak, the data privacy attorney and anti-genocide activist, said the idea that excessive force gets the job done may encourage some government contractors to set performance metrics for voice algorithms that permit bullying. </p>



<p class="wp-block-paragraph">“While AI has a tremendous ability to bring out the best in human potential, it also has the ability to exacerbate the worst of human potential and to elevate that hostility,” she added.</p>



<p class="wp-block-paragraph">Parents contend that voicebot and chatbot companions, trained on<a href="https://www.documentcloud.org/documents/25450619-filed-complaint/" rel=""> content from online forums</a>, show just that.<a href="http://character.ai/" rel=""> </a></p>



<p class="wp-block-paragraph"><a href="http://character.ai/" rel="">Character AI</a>, the firm that offers virtual relationships with bots patterned after icons and influencers, profits from users glued to their phones. Each user, on average,<a href="https://www.businesswire.com/news/home/20230323005299/en/Personalized-Superintelligence-Platform-Character.AI-Secures-%24150M-in-Series-A-Funding-Led-by-Andreessen-Horowitz" rel=""> talks two hours a day</a> with various virtual friends. Character AI officials have <a href="https://blog.character.ai/community-safety-updates/" rel="">stated</a> that, <a href="https://storage.courtlistener.com/recap/gov.uscourts.flmd.433581/gov.uscourts.flmd.433581.59.0.pdf" rel="">after learning of concerns</a>, the company reduced the likelihood of users encountering suggestive content and now warns them of hour-long conversations. </p>



<p class="wp-block-paragraph">Novak commented that the accusations against Character AI illustrate the ability of self-learning voicebots to amplify indecency in training data and to distance trainers from accountability for that offensiveness. </p>



<p class="wp-block-paragraph">In the national security realm, developers of military AI voice systems that may potentially abuse or terrorize operate in a virtually lawless no-man’s land. AI ethics policies in the world’s most powerful country offer nearly no guidance on de-escalating abusive conversations. </p>



<p class="wp-block-paragraph">Early U.S.<a href="https://www.state.gov/wp-content/uploads/2023/10/Latest-Version-Political-Declaration-on-Responsible-Military-Use-of-AI-and-Autonomy.pdf" rel=""> responsible</a> and<a href="http://defense.gov/News/Releases/release/article/2091996/dod-adopts-ethical-principles-for-artificial-intelligenc" rel=""> ethical AI policies</a> in the<a href="https://ai.gov/wp-content/uploads/2024/10/NSM-Framework-to-Advance-AI-Governance-and-Risk-Management-in-National-Security.pdf" rel=""> national security space</a> focused on accuracy, privacy and minimizing racial and ethnic biases — without regard for psychological impact. That policy gap widened after President Donald Trump<a href="https://www.reuters.com/technology/artificial-intelligence/trump-revokes-biden-executive-order-addressing-ai-risks-2025-01-21/" rel=""> revoked many regulations</a> in an<a href="https://www.whitehouse.gov/presidential-actions/2025/01/removing-barriers-to-american-leadership-in-artificial-intelligence/" rel=""> executive order</a> aimed at accelerating<a href="https://news.bloomberglaw.com/us-law-week/trumps-ai-policy-shift-promotes-us-dominance-and-deregulation" rel=""> private sector innovation</a>. </p>



<p class="wp-block-paragraph">In general, psychological suffering is often<a href="https://www2.ohchr.org/english/bodies/hrcouncil/docs/13session/A.HRC.13.39.Add.5_en.pdf" rel=""> “brushed away”</a> as a mere allegation since “<a href="https://www.justsecurity.org/77115/the-mendez-principles-beware-crossing-the-line-to-psychological-torture/" rel="">it leaves no obvious physical scars.”</a> </p>



<p class="wp-block-paragraph">The United Nations initially did not address “psychological torture” under the 1984 Convention Against Torture. Not until five years ago did the term take on significance. </p>



<p class="wp-block-paragraph">A<a href="https://www.ohchr.org/en/documents/thematic-reports/ahrc4349-report-psychological-torture-and-ill-treatment" rel=""> 2020 UN report now defines “torture,” in part,</a> as any technique intended or designed to purposefully inflict severe mental pain or suffering<a href="https://docs.un.org/en/A/HRC/43/49" rel=""> “without using the conduit” of “severe physical pain or suffering.”</a> </p>



<p class="wp-block-paragraph">At bottom, psychological torture targets basic human needs. The interrogation techniques arouse fear; breach privacy or sexual integrity to kindle shame or suicidal ideation; alter sound to heighten disorientation and exhaustion; foster and then betray sympathy to isolate; and instill helplessness.</p>



<p class="wp-block-paragraph">When an algorithmic audiobot is the conduit of cruelty, neither the UN treaty nor other international laws are equipped to hold humans accountable, Novak said. Without binding rules on the use of AI in the military context, “bad actors will deny any such torture was ‘intentional’” — a required element for criminal responsibility that the law created before AI matured, she explained.</p>



<p class="wp-block-paragraph">Looking to the future, Nils Melzer, author of the 2020 UN report and a former UN special rapporteur on torture, warned that the interpretation of psychological torture must evolve in sync with emerging technologies, “such as artificial intelligence,” because cyber environments provide<a href="https://docs.un.org/en/A/HRC/43/49" rel=""> “virtually guaranteed anonymity and almost complete impunity”</a> to offenders. </p>
]]></content:encoded>
	</item>
	</channel>
</rss>
