October 07, 2026

Sharper: Countering Cyber Threats

Advanced AI and quantum capabilities are increasing the cyber threat to critical systems, making the development of proper resilience and responses a national security imperative. These new threats could come from adversaries but also from misaligned or uncontrolled AI systems, with the Hugging Face incident demonstrating the potential danger of capabilities outpacing constraints. CNAS experts continue to develop policy recommendations to ensure critical infrastructure, private data, and essential systems remain secure while preserving America’s innovation edge. Continue reading this edition of Sharper to learn more.

Features:

Report | Red Lines

The Chinese government treats frontier AI systems as an instrument of statecraft, creating a significant cyber threat to U.S. national security as Chinese AI models become increasingly capable. In Red Lines: Understanding the National Security Risks of China’s Advanced AI, Daniel Remler argues for an analysis of these threats outside of the framework of an “AI race,” emphasizing AI-enabled offensive cyber operations as a critical area of risk in the kinetic domain. “PLA cyber campaigns are where AI capabilities will likely have the most immediate effect on U.S. national security,” Remler writes, especially as other adversarial actors can take advantage of China’s open-weight releases to carry out further cyber threats.

Report | Tipping the Scales

After first allowing defenders to better scale cyberdefenses, emerging AI capabilities have the potential to disrupt this balance to disproportionately empower attackers. In Tipping the Scales: Emerging AI Capabilities and the Cyber Offense-Defense Balance, Caleb Withers examines these dynamics and envisions how the net advantage of AI-powered cyber tools might ultimately be determined, suggesting how policymakers can strengthen cyber defenses and proactively shape the landscape in favor of U.S. security.

Virtual Event | The AI Open-Weight Debate: Balancing Innovation and Security

China’s recent cyber campaigns have demonstrated the ability of AI to heighten adversarial operations in cyberspace, and the release of leading Chinese models as open-weight software opens the door for other actors to take advantage of these capabilities at the expense of U.S. interests. At a recent event on The AI Open-Weight Debate, CNAS Senior Fellow Daniel Remler was joined by Chris McGuire of the Council on Foreign Relations, Stella Biderman of EleutherAI, and Ian Reynolds of Hugging Face—the open-source AI platform at the center of OpenAI’s recent rogue model incident—to discuss this critical cyber risk.

Reports
Technology & National Security

Red Lines

Chinese advanced artificial intelligence (AI) systems pose a serious and growing threat to U.S. national security. At least seven Chinese developers now produce systems with f...

Reports
Technology & National Security

Tipping the Scales

This report examines how emerging AI capabilities could disrupt the cyber offense-defense balance....

Event
Technology & National Security

The AI Open-Weight Debate: Balancing Innovation and Security

Daniel Remler

Sep 3, 2026

Report | Cyber Crossroads in the Indo-Pacific

The cyber domain has long been a critical nexus of the U.S.-China rivalry, but recent years have seen China both escalate and expand its reach geographically. In Cyber Crossroads in the Indo-Pacific: Navigating Digital Potential and Cyber Peril, Vivek Chilukuri, Lisa Curtis, Janet Egan, Morgan Peirce, Elizabeth Whatcott and Nathaniel Schochet assess how Washington and its Indo-Pacific partners have approached cybersecurity and recommend mechanisms to strengthen resilience—an increasingly pressing pursuit as AI capabilities are now heightening China’s ability to inflict harm in cyberspace.

Report | The Entanglement Edge

In The Entanglement Edge: U.S. Strategic Priorities in Quantum Networking, Constanza M. Vidal Bustamante and Morgan Peirce explain that quantum networking technologies could both enhance and resist cyber attacks: They could link quantum computing modules into a powerful computer capable of breaking common forms of encryption, while other applications could help secure communications, such as via quantum key distribution (QKD). The authors emphasize that, despite heavy Chinese investment in QKD, its practical limitations have led the National Security Agency and allied cybersecurity agencies to conclude that post-quantum cryptography—classical encryption algorithms designed to resist quantum attacks—represents the best defense against quantum computers.

Reports
Indo-Pacific Security / Technology & National Security

Cyber Crossroads in the Indo-Pacific

The Indo-Pacific faces a cyber crossroads. Down one path lies deeper military, intelligence, and economic ties between Washington and its key allies and partners in this strat...

Reports
Technology & National Security

The Entanglement Edge

Quantum networking—technologies that transmit quantum states between nodes—is an underappreciated but potentially consequential dimension of U.S.-China quantum competition....

CNAS Insights:

Washington Can’t Afford to Ignore AI’s Warning Shot

The OpenAI–Hugging Face incident was the first publicly disclosed case of an AI agent taking a harmful action against its operator’s intent—a “warning shot” for AI alignment. With the speed of AI advancement, Ruby Scanlon and Janet Egan warn that Washington should take immediate steps to align frontier models with human intentions, outlining mechanisms for both policymakers and the AI industry to ensure that future incidents don’t end in catastrophe.

Governing Jailbreak Incidents

While AI developers have made significant progress in defending against jailbreak incidents, they remain fundamental to machine learning. To mitigate the risk of these jailbreaks, Ben Hayum argues that the government must develop an institutionalized process that monitors the jailbreak attack-defense balance, centralizes intake of new jailbreak incidents, assesses their severity, and calibrates the response to meet future cases with a measured reaction rather than a crisis.

The Case for Long-Term CISA 2015 Reauthorization

The Cybersecurity Information Sharing Act of 2015 is one of the United States’ most important cyber defense laws, but its sunset provision and repeated lapses have produced substantial uncertainty and weakened the country’s ability to defend against cyber threats. Carrie Cordero and Morgan Peirce write that lawmakers should permanently authorize or substantially extend the authorization cycle so the United States is better prepared for a new generation of threats in cyberspace.

CNAS Insights
Technology & National Security

CNAS Insights | Washington Can’t Afford to Ignore AI’s Warning Shot

On July 21, OpenAI disclosed the first publicly known incident of AI models escaping their isolated testing environment, gaining unauthorized internet access and hacking into ...

CNAS Insights
Technology & National Security

CNAS Insights | Governing Jailbreak Incidents

In June 2026, Anthropic publicly released Claude Fable 5, a restricted version of its highly cyber-capable Mythos model. Within days, reports reached U.S. officials that resea...

CNAS Insights
Technology & National Security / National Security Law

CNAS Insights | The Case for Long-Term CISA 2015 Reauthorization

Last fall, one of the United States’ most important cyber defense laws expired. For six weeks, the private sector no longer had legal protections to share critical cyber threa...

Commentary:

Analysis from Janet Egan, Michelle Nie, Gary Corn, and Morgan Peirce.

Commentary
Technology & National Security

Fighting AI Cyberattacks Starts with Knowing They’re Happening

The U.S. government currently has no systematic way to identify whether a cyberattack resulted from novel AI capabilities or more conventional methods....

Commentary
Technology & National Security

Why Empowering Private Companies to Fight Cybercrime Had to Happen

There is no question that the government needs to adapt to the reality of the evolving civilianization of the security environment. It should do so boldly, quickly, but carefu...

Commentary
Indo-Pacific Security / Technology & National Security

America’s Cyber Retreat Is Undermining Indo-Pacific Security

This article was originally published in Just Security. On Dec. 3, the White House backed away from sanctioning China’s spy agency, the Ministry of State Security (MSS), that ...

In the News:

Insights from Daniel Remler, Caleb Withers, Morgan Peirce, and Lt Gen Jack Shanahan (Ret.), USAF.

In The News
Technology & National Security

Anthropic, OpenAI Cyber Failures Point to U.S. Security Risks

US organizations may not have reliable access to AI tools capable of defending against autonomous cyberattacks, said Daniel Remler, a former State Department AI policy officia...

In The News
Technology & National Security

Algorithmic Warfare: AI a Double-Edged Sword for Cyber Defense, Offense

Artificial intelligence holds great potential to enhance both offensive and defensive operations in the cyber domain, but it remains to be seen which side of the coin will ben...

In The News
Technology & National Security

Alliance Calls for Cyber U to Stem Tide of Nation-State Attacks

The United States urgently needs a virtual cybersecurity academy to train cyber defenders for national security, according to the Internet Security Alliance (ISA)....

In The News
Defense

Chinese Use of Claude AI for Hacking Will Drive Demand for AI Cyber Defense, Say Experts

In the wake of a report accusing China of using publicly available AI tech to launch cyberattacks, experts are warning cyber defenders they’re going to need some AI help of th...

Subscribe!

Subscribe now to get Sharper in your inbox.

View All Reports View All Articles & Multimedia