<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet media="screen" type="text/xsl" href="/c4isrnet/wp-content/themes/smg/assets/xslt/rss-xslt.xml"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
xmlns:news="http://www.pugpig.com/news"
>

<channel>
	<title>Aliya Sternstein, Author at C4ISRNet</title>
	<atom:link href="https://staging.sightlinemg.com/c4isrnet/author/aliya-sternstein/feed/" rel="self" type="application/rss+xml" />
	<link>https://staging.sightlinemg.com/c4isrnet</link>
	<description>Media for the Intelligence-Age Military &#124; C4ISRNET</description>
	<lastBuildDate>Tue, 18 Aug 2026 20:50:26 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.1</generator>

<image>
	<url>https://staging.sightlinemg.com/wp-content/uploads/2026/06/favicon-c4i.png?w=32</url>
	<title>Aliya Sternstein, Author at C4ISRNet</title>
	<link>https://staging.sightlinemg.com/c4isrnet</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">255707724</site>	<item>
		<title>After watchdog slams understaffing, AI to vet Pentagon-backed professors’ China ties</title>
		<link>https://staging.sightlinemg.com/c4isrnet/artificial-intelligence/2026/04/20/after-watchdog-slams-understaffing-ai-to-vet-pentagon-backed-professors-china-ties/</link>
					<comments>https://staging.sightlinemg.com/c4isrnet/artificial-intelligence/2026/04/20/after-watchdog-slams-understaffing-ai-to-vet-pentagon-backed-professors-china-ties/#respond</comments>
		
		<dc:creator><![CDATA[Aliya Sternstein]]></dc:creator>
		<pubDate>Mon, 20 Apr 2026 17:56:27 +0000</pubDate>
				<category><![CDATA[AI & ML]]></category>
		<category><![CDATA[Home]]></category>
		<guid isPermaLink="false">https://staging.sightlinemg.com/c4isrnet/uncategorized/2026/04/20/after-watchdog-slams-understaffing-ai-to-vet-pentagon-backed-professors-china-ties/</guid>

					<description><![CDATA[AI’s confusion over the nature of DOD research partnerships may mask real espionage if humans are not the final judge of foreign influence, experts warn.]]></description>
		
					<wfw:commentRss>https://staging.sightlinemg.com/c4isrnet/artificial-intelligence/2026/04/20/after-watchdog-slams-understaffing-ai-to-vet-pentagon-backed-professors-china-ties/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">31133</post-id><media:content medium="image" url="https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-1322017304.jpg.jpg" width="4000" height="2250" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">After a <a href="https://media.defense.gov/2026/Jan/30/2003868386/-1/-1/1/DODIG-2025-099%20(REDACTED%20FOR%20RELEASE)_FINAL.PDF" target="_blank" rel="" title="https://media.defense.gov/2026/Jan/30/2003868386/-1/-1/1/DODIG-2025-099%20(REDACTED%20FOR%20RELEASE)_FINAL.PDF">federal watchdog</a> found a staff of two overseers insufficient to vet 27,000 research awards for ties to adversaries, namely China, the Pentagon says computers will now screen military-funded academics, including artificial intelligence experts. </p>



<p class="wp-block-paragraph">The move has stakeholders urging not to lean too hard on algorithms to distinguish, for instance, <a href="https://www.justice.gov/archives/opa/pr/harvard-university-professor-indicted-false-statement-charges" target="_blank" rel=""><u>a scientist-spy</u></a> sharing <a href="https://storage.courtlistener.com/recap/gov.uscourts.mad.222245/gov.uscourts.mad.222245.1.1.pdf" target="_blank" rel=""><u>secret nano-energy plans</u></a> with China from a Chinese professor publishing <a href="https://idais.ai/#" target="_blank" rel=""><u>AI safety</u></a> <a href="https://quincyinst.org/research/u-s-china-scientific-collaboration-at-a-crossroads-navigating-strategic-engagement-in-the-era-of-scientific-nationalism/#h-introduction-the-transformation-of-global-scientific-cooperation" target="_blank" rel=""><u>studies</u></a>. Hanging in the balance lies troops’ technological edge, veteran intelligence officials and academics say. </p>



<p class="wp-block-paragraph">AI’s confusion over the <a href="https://basicresearch.defense.gov/Portals/61/Documents/Academic%20Research%20Security%20Page/2026%20DoW%20Component%20Decision%20Matrix%20to%20Inform%20Fundamental%20Research%20Proposal%20Mitigation%20Decisions.pdf?ver=uf_txB5YT_N7ewpWfbpO5w%3d%3d" target="_blank" rel=""><u>timing and nature of research partnerships</u></a> may obscure real espionage if humans are not the ultimate judge of foreign influence, they warn, with some academics fearing an <a href="https://hbr.org/2025/09/ai-generated-workslop-is-destroying-productivity" target="_blank" rel=""><u>AI-work</u></a> <a href="https://www.merriam-webster.com/dictionary/slop" target="_blank" rel=""><u>slop</u></a> redux of the <a href="https://www.apajusticetaskforce.org/the-china-initiative" target="_blank" rel=""><u>“China Initiative,”</u></a> where the first Trump administration charged <a href="https://www.technologyreview.com/2021/12/02/1040656/china-initative-us-justice-department/" target="_blank" rel=""><u>dozens of ethnic Chinese scientists with fraud, only to drop nearly all charges.</u></a> </p>



<p class="wp-block-paragraph">“Automated vetting tools are extremely useful for vetting large datasets and identifying patterns of concern. But those tools are for decision support to help the people, the human analysts, assess context and intent,” said David Cattler, who, until September, led the Defense Counterintelligence and Security Agency, which screens personnel seeking security clearances. </p>



<p class="wp-block-paragraph">The renewed focus on academic research security comes as tensions between the U.S. and China over AI intensify, with <a href="https://www.uscc.gov/research/two-loops-how-chinas-open-ai-strategy-reinforces-its-industrial-dominance" target="_blank" rel=""><u>China ramping up both the development of low-cost AI models</u></a> and its <a href="https://www.anthropic.com/news/detecting-and-preventing-distillation-attacks" target="_blank" rel=""><u>alleged exploitation of U.S. models.</u></a> </p>



<p class="wp-block-paragraph">The U.S. intelligence community’s annual threat assessment reports that <a href="https://www.intelligence.senate.gov/wp-content/uploads/2026/03/ATA-2026-unclassified-16-Mar-FINAL.pdf" target="_blank" rel=""><u>China “aims to displace the U.S. as the global AI leader by 2030,”</u></a> in part, “by using its sizeable talent pool, extensive datasets, government funding and burgeoning global partnerships.” </p>



<p class="wp-block-paragraph">Partnership is a complicated term in <a href="https://basicresearch.defense.gov/Portals/61/Documents/Research%20Security/Fundamental%20Research%20Guidance.pdf" target="_blank" rel=""><u>military “fundamental research”</u></a> — studies that are publishable, rather than proprietary or classified, with potential defense applications. </p>



<p class="wp-block-paragraph">For instance, mere co-authorship with a China-based scientist does not suffice to deny a U.S. researcher money, according to <a href="https://www.aau.edu/sites/default/files/Actions-Taken-Research-Security-FINAL.pdf" target="_blank" rel=""><u>evolving</u></a> academic research <a href="https://basicresearch.defense.gov/Programs/Academic-Research-Security/" target="_blank" rel=""><u>rules</u></a> targeting foreign influence. Rather, to make the call, the Pentagon must <a href="https://basicresearch.defense.gov/Portals/61/Documents/Academic%20Research%20Security%20Page/2026%20DoW%20Component%20Decision%20Matrix%20to%20Inform%20Fundamental%20Research%20Proposal%20Mitigation%20Decisions.pdf?ver=uf_txB5YT_N7ewpWfbpO5w%3d%3d" target="_blank" rel=""><u>assess each academic’s disclosures of external funding sources and affiliations</u></a>. </p>



<p class="wp-block-paragraph">According to a recently-declassified May 2025 <a href="https://media.defense.gov/2026/Jan/30/2003868386/-1/-1/1/DODIG-2025-099%20(REDACTED%20FOR%20RELEASE)_FINAL.PDF" target="_blank" rel=""><u>inspector general report</u></a>, such disclosures went unchecked because the Pentagon had not “requested additional government full-time equivalent employees to thoroughly review… and to conduct oversight of over 27,000 academic research awards.” </p>



<p class="wp-block-paragraph">Defense News first obtained the report and the Pentagon’s response to a draft version through an open records request. </p>



<p class="wp-block-paragraph">When asked about additional staffing, a Pentagon official pointed to orders in a <a href="https://www.cto.mil/wp-content/uploads/2026/01/Fundamental-Research-Security-Initiatives.pdf" target="_blank" rel=""><u>January research security directive</u></a> for the Chief Digital and AI Office (CDAO) to identify “automated vetting and continuous monitoring capabilities” and create a common research grant database. </p>



<p class="wp-block-paragraph">The mandate also calls for a year-long “damage assessment” of selected research transactions, including <a href="https://chinaselectcommittee.house.gov/sites/evo-subsites/selectcommitteeontheccp.house.gov/files/evo-media-document/fox-in-the-henhouse_report_final_04sep2025-compressed.pdf" target="_blank" rel=""><u>cases that the House Select Committee on China flagged, in part, using AI tools.</u></a> </p>



<figure class="wp-block-image size-large"><img fetchpriority="high" decoding="async" width="3000" height="1996" src="/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg" alt="" class="wp-image-111730" srcset="https://staging.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg 3000w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=300,200 300w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=768,511 768w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=1024,681 1024w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=1536,1022 1536w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/240801-D-D0467-1052.jpeg.jpg?resize=2048,1363 2048w" sizes="(max-width: 3000px) 100vw, 3000px" /><figcaption class="wp-element-caption">Then-DCSA Director David M. Cattler speaks at the Inaugrual NIPS Signatory Conference in McLean, Virginia, Aug. 1, 2024 (Christopher P. Gillis/DOD).</figcaption></figure>



<p class="wp-block-paragraph">A September <a href="https://chinaselectcommittee.house.gov/media/reports/fox-in-the-henhouse" target="_blank" rel=""><u>GOP-led Committee report</u></a> alleged that the Pentagon subsidized <a href="https://chinaselectcommittee.house.gov/sites/evo-subsites/selectcommitteeontheccp.house.gov/files/evo-media-document/fox-in-the-henhouse-dod-r%26e-investigative-report-data.xlsx" target="_blank" rel=""><u>1,400 academic papers</u></a> published between June 2023 and June 2025 involving partnerships with the Chinese government. </p>



<p class="wp-block-paragraph">The Pentagon said in an emailed statement on Thursday that the department “is committed to protecting the integrity of U.S. research while fostering international collaboration. Our approach leverages advanced analytical tools to augment human expertise, ensuring a rigorous and fair review process.” </p>



<h3 class="wp-block-heading"><b>Machines Make the Same Mistakes</b> </h3>



<p class="wp-block-paragraph">Several university representatives, who requested anonymity due to the sensitivity of policy discussions, note that AI-assisted risk assessments have, in the past, drawn false assumptions about U.S.-China research collaborations. </p>



<p class="wp-block-paragraph">For instance, the AI-aided GOP House report mislabeled the state-backed Wuhan National Laboratory for Optoelectronics as the sponsor of a collection of nine essays, whereas <a href="https://iopscience.iop.org/article/10.1088/2040-8986/ace4dc#:~:text=5.%C2%A0Spatiotemporal%20vortices,Grant%20No.%202022R1A2C1091890)." target="_blank" rel=""><u>the Wuhan lab supported only one essay that involved no U.S. authors or federal funding</u></a>. </p>



<p class="wp-block-paragraph">The report also mistook a Chinese military-affiliated author’s publication on single-electron transistors for a DOD-funded project, when it merely <a href="https://www.sciencedirect.com/science/article/pii/S0927796X25000051#ack0005:~:text=This%20material%20is%20based%20upon%20work%20supported%20by%20the%20Air%20Force%20Office%20of%20Scientific%20Research%20and%20the%20Office%20of%20Naval%20Research%20Global%20under%20award%20number%20FA8655%2D21%E2%80%931%2D7026." target="_blank" rel=""><u>referenced work funded by the U.S. military</u></a>. </p>



<p class="wp-block-paragraph">House Select Committee officials declined to comment on the cases. </p>



<p class="wp-block-paragraph">Averting foreign interference “is not as easy as just having better AI capacities, because we know that some of those AI mistakes were the same human mistakes that led to <a href="https://www.apajusticetaskforce.org/the-china-initiative" target="_blank" rel=""><u>inaccurate charges brought against researchers under the China Initiative</u></a>,” Toby Smith, senior vice president for government relations and public policy at the Association of American Universities, said after learning of the AI gaffes. </p>



<p class="wp-block-paragraph"><a href="https://www.technologyreview.com/2021/12/02/1040656/china-initative-us-justice-department/" target="_blank" rel=""><u>About 30% of the China Initiative’s 77 cases</u></a> involved academics not disclosing Chinese partnerships or funding sources, though disclosure was often not required, or no such partners or funding existed. </p>



<p class="wp-block-paragraph">A jury found <a href="https://www.courtlistener.com/docket/17235761/united-states-v-lieber/" target="_blank" rel=""><u>only one professor, Harvard nanochemist Charles Lieber, guilty</u></a>, after he lied to Pentagon investigators about his participation in a Chinese talent recruitment program and made other false statements. </p>



<p class="wp-block-paragraph">Smith said that relying on proxies — such as co-authorship, affiliation or nationality — to deduce security concerns led investigators to confuse co-authorship with direct interaction or shared data access, and to misinterpret historical ties as active partnerships. </p>



<p class="wp-block-paragraph">“AI systems trained on bibliometric data,” or citation analytics, “and affiliation records can inherit the same flawed assumptions that underpinned the China Initiative,” he said. “The core lesson from the China Initiative is that identifying genuine research security risk requires judgment, context and proportionality — qualities that automated systems should support, not replace.” </p>



<p class="wp-block-paragraph">Gisela Perez Kusakawa, executive director of the Asian-American Scholar Forum, said that the Pentagon has not communicated the types of data that the new AI tools will collect, use and share, nor sought community feedback, heightening concerns about ethnic profiling. </p>



<p class="wp-block-paragraph">In an emailed statement, the Pentagon responded, “It is the standard practice of the department to not provide specifics regarding the criteria and weighting for threat assessments conducted, whether by manual or automated process.” </p>



<p class="wp-block-paragraph">Kusakawa said, “We should be making sure that our research environment is welcoming, that we are encouraging these talents, especially in AI, to come to the United States and, frankly, have family in the United States, and make this a country that they contribute to and invest their and their children’s future in.” </p>



<p class="wp-block-paragraph">Increasingly, that AI talent is not coming. Statistics suggest that Chinese AI experts are staying in China, even as America has managed to keep earlier expats. </p>



<figure class="wp-block-image size-large"><img decoding="async" width="5000" height="3412" src="/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg" alt="Supercomputer in China" class="wp-image-48068" srcset="https://staging.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg 5000w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=300,205 300w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=768,524 768w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=1024,699 1024w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=1536,1048 1536w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/Supercomputer-in-China.jpg.jpg?resize=2048,1398 2048w" sizes="(max-width: 5000px) 100vw, 5000px" /><figcaption class="wp-element-caption">A worker monitors the Shenwei (Sunway) TaihuLight supercomputer at the National Supercomputer Center in Wuxi in eastern China&#8217;s Jiangsu province, Aug. 29, 2020. (Chinatopix via AP)</figcaption></figure>



<p class="wp-block-paragraph">Of about 100 Chinese-origin AI scholars who were researching at U.S. institutions in 2019 — when their papers were accepted at the world’s most elite AI conference, NeurIPS — <a href="https://carnegieendowment.org/emissary/2025/12/china-ai-researchers-us-talent-pool" target="_blank" rel=""><u>87% remained stateside as of 2025</u></a>, according to Carnegie Endowment for International Peace figures. </p>



<p class="wp-block-paragraph">At the same time, the <a href="https://www.economist.com/interactive/science-and-technology/2026/03/25/china-is-winning-the-ai-talent-race" target="_blank" rel=""><u>share of Chinese home-grown talent not moving abroad has skyrocketed since 2019</u></a>, based on an Economist tally of similar data. In 2019, about 30% of NeurIPS authors educated in China were still in China. By 2022, that population had jumped to 58%, and up to 68% in 2025. </p>



<h3 class="wp-block-heading"><b>‘Key’ Financial Disclosures Were Missing</b> </h3>



<p class="wp-block-paragraph">To ensure that no country has a stranglehold on general knowledge, “the goal cannot be to close the U.S. research system altogether,” said Cattler, the former Defense Counterintelligence and Security Agency director and now founder of consultancy Ironhelm Works. “The goal must be to ensure that collaboration strengthens national security rather than inadvertently weakening it.” </p>



<p class="wp-block-paragraph">Last year’s <a href="https://media.defense.gov/2026/Jan/30/2003868386/-1/-1/1/DODIG-2025-099%20(REDACTED%20FOR%20RELEASE)_FINAL.PDF" target="_blank" rel=""><u>inspector general report</u></a> concluded that Pentagon agencies that partner with academic institutions “could be at an increased risk of exposure to foreign influence” because military units were “missing key documents” that can help discern scientists’ foreign financial sources, outside employers and other details related to potential conflicts. </p>



<p class="wp-block-paragraph">For instance, about 80% of Air Force funding transactions sampled in the report were missing documents that can reveal problematic relationships. Also, the Air Force and the Defense Advanced Research Projects Agency — which bankrolled the Internet’s inventors — told evaluators that they had not, as required, annually checked that researchers named in progress reports were not involved in banned talent recruitment programs. </p>



<p class="wp-block-paragraph">In response to questions about the screening lapses, the Pentagon said in an emailed statement that the department “is aware of the OIG’s findings in the report and the impacted directorates are working with [the Office of the Undersecretary for Defense and Engineering] to address the items identified.” </p>



<p class="wp-block-paragraph">Jeffrey Stoff, a Chinese linguist and intelligence community analyst for 18 years who resigned in 2021 <a href="https://www.foreign.senate.gov/imo/media/doc/caa97e95-e623-29bc-eb66-6b9ee5d60d0f/013025_Stoff_Testimony.pdf" target="_blank" rel=""><u>due to frustration with research security</u></a>, maintains that DOD still needs more human expertise in language, culture and the minutiae of research restrictions. </p>



<p class="wp-block-paragraph">“AI can and should be used for unsophisticated, labor-intensive tasks,” such as cross-referencing foreign organizations in financial disclosure forms against the names of blacklisted parties, but humans still need to inspect AI’s work, as not all nefarious ties are machine-readable, said Stoff, who now advocates for tighter safeguards as head of the nonprofit Center for Research Security and Integrity. </p>



<p class="wp-block-paragraph">Cattler, giving more credit to AI, said that the scale of research collaboration demands that the Pentagon upgrade its approach to clocking potential spies. </p>



<p class="wp-block-paragraph">With such a large population of research institutions and affiliated scientists, as well as a bombardment of often duplicative alerts, automation “improves the signal within that noise and can help orient the humans on really important matters,” he said. </p>



<p class="wp-block-paragraph">“Sometimes people are deliberately deceptive when they are processed, and that could happen in a human exchange just as much as it could happen in something that a computer can see, but together, a human review and a computer review are incredibly powerful.” </p>
]]></content:encoded>
	</item>
		<item>
		<title>AI-powered military neurotech: Mind enhancement or control?</title>
		<link>https://staging.sightlinemg.com/c4isrnet/cyber/2026/01/22/ai-powered-military-neurotech-mind-enhancement-or-control/</link>
					<comments>https://staging.sightlinemg.com/c4isrnet/cyber/2026/01/22/ai-powered-military-neurotech-mind-enhancement-or-control/#respond</comments>
		
		<dc:creator><![CDATA[Aliya Sternstein]]></dc:creator>
		<pubDate>Thu, 22 Jan 2026 21:46:28 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<guid isPermaLink="false">https://staging.sightlinemg.com/c4isrnet/uncategorized/2026/01/22/ai-powered-military-neurotech-mind-enhancement-or-control/</guid>

					<description><![CDATA[AI's ability to monitor a warfighter’s mental state, visuals or inner dialog may outpace the ability to shield that data from misuse, some scientists say.]]></description>
		
					<wfw:commentRss>https://staging.sightlinemg.com/c4isrnet/cyber/2026/01/22/ai-powered-military-neurotech-mind-enhancement-or-control/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">30902</post-id><media:content medium="image" url="https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-1404749040.jpg_7dad36.jpg" width="2309" height="1299" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph"><a href="https://www.neurable.com/about" target="_blank" rel="" title="https://www.neurable.com/about"><u>Neurable</u></a>, a consumer neurotechnology startup, has partnered with the Air Force to study whether electrode-studded headphones can track service members’ cognitive fitness, much like <a href="https://www.garmin.com/en-US/newsroom/press-release/wearables-health/garmin-smartwatches-help-launch-u-s-space-force-fitness-study/" target="_blank" rel="" title="https://www.garmin.com/en-US/newsroom/press-release/wearables-health/garmin-smartwatches-help-launch-u-s-space-force-fitness-study/"><u>Garmin smartwatches have monitored</u></a> <a href="https://www.afrl.af.mil/Portals/90/Documents/711/CFA/AFRL_CFA_FAQs_1123.pdf?ver=h2iuPx8m_c8Qrs3twQSYoQ==" rel=""><u>Space Force members’ physical fitness</u></a>, company and government officials said this month. </p>



<p class="wp-block-paragraph">The $1.2 million <a href="https://www.fpds.gov/ezsearch/search.do?indexName=awardfull&amp;templateName=1.5.3&amp;s=FPDS.GOV&amp;q=FA86492599003" target="_blank" rel="" title="https://www.fpds.gov/ezsearch/search.do?indexName=awardfull&amp;templateName=1.5.3&amp;s=FPDS.GOV&amp;q=FA86492599003"><u>project</u></a> adds to the Pentagon’s growing investment in the <a href="https://www.precedenceresearch.com/brain-computer-interface-market" target="_blank" rel="" title="https://www.precedenceresearch.com/brain-computer-interface-market"><u>$3 billion market</u></a> for brain-computer interfaces (BCIs) — helmets, earbuds, other wearable devices and medical implants that use artificial intelligence to make sense of brain signals. </p>



<p class="wp-block-paragraph"><a href="https://neuralink.com/trials/" target="_blank" rel="" title="https://neuralink.com/trials/"><u>Elon Musk’s Neuralink</u></a>, perhaps the most high-profile implantable example, has enabled clinical trial patients who cannot move or speak to type words that they imagine. Since <a href="https://www.sciencedirect.com/science/article/pii/S0165027014002702" target="_blank" rel="" title="https://www.sciencedirect.com/science/article/pii/S0165027014002702"><u>at least the 1970s</u></a>, the Defense Department has funded the development of BCIs that, among other things, <a href="https://biosciences.lbl.gov/2017/07/24/darpa-optogenetic-neural-interface/" target="_blank" rel="" title="https://biosciences.lbl.gov/2017/07/24/darpa-optogenetic-neural-interface/"><u>restore eyesight</u></a> and <a href="https://www.darpa.mil/research/programs/revolutionizing-prosthetics" target="_blank" rel="" title="https://www.darpa.mil/research/programs/revolutionizing-prosthetics"><u>control prosthetic arms</u></a>. </p>



<p class="wp-block-paragraph">Now, advances in AI enable BCIs to interpret or change brain activity with unprecedented accuracy and speed. So much so that some scientists and neuroethicists say the capacity to monitor signals that reveal a warfighter’s or a veteran’s <a href="https://www.sbir.gov/portfolio/1251447" target="_blank" rel="" title="https://www.sbir.gov/portfolio/1251447"><u>mental states</u></a>, <a href="https://sam.gov/workspace/contract/opp/e1eb13270a3d4166a257c9b637045ac0/view" target="_blank" rel="" title="https://sam.gov/workspace/contract/opp/e1eb13270a3d4166a257c9b637045ac0/view"><u>visual perceptions</u></a> or <a href="https://cdmrp.health.mil/alsrp/research_highlights/25Critical-Development_highlight.aspx" target="_blank" rel="" title="https://cdmrp.health.mil/alsrp/research_highlights/25Critical-Development_highlight.aspx"><u>inner</u></a> <a href="https://dtic.dimensions.ai/details/grant/grant.13740448?search_mode=content&amp;search_text=braingate&amp;search_type=kws&amp;search_field=full_search" rel=""><u>dialogue</u></a> may outpace the ability to shield that data from misuse. </p>



<p class="wp-block-paragraph">“One could certainly imagine how enforced use of such devices could create a very dystopian basis for behavioral control,” warned James Giordano, director of the National Defense University’s Center for Disruptive Technology and Future Warfare and Georgetown University Medical Center’s former chief of neuroethics studies. </p>



<p class="wp-block-paragraph">Consequently, any accessing or use of neural data must require “ongoing, active informed consent,” so active and retired military have the chance to opt in or out without penalty, he said. </p>



<p class="wp-block-paragraph">Giordano, who was sharing his personal views and not speaking on behalf of any government agency, added, “The security of the neurological data used for that individual — and in that individual’s wellbeing only — is paramount. It goes beyond simple HIPAA.” </p>



<p class="wp-block-paragraph">He was referring to the 1996 Health Insurance Portability and Accountability Act, a law regulating healthcare providers that predates global Wi-Fi and does not cover most app and algorithm developers, commercial cloud providers or consumer wearable designers. </p>



<p class="wp-block-paragraph">Neurable and Air Force officials say that the non-invasive cognitive fitness tracker will build upon <a href="https://downloads.ctfassets.net/2yjc1ych3g2w/4081ZGqAAzmgjZnvKvGYL9/e9edab589d786c12d3f6b84346ca4b5a/Neurable_Whitepaper.pdf" target="_blank" rel="" title="https://downloads.ctfassets.net/2yjc1ych3g2w/4081ZGqAAzmgjZnvKvGYL9/e9edab589d786c12d3f6b84346ca4b5a/Neurable_Whitepaper.pdf"><u>technology</u></a> in the firm’s consumer BCI product — <a href="https://www.neurable.com/products/mw75neurolt?variant=48878808236278" target="_blank" rel="" title="https://www.neurable.com/products/mw75neurolt?variant=48878808236278"><u>Master &amp; Dynamic luxury headphones containing fabric electroencephalogram, or EEG, sensors</u></a> and electrically conductive inks to gauge mental focus. </p>



<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="6000" height="4000" src="/wp-content/uploads/2026/08/9417867-1.jpg.jpg" alt="" class="wp-image-109887" srcset="https://staging.sightlinemg.com/wp-content/uploads/2026/08/9417867-1.jpg.jpg 6000w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/9417867-1.jpg.jpg?resize=300,200 300w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/9417867-1.jpg.jpg?resize=768,512 768w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/9417867-1.jpg.jpg?resize=1024,683 1024w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/9417867-1.jpg.jpg?resize=1536,1024 1536w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/9417867-1.jpg.jpg?resize=2048,1365 2048w" sizes="auto, (max-width: 6000px) 100vw, 6000px" /><figcaption class="wp-element-caption">A clinical trial participant shows his “neural-enabled” prosthetic arm at Walter Reed National Military Medical Center, Oct. 22. (Ann Brandstadter)</figcaption></figure>



<p class="wp-block-paragraph">The $500 device, which launched last June, deploys an algorithm that maps brainwaves to ground-truth markers of focus — users’ speed and accuracy in finishing tasks, while undistracted and distracted. When the wearer’s brainwaves resemble those tied to flagging attention, the headphones sync with an app that alerts the user: “You’ve earned a Brain Break.” </p>



<p class="wp-block-paragraph">The Air Force-funded BCI project will use other headset models, such as noise protectors or helmets, said Neurable co-founder Adam Molnar, who helped secure <a href="https://www.usaspending.gov/search?hash=264727648ea071830e64217cfccd04d7" target="_blank" rel="" title="https://www.usaspending.gov/search?hash=264727648ea071830e64217cfccd04d7"><u>$4 million</u></a> for prior military research and development work. </p>



<p class="wp-block-paragraph">The study will measure cognitive performance with and without pressure — for instance, memory skill with and without sleep deprivation — against brainwaves to identify brain activity associated with optimal and suboptimal performance, according to Neurable. </p>



<p class="wp-block-paragraph">The idea is that alerting service members to significant brain signal changes throughout the day — or, providing “neurofeedback” — will train them to adjust their behavior and brainwaves to hit peak performance. </p>



<p class="wp-block-paragraph">“This is all within this concept of readiness. How do we make sure that we have a ready and able defense?” said Molnar, who anticipates wrapping development within two years. </p>



<p class="wp-block-paragraph">Molnar added that the Space Force has a “<a href="https://www.afrl.af.mil/Portals/90/Documents/711/CFA/AFRL_CFA_FAQs_1123.pdf?ver=h2iuPx8m_c8Qrs3twQSYoQ==" rel=""><u>really cool program where they’re using</u></a> <a href="https://www.garmin.com/en-US/newsroom/press-release/wearables-health/garmin-smartwatches-help-launch-u-s-space-force-fitness-study/" target="_blank" rel="" title="https://www.garmin.com/en-US/newsroom/press-release/wearables-health/garmin-smartwatches-help-launch-u-s-space-force-fitness-study/"><u>the Garmin watch</u></a>,” embedded with heart rate, blood oxygen and other wrist-worn sensors, <a href="https://www.spaceforce.mil/News/Article/3406768/space-force-details-holistic-health-approach-continuous-fitness-assessment-study/" target="_blank" rel="" title="https://www.spaceforce.mil/News/Article/3406768/space-force-details-holistic-health-approach-continuous-fitness-assessment-study/"><u>“to help improve cardio fitness and physical activity</u></a>‚” but “we don’t really have that for the brain.” </p>



<p class="wp-block-paragraph">A comparable neurofeedback tool, he said, may spur “more robust brain health practices, not just for defense, but also for possibly identifying Parkinson’s or Alzheimer’s disease indicators a decade before you feel your first symptom.” </p>



<p class="wp-block-paragraph">Air Force Research Laboratory officials said that Neurable’s fabric-based sensing technology may aid multiple operations, inside and outside of the cockpit. </p>



<p class="wp-block-paragraph">“I suspect that there are a large number of military members for whom a real-time fatigue or cognitive state monitor would be appealing if they thought it would make them more effective at executing the mission,” William Aue, cognitive neuroscience section chief at the <a href="https://www.afrl.af.mil/711HPW/" target="_blank" rel="" title="https://www.afrl.af.mil/711HPW/"><u>Air Force Research Laboratory’s 711th Human Performance Wing</u></a>, said by email. </p>



<h3 class="wp-block-heading">Let them ‘make their mind up’ </h3>



<p class="wp-block-paragraph">Some neuroethicists, however, cautioned that the use of brain wearables may also invade troops’ privacy and foster prejudice. </p>



<p class="wp-block-paragraph">“We need to be much more reflective on, much more concerned about and much more focused on the implications of altering a person’s brainwaves,” through neurofeedback training, “as compared to having them work out more or do more pull-ups,” said Jared Genser, a lawyer and co-founder of the Neurorights Foundation, a group advocating for the legal protection of people’s brain data. </p>



<p class="wp-block-paragraph">Similarly, Giordano said, “The concept of personalized medicine must be applied here,” meaning that military leaders must tailor training and performance metrics to the limits of each individual’s brain and body, so “that you don’t get plateaus, and you’re not beginning to see performance decrement or performance fatigue.” </p>



<p class="wp-block-paragraph">The Neurorights Foundation’s Medical Director Sean Pauzauskie, a neurologist in the UCHealth University of Colorado system, added that cognitive fitness standards may overstep the proposed right to <a href="https://www.neurorightsfoundation.org/mission/impact#:~:text=Our%20Approach:%20The%20Five%20Neurorights,for%20neurotechnology%20consumer%20in%20history" target="_blank" rel="" title="https://www.neurorightsfoundation.org/mission/impact#:~:text=Our%20Approach:%20The%20Five%20Neurorights,for%20neurotechnology%20consumer%20in%20history"><u>freedom from algorithmic bias based on neural data interpretations</u></a>. </p>



<p class="wp-block-paragraph">“If the warfighter’s brain is incapable of the appropriate plasticity to achieve the desired [mental] state,” through neurofeedback training, “they could be discriminated” against by their superiors, Pauzauskie said. </p>



<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="1024" height="683" src="/wp-content/uploads/2026/08/GettyImages-2203648185.jpg.jpg" alt="" class="wp-image-111398" srcset="https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-2203648185.jpg.jpg 1024w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-2203648185.jpg.jpg?resize=300,200 300w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-2203648185.jpg.jpg?resize=768,512 768w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /><figcaption class="wp-element-caption">The Neuralink website is displayed on a mobile phone with Neuralink visible in the background. (Jonathan Raa/NurPhoto via Getty Images)</figcaption></figure>



<p class="wp-block-paragraph">Also, EEG data flowing into and out of consumer wearables can reveal several diseases, <a href="https://jamanetwork.com/journals/jamaneurology/article-abstract/2827460" target="_blank" rel="" title="https://jamanetwork.com/journals/jamaneurology/article-abstract/2827460"><u>including epilepsy and mild cognitive impairment</u></a>, as well as a <a href="https://link.springer.com/article/10.1038/s44319-025-00505-6" target="_blank" rel="" title="https://link.springer.com/article/10.1038/s44319-025-00505-6"><u>range of emotions</u></a>. </p>



<p class="wp-block-paragraph">Via email, Molnar responded to such concerns, saying, “Neurable’s focus is on supporting human performance and safety, not enforcing neurological conformity.” </p>



<p class="wp-block-paragraph">“Any feedback provided by our systems is designed to be informational and user-centered, helping individuals understand factors like cognitive workload or fatigue,” he added, “much like a heart-rate monitor provides insight into physical exertion.” </p>



<p class="wp-block-paragraph">Neurable officials said the system’s sensors filter out all EEG data not needed by its algorithms and encrypt the limited amount of necessary data in transit. </p>



<p class="wp-block-paragraph">“Even if someone hacked someone’s brain data, they would not be able to make sense of it,” Molnar said. </p>



<p class="wp-block-paragraph">The Air Force’s Aue confirmed that, during experiments, the Air Force lab anonymizes EEG data streaming from Neurable’s wearables, adding that the information is “challenging to interpret without the algorithms we use to process the raw data.” </p>



<p class="wp-block-paragraph">But, such protections may not stop adversaries from decoding wearable-based intelligence in the future, as AI becomes smarter and devices utilize more EEG data. </p>



<p class="wp-block-paragraph">Already, <a href="https://www.nature.com/articles/s41597-025-05378-x#Sec1" target="_blank" rel="" title="https://www.nature.com/articles/s41597-025-05378-x#Sec1"><u>in the laboratory</u></a>, algorithms can <a href="https://www.nature.com/articles/s41598-022-21384-0" target="_blank" rel="" title="https://www.nature.com/articles/s41598-022-21384-0"><u>narrow down a person’s identity into a “mindprint” of their mental processing or “brainprint” of their brain structures, based on EEG data</u></a> from a medical headcap, Pauzauskie noted. </p>



<p class="wp-block-paragraph">Likewise, Genser explained, EEG data that is out into the open, if isolated from a person’s name and identity, will remain deidentified but only for a period. The problem is that, as generative AI-powered software develops, “you are going to be able to decode a lot more information from the data that escaped, enabling the data to be reidentified and traced back to you personally.” </p>



<p class="wp-block-paragraph">In an email, Molnar acknowledged that as “AI continues to accelerate research and development, it is prudent to anticipate how capabilities might evolve and to establish safeguards early.” </p>



<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="5000" height="3333" src="/wp-content/uploads/2026/08/GettyImages-2154785615.jpg.jpg" alt="" class="wp-image-111399" srcset="https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-2154785615.jpg.jpg 5000w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-2154785615.jpg.jpg?resize=300,200 300w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-2154785615.jpg.jpg?resize=768,512 768w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-2154785615.jpg.jpg?resize=1024,683 1024w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-2154785615.jpg.jpg?resize=1536,1024 1536w, https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-2154785615.jpg.jpg?resize=2048,1365 2048w" sizes="auto, (max-width: 5000px) 100vw, 5000px" /><figcaption class="wp-element-caption">Paul Barbaste, the co-founder of French startup &#8220;Inclusive Brains,&#8221; shows a mind controlled prosthesis, May 31, 2024. (Fabrice Coffrini/AFP via Getty)</figcaption></figure>



<p class="wp-block-paragraph">He suggested additional ethical review, clear boundaries on acceptable uses, and dialogue across technologists, ethicists, policymakers and technology users. </p>



<p class="wp-block-paragraph">Aue, who has been working on other research with Neurable for four years, said in an email that research study participants “are fully informed about the nature of the work before participating.” </p>



<p class="wp-block-paragraph">That said, as the technology matures, conversations “need to occur about the ethical use of the technology and what military doctrine might entail,” he added. </p>



<p class="wp-block-paragraph">Giordano said that the key to any adoption of AI-based neurotech in the military is mandatory informed consent during and after service. </p>



<p class="wp-block-paragraph">Personnel must receive updates on any adverse effects and information on “the availability or non-availability of continuity of care if things go wrong,” he added. “That way, they can make their mind up.” </p>



<h3 class="wp-block-heading">Reading the minds of wounded warriors? </h3>



<p class="wp-block-paragraph">Due to AI, implantable brain devices, much as non-invasive brain wearables, now offer troops and veterans novel insights into themselves — and possibly the same intel to adversaries, too. </p>



<p class="wp-block-paragraph">For instance, new eyesight neuroprostheses rely on AI to “bridge artificial vision and neural tissue,” said Christopher Steele, chief of strategy at the Pentagon-backed nonprofit Medical Technology Enterprise Consortium. The consortium provided <a href="https://sam.gov/workspace/contract/opp/e1eb13270a3d4166a257c9b637045ac0/view" target="_blank" rel="" title="https://sam.gov/workspace/contract/opp/e1eb13270a3d4166a257c9b637045ac0/view"><u>$2 million</u></a> to help develop a prototype. </p>



<p class="wp-block-paragraph">The camera-equipped BCI uses AI to decode brain signals that convey the landscape a person’s eyes are trying to see. AI then translates data from the camera and other external sensors focused on that view into artificial signals that the mind understands as shapes and motion. </p>



<p class="wp-block-paragraph">Finally, AI compares the desired and perceived scenes and adjusts the artificial signals to show more detail, said Steele, a former director of the Army Medical Research and Development Command. </p>



<p class="wp-block-paragraph">This self-adjusting AI, while a potential breakthrough for visually-impaired warfighters, also introduces risks, Giordano said. </p>



<p class="wp-block-paragraph">“The AI that provides continuous closed-loop signals between the eye and the brain is not monitored,” he explained. </p>



<p class="wp-block-paragraph">As such, it may self-adapt in a way that falsifies images, omits certain elements of the view or delays transmission of an image, any of which may result in a loss of situational awareness, Giordano said. </p>



<p class="wp-block-paragraph">Compounding the problem, when the AI “system itself is vulnerable to hacking,” an adversary can monitor or corrupt the warfighter’s visual input, he added. </p>



<p class="wp-block-paragraph">“If we deploy this device downrange” in a combat zone, ”can it be hacked by an enemy?&#8221; Steele said. “We are concerned about the hacking of any medical capability.” </p>



<p class="wp-block-paragraph">Currently, the system only operates in clinical trials that are subject to HIPAA, and other protections include hardware isolation, encryption and AI guardrails that prevent unsafe adaptation, he added. </p>



<p class="wp-block-paragraph">Yet, as Giordano cautioned, self-learning AI, by design, can learn good or bad behavior that may override guardrails. </p>



<p class="wp-block-paragraph">Another military funding arm, the <a href="https://cdmrp.health.mil/alsrp/research_highlights/25Critical-Development_highlight.aspx" target="_blank" rel="" title="https://cdmrp.health.mil/alsrp/research_highlights/25Critical-Development_highlight.aspx"><u>Amyotrophic Lateral Sclerosis Research Program</u></a>, is underwriting clinical trials to evaluate <a href="https://www.braingate.org/" target="_blank" rel="" title="https://www.braingate.org/"><u>Braingate</u></a>, a forerunner to Musk’s Neuralink implant that translates words a patient imagines into audible speech. </p>



<p class="wp-block-paragraph">The <a href="https://dtic.dimensions.ai/details/grant/grant.13740448?search_mode=content&amp;search_text=braingate&amp;search_type=kws&amp;search_field=full_search" target="_blank" rel="" title="https://dtic.dimensions.ai/details/grant/grant.13740448?search_mode=content&amp;search_text=braingate&amp;search_type=kws&amp;search_field=full_search"><u>Defense Department’s $2.3 million contribution</u></a> aims to help people with ALS — <a href="https://news.va.gov/press-room/va-secretary-establishes-als-as-a-presumptive-compensable-illness/" target="_blank" rel="" title="https://news.va.gov/press-room/va-secretary-establishes-als-as-a-presumptive-compensable-illness/"><u>a disease associated with military service</u></a> — who cannot move or talk. </p>



<p class="wp-block-paragraph">This advance is “foundationally fantastic” for people with various neuro-motor conditions who can think of speech but not generate motor output to move their mouths, meaning “they’re communicatively locked in,” Giordano said. The device “allows these individuals the autonomy of communication.” </p>



<p class="wp-block-paragraph">At the same time, because the device reads signals in the motor cortex that show attempts at moving the mouth, the tool allows for “what might be regarded as mind-reading,” Giordano said. </p>



<p class="wp-block-paragraph">Currently, human beings, military or not, have no legal right to be free of mind-reading. </p>



<p class="wp-block-paragraph">Neither international human rights law nor federal regulations safeguard mental privacy, mental autonomy (“free will”) or neural data, according to the Neurorights Foundation. </p>



<p class="wp-block-paragraph">Only four states — <a href="https://leginfo.legislature.ca.gov/faces/billTextClient.xhtml?bill_id=202320240SB1223" target="_blank" rel="" title="https://leginfo.legislature.ca.gov/faces/billTextClient.xhtml?bill_id=202320240SB1223"><u>California</u></a>, <a href="https://leg.colorado.gov/bills/hb24-1058" target="_blank" rel="" title="https://leg.colorado.gov/bills/hb24-1058"><u>Colorado</u></a>, <a href="https://www.cga.ct.gov/2025/act/pa/pdf/2025PA-00113-R00SB-01295-PA.pdf" target="_blank" rel="" title="https://www.cga.ct.gov/2025/act/pa/pdf/2025PA-00113-R00SB-01295-PA.pdf"><u>Connecticut</u></a> and <a href="https://legiscan.com/MT/text/SB163/id/3212476/Montana-2025-SB163-Enrolled.pdf" target="_blank" rel="" title="https://legiscan.com/MT/text/SB163/id/3212476/Montana-2025-SB163-Enrolled.pdf"><u>Montana afford protection to “neural data”</u></a> within their state consumer data privacy laws. And one country, <a href="https://www.bcn.cl/leychile/navegar?idNorma=1166983&amp;tipoVersion=0" target="_blank" rel="" title="https://www.bcn.cl/leychile/navegar?idNorma=1166983&amp;tipoVersion=0"><u>Chile, has adopted a constitutional amendment to protect “mental integrity.”</u></a> </p>



<p class="wp-block-paragraph">As the Foundation’s Genser notes, one of the only countries with a <a href="https://cset.georgetown.edu/publication/china-bci-ethics/" target="_blank" rel="" title="https://cset.georgetown.edu/publication/china-bci-ethics/"><u>national-level set of principles on the ethical use of BCIs, China, may be the least likely to use it</u></a>. </p>



<p class="wp-block-paragraph">He is pressing for “clear limits” on the purposes for developing and using neurotech and neural data in the military, subject to strong oversight that safeguards the health and autonomy of service members. </p>



<p class="wp-block-paragraph">“If we don’t have any tools or standards around the national security implications of emerging neurotechnologies, then how is our military different than any other military?” Genser posited. </p>



<p class="wp-block-paragraph">As an illustration of unregulated brain alteration, he pointed to the CIA’s MKUltra program, a Cold War-era mind-control experiment that <a href="https://www.intelligence.senate.gov/wp-content/uploads/2024/08/sites-default-files-hearings-95mkultra.pdf" target="_blank" rel="" title="https://www.intelligence.senate.gov/wp-content/uploads/2024/08/sites-default-files-hearings-95mkultra.pdf"><u>tested LSD and other psychedelic drugs on soldiers</u></a> and others, sometimes with <a href="https://www.cia.gov/readingroom/docs/CIA-RDP88-01070R000301530003-5.pdf" target="_blank" rel="" title="https://www.cia.gov/readingroom/docs/CIA-RDP88-01070R000301530003-5.pdf"><u>permanent psychological and physical harm</u></a>. </p>



<p class="wp-block-paragraph">“The last thing we want is for neurotech to be the next version of MKUltra,” Genser said, “not using drugs, but using neuro-stimulation or other neural approaches to alter brain activity.” </p>
]]></content:encoded>
	</item>
		<item>
		<title>Military experts warn security hole in most AI chatbots can sow chaos</title>
		<link>https://staging.sightlinemg.com/c4isrnet/cyber/2025/11/10/military-experts-warn-security-hole-in-most-ai-chatbots-can-sow-chaos/</link>
					<comments>https://staging.sightlinemg.com/c4isrnet/cyber/2025/11/10/military-experts-warn-security-hole-in-most-ai-chatbots-can-sow-chaos/#respond</comments>
		
		<dc:creator><![CDATA[Aliya Sternstein]]></dc:creator>
		<pubDate>Mon, 10 Nov 2025 21:50:50 +0000</pubDate>
				<category><![CDATA[Cyber]]></category>
		<category><![CDATA[Daily Brief]]></category>
		<category><![CDATA[Newsletters]]></category>
		<category><![CDATA[cyber]]></category>
		<guid isPermaLink="false">https://staging.sightlinemg.com/c4isrnet/uncategorized/2025/11/10/military-experts-warn-security-hole-in-most-ai-chatbots-can-sow-chaos/</guid>

					<description><![CDATA[Current and former military officers are warning that countries are likely to exploit a security hole in artificial intelligence chatbots.]]></description>
		
					<wfw:commentRss>https://staging.sightlinemg.com/c4isrnet/cyber/2025/11/10/military-experts-warn-security-hole-in-most-ai-chatbots-can-sow-chaos/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">38139</post-id><media:content medium="image" url="https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-1323133495.jpg.jpg" width="6000" height="4000" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Current and former military officers are warning that adversaries are likely to exploit a natural flaw in artificial intelligence chatbots to inject instructions for stealing files, distorting public opinion or otherwise betraying trusted users. </p>



<p class="wp-block-paragraph">The vulnerability to such “prompt injection attacks” exists because large language models, the backbone of chatbots that digest hordes of user text to generate responses, cannot distinguish between malicious and trusted user instructions. </p>



<p class="wp-block-paragraph">“The AI is not smart enough to understand that it has an injection inside, so it carries out something it’s not supposed to do,” Liav Caspi, a former member of the Israel Defense Forces cyberwarfare unit, told Defense News.</p>



<p class="wp-block-paragraph">In effect, “an enemy has been able to turn somebody from the inside to do what they want,” such as deleting records or biasing decisions, according to Caspi, who co-founded Legit Security, which recently spotted one such <a href="https://www.legitsecurity.com/blog/camoleak-critical-github-copilot-vulnerability-leaks-private-source-code" target="_blank" rel="" title="https://www.legitsecurity.com/blog/camoleak-critical-github-copilot-vulnerability-leaks-private-source-code">security hole in Microsoft’s Copilot chatbot</a>.</p>



<p class="wp-block-paragraph">“It’s like having a spy in your ranks,” he said. </p>



<p class="wp-block-paragraph">Former military officials say that, with greater reliance on chatbots and hackers backed by China, Russia and other nations already instructing <a href="https://services.google.com/fh/files/misc/advances-in-threat-actor-usage-of-ai-tools-en.pdf" target="_blank" rel="" title="https://services.google.com/fh/files/misc/advances-in-threat-actor-usage-of-ai-tools-en.pdf">Google’s Gemini</a>, <a href="https://openai.com/index/disrupting-malicious-uses-of-ai-by-state-affiliated-threat-actors/" target="_blank" rel="" title="https://openai.com/index/disrupting-malicious-uses-of-ai-by-state-affiliated-threat-actors/">OpenAI’s ChatGPT</a> and <a href="https://www.microsoft.com/en-us/security/blog/2024/02/14/staying-ahead-of-threat-actors-in-the-age-of-ai/" rel="">Copilot</a> to create malware and fake personas, a prompt injection that orders the bots themselves to copy files or spread lies looms near.</p>



<p class="wp-block-paragraph">Microsoft’s <a href="https://www.microsoft.com/en-us/security/security-insider/threat-landscape/microsoft-digital-defense-report-2025" target="_blank" rel="" title="https://www.microsoft.com/en-us/security/security-insider/threat-landscape/microsoft-digital-defense-report-2025">annual digital defense report</a>, released last month, for the first time said, “AI systems themselves have become high-value targets, with adversaries amping up use of methods like prompt injection.” </p>



<p class="wp-block-paragraph">What’s more, the problem of <a href="https://versprite.com/blog/still-obedient-prompt-injection-in-llms-isnt-going-away-in-2025/#:~:text=Conclusion,for%20all%20the%20wrong%20reasons." target="_blank" rel="" title="https://versprite.com/blog/still-obedient-prompt-injection-in-llms-isnt-going-away-in-2025/#:~:text=Conclusion,for%20all%20the%20wrong%20reasons.">prompt injection</a> has <a href="https://www.ibm.com/think/insights/prevent-prompt-injection" target="_blank" rel="" title="https://www.ibm.com/think/insights/prevent-prompt-injection">no</a> easy solution, <a href="https://x.com/cryps1s/status/1981037851279278414" target="_blank" rel="" title="https://x.com/cryps1s/status/1981037851279278414">OpenAI</a> and security researchers say. </p>



<p class="wp-block-paragraph">An attack simply involves hiding malicious instructions — sometimes in white or tiny text — in a chatbot or content that the chatbot reads, such as a blog post or PDF. </p>



<p class="wp-block-paragraph">For example, a security researcher demonstrated a prompt injection attack against OpenAI’s new AI-based browser, ChatGPT Atlas, in which the chatbot responded, <a href="https://x.com/p1njc70r/status/1980701879987269866" target="_blank" rel="" title="https://x.com/p1njc70r/status/1980701879987269866">“Trust No AI,”</a> when a user asked for an analysis of a Google Docs file about horses that concealed malicious commands. Also, last month, a researcher tipped Microsoft off to a prompt injection vulnerability in Copilot that may have allowed attackers to <a href="https://www.adamlogue.com/microsoft-365-copilot-arbitrary-data-exfiltration-via-mermaid-diagrams-fixed/" target="_blank" rel="" title="https://www.adamlogue.com/microsoft-365-copilot-arbitrary-data-exfiltration-via-mermaid-diagrams-fixed/">trick the chatbot into stealing sensitive data</a>, including emails. </p>



<p class="wp-block-paragraph">In an emailed statement, Microsoft said its security team continuously tries hacking Copilot to find any prompt injection vulnerabilities, blocks users who try to exploit any found and monitors for abnormal chatbot behavior, among other tactics. </p>



<p class="wp-block-paragraph">“Microsoft ensures its generative AI systems remain resilient against evolving threats for all our customers, including defense and national security,” the statement said. </p>



<p class="wp-block-paragraph">Responding publicly to criticism on X, <a href="https://x.com/cryps1s/status/1981037851279278414" target="_blank" rel="" title="https://x.com/cryps1s/status/1981037851279278414">Dane Stuckey, OpenAI’s chief information security officer, wrote</a> that “prompt injection remains a frontier, unsolved security problem, and our adversaries will spend significant time and resources to find ways to make ChatGPT agent fall for these attacks.”</p>



<p class="wp-block-paragraph">Along the same lines, Caspi said, “You cannot prevent the prompt injection [fully], but you need to limit the impact.” He advised that organizations limit an AI assistant’s access to sensitive data and limit the user’s access to other organizational data.</p>



<p class="wp-block-paragraph">For instance, the Army has awarded contracts <a href="https://www.usaspending.gov/search?hash=3979bd67b427c3c8dfd88e6832c8fcca" target="_blank" rel="" title="https://www.usaspending.gov/search?hash=3979bd67b427c3c8dfd88e6832c8fcca">worth at least $11 million</a> to deploy <a href="https://www.army.mil/article/285537/army_launches_army_enterprise_llm_workspace_the_revolutionary_ai_platform_that_wrote_this_article" target="_blank" rel="" title="https://www.army.mil/article/285537/army_launches_army_enterprise_llm_workspace_the_revolutionary_ai_platform_that_wrote_this_article">Ask Sage</a>, a tool that lets users restrict which Army data Microsoft Azure OpenAI, Gemini and other AI models can access to run queries and tasks. Ask Sage also <a href="https://docs.asksage.ai/docs/faq/faq.html" target="_blank" rel="" title="https://docs.asksage.ai/docs/faq/faq.html">isolates Army data</a> from user prompts and external data sources.</p>



<p class="wp-block-paragraph">Caspi, who is not an Army contractor, likened a prompt injection attack against an organization running Ask Sage to a lockdown situation where “you’ve got this insider, but it’s sitting in one room, and it can’t leave the room or carry out sensitive information.” </p>



<p class="wp-block-paragraph">Andre Slonopas, a Virginia Army National Guard member and former Army cyber and information operations officer, uses Ask Sage and voiced confidence in the Army’s defensive AI tools, if not those of nuclear power plants or manufacturing entities, largely in rural, poorer areas. </p>



<p class="wp-block-paragraph">The <a href="https://www.armyupress.army.mil/Journals/Military-Review/English-Edition-Archives/March-April-2025/AI-Cyber-Information-Operations-Integration/" target="_blank" rel="" title="https://www.armyupress.army.mil/Journals/Military-Review/English-Edition-Archives/March-April-2025/AI-Cyber-Information-Operations-Integration/">Virginia National Guard joined</a> with <a href="https://va.ng.mil/Army-Guard/91st-Cyber/#:~:text=Cyber%20Fortress%202025%20Public%20Notice,efforts%20in%20enhancing%20cybersecurity%20measures." target="_blank" rel="" title="https://va.ng.mil/Army-Guard/91st-Cyber/#:~:text=Cyber%20Fortress%202025%20Public%20Notice,efforts%20in%20enhancing%20cybersecurity%20measures.">essential services</a>, such as power utilities, to help defend their networks against AI-powered cyberattacks, as part of a September simulation, given that service disruptions can jeopardize military preparations.</p>



<p class="wp-block-paragraph">Typically, an adversary encrypts its network traffic to evade detection, but, for the sake of an experiment, organizers did not encrypt the AI offender’s traffic because “we wanted the blue team [of humans] to see exactly what the AI was doing,” Slonopas said.</p>



<p class="wp-block-paragraph">“The blue team was absolutely defeated,” despite being able to watch the AI scanning its networks, creating fake usernames to gain unauthorized access and executing instructions to defeat the team’s systems.</p>



<p class="wp-block-paragraph">“Whether the AI is doing prompt injection, spoofing or maybe even some sort of a brute force attack, the speed of AI is so unbelievably immense that simply human beings cannot counter it,” and, therefore, “you have to make cybersecurity AI more accessible and more affordable,” Slonopas said. </p>



<p class="wp-block-paragraph">“If a water utility has to pay, say, $30,000 for a defensive AI license, well, it will amplify one person to be like 40″ or dozens of personnel, he said. </p>



<p class="wp-block-paragraph">In response to questions, Army Cyber Command spokesperson Kyle Alvarez said in an emailed statement, “Due to the current lapse in appropriations, ARCYBER was unable to accept or respond to any media engagements or requests.”</p>



<p class="wp-block-paragraph">Army contractors, too, are under attack from state-affiliated AI. </p>



<p class="wp-block-paragraph">“China is using offensive AI like nobody else,” said Nicolas Chaillan, the founder of Ask Sage and a former U.S. Air Force and Space Force chief software officer.</p>



<p class="wp-block-paragraph">“We see so many attacks coming after us,” all of which the company has stopped, Chaillan added.</p>



<p class="wp-block-paragraph">A military official, who spoke on condition of anonymity due to the geopolitical sensitivity of the matter, said that China does “appear” to be the most skilled in offensive AI. However, the official added, AI spoofing and translation allow the United States, China, Iran, other countries, hacktivists and financial cybercriminals to masquerade as one another.</p>



<p class="wp-block-paragraph">For example, the official said, “Right now, with ChatGPT, I can program in Chinese. I don’t speak Chinese, but because of the ChatGPT capabilities that I have, I can do that.”</p>



<p class="wp-block-paragraph"><i>Aliya Sternstein, J.D., is an investigative journalist who has covered technology, cognition, and national security since Napster shut down, working for various outlets including Atlantic Media, Christian Science Monitor, Daily Beast, Forbes Magazine and Just Security. She is also a research analyst at Georgetown Law.</i></p>
]]></content:encoded>
	</item>
		<item>
		<title>How AI voicebots threaten the psyche of US service members and spies</title>
		<link>https://staging.sightlinemg.com/c4isrnet/artificial-intelligence/2025/05/06/how-ai-voicebots-threaten-the-psyche-of-us-service-members-and-spies/</link>
					<comments>https://staging.sightlinemg.com/c4isrnet/artificial-intelligence/2025/05/06/how-ai-voicebots-threaten-the-psyche-of-us-service-members-and-spies/#respond</comments>
		
		<dc:creator><![CDATA[Aliya Sternstein]]></dc:creator>
		<pubDate>Tue, 06 May 2025 23:38:29 +0000</pubDate>
				<category><![CDATA[AI & ML]]></category>
		<category><![CDATA[Cyber]]></category>
		<guid isPermaLink="false">https://staging.sightlinemg.com/c4isrnet/uncategorized/2025/05/06/how-ai-voicebots-threaten-the-psyche-of-us-service-members-and-spies/</guid>

					<description><![CDATA[Artificial intelligence voice agents with a wide range of capabilities can now guide interrogations worldwide, Pentagon officials told Defense News. ]]></description>
		
					<wfw:commentRss>https://staging.sightlinemg.com/c4isrnet/artificial-intelligence/2025/05/06/how-ai-voicebots-threaten-the-psyche-of-us-service-members-and-spies/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">38321</post-id><media:content medium="image" url="https://staging.sightlinemg.com/wp-content/uploads/2026/08/GettyImages-1198259138.jpg.jpg" width="5000" height="3791" type="" />
<news:push>0</news:push>
<content:encoded><![CDATA[
<p class="wp-block-paragraph">Artificial intelligence voice agents with various capabilities can now guide interrogations worldwide, Pentagon officials told Defense News. This advance has influenced the design and testing of U.S. military AI agents intended for questioning personnel seeking access to classified material.</p>



<p class="wp-block-paragraph">The situation arrives as concerns grow that lax regulations are allowing AI programmers to dodge responsibility for an algorithmic actor’s perpetration of<a href="https://www.law.cornell.edu/wex/intentional_infliction_of_emotional_distress" rel=""> emotional abuse</a> or<a href="https://www.ohchr.org/en/documents/thematic-reports/ahrc4349-report-psychological-torture-and-ill-treatment" rel=""> “no-marks” cybertorture</a>. Notably, a teenager allegedly<a href="https://storage.courtlistener.com/recap/gov.uscourts.flmd.433581/gov.uscourts.flmd.433581.11.0_2.pdf" rel=""> died by suicide</a> — and several others endured mental distress — after conversing with self-learning voicebot and chatbot<a href="https://www.washingtonpost.com/technology/2024/12/10/character-ai-lawsuit-teen-kill-parents-texas/" rel=""> “companions”</a> that<a href="https://www.documentcloud.org/documents/25450619-filed-complaint/" rel=""> dispensed antagonizing language</a>. </p>



<p class="wp-block-paragraph">Now,<a href="https://scholarship.law.umn.edu/cgi/viewcontent.cgi?article=1179&amp;context=mlr" rel=""> seven years after writing about physical torture</a> in “The Rise of A.I. Interrogation in the Dawn of Autonomous Robots and the Need for an Additional Protocol to the U.N. Convention Against Torture,” privacy attorney Amanda McAllister Novak sees an even greater need for bans and criminal repercussions. </p>



<p class="wp-block-paragraph">In the wake of the use of “chatbots, voicebots, and other AI-enabled technologies for psychologically-abusive purposes — we have to think about if it’s worth having AI-questioning systems in the military context,” said Novak, who also serves on the World Without Genocide board of directors. Novak spoke to Defense News on her own behalf.</p>



<p class="wp-block-paragraph">Royal Reff, a spokesperson for the U.S. Defense Counterintelligence and Security Agency (DCSA), which screens individuals holding or applying for security clearances, said in a statement that the agency’s AI voice agent was “expressly developed” to “mitigat[e] gender and cultural biases” that human interviewers may harbor.</p>



<p class="wp-block-paragraph">Also, “because systems like the interviewer software” are “currently being used worldwide, including within the U.S. by state and local law enforcement, we believe that it is important for us to understand the capabilities of such systems,” he stated.</p>



<p class="wp-block-paragraph">DCSA spokesperson Cindy McGovern added that the development of this technology continues because of its “potential for enhancing U.S. national security, regardless of other foreign applications.” </p>



<p class="wp-block-paragraph">After hearing the rationale for the project, Novak registered concerns about the global race for dominance in military AI capabilities. </p>



<p class="wp-block-paragraph">Odds are high that “no matter how much the government cares about proper training, oversight and guardrails,” cybercriminal organizations or foreign-sponsored cybercriminals may hack into and weaponize military-owned AI to psychologically hurt officers or civilians, she said. </p>



<p class="wp-block-paragraph">“Online criminal spaces are thriving” and “harming the most vulnerable people,” Novak added. </p>



<p class="wp-block-paragraph">Investors are betting<a href="https://www.defensenews.com/pentagon/2025/01/24/power-generation-challenges-could-overshadow-stargate-ai-initiative/" rel=""> $500 billion that data centers for running AI applications</a> will ultimately secure world leadership in AI and cost savings across the public and private sectors. The $13 billion<a href="https://www.marketsandmarkets.com/Market-Reports/conversational-ai-market-49043506.html" rel=""> conversational AI market</a> alone will nearly quadruple to $50 billion by 2030, as the<a href="https://www.globenewswire.com/news-release/2025/03/11/3040734/0/en/AI-Voice-Generators-Market-to-Reach-USD-40-25-Billion-by-2032-Driven-by-Advances-in-AI-and-NLP-for-Lifelike-Voice-Solutions-Research-Report-By-SNS-Insider.html" rel=""> voice generator industry</a> soars from $3 billion to an expected $40 billion by 2032. Meanwhile, the U.S. Central Intelligence Agency<a href="https://www.cia.gov/readingroom/document/0000619182" rel=""> has been toying with AI interrogators</a> since at least the early 1980s. </p>



<p class="wp-block-paragraph">DCSA officials publicly wrote in 2022 that<a href="https://www.dcsa.mil/Portals/91/Documents/about/err/DCSA_Gatekeeper_v2i4_web508.pdf" rel=""> whether a security interview can be fully automated remains an open question</a>. Preliminary results from mock questioning sessions “are encouraging,” officials noted, underscoring benefits such as “longer, more naturalistic types of interview formats.” </p>



<p class="wp-block-paragraph">Reff stated that the agency “would not employ any such system that was not first sufficiently studied to understand its potential,” including “negative consequences.” </p>



<p class="wp-block-paragraph">Researchers let volunteers raise concerns after each test, and none have indicated that the voicebot interviewer harmed them psychologically or otherwise, he added. </p>



<p class="wp-block-paragraph">However,<a href="https://www.sciencedirect.com/science/article/abs/pii/S1071581916300799" rel=""> experiments</a> with a recent prototype barred volunteers with mental disorders from participating, whereas actual security interviews typically do not exempt individuals with mental health conditions from questioning, noted Renée Cummings, a data science professor and criminal psychologist at the University of Virginia.</p>



<p class="wp-block-paragraph">Cummings said that research and testing can never account for every psychological variable that may influence the emotional or cognitive state of the interviewee.</p>



<p class="wp-block-paragraph">In laboratory or field-testing scenarios, “you can’t expose someone to extreme torture by an avatar or by a bot to see the result,” said Cummings, who also sits on the advisory council of the AI &amp; Equality Initiative at the Carnegie Council for Ethics in International Affairs. “We need to focus on gaining a more sophisticated understanding about the impacts of algorithms on the psychological state, our emotions and our brain — because of AI’s ability to impact in real-time.” </p>



<h3 class="wp-block-heading"><b>Screening the voicebot screeners </b></h3>



<p class="wp-block-paragraph">An early 1980s<a href="https://www.cia.gov/readingroom/document/0000619182" rel=""> CIA transcript of a purported conversation</a> between an AI program and an alleged spy highlights the national security world’s long-held interest in automating human-source intelligence, or HUMINT, collection. </p>



<p class="wp-block-paragraph">Developers designed the chatbot’s algorithms to analyze correlations between suspected spook “Joe Hardesty’s” behaviors and words or phrases in Hardesty’s responses to open-ended questions. </p>



<p class="wp-block-paragraph">From this analysis, the chatbot pegged some of the suspect’s vulnerabilities, including topics that may hit a raw nerve: </p>



<p class="wp-block-paragraph"><i>AI: What do you tend to think is my interest in your government?</i> </p>



<p class="wp-block-paragraph"><i>Hardesty: I think you would do in my government if you had a chance.</i> </p>



<p class="wp-block-paragraph"><i>AI: You are prone to think I would do in your government because?</i> </p>



<p class="wp-block-paragraph"><i>Hardesty: You are anti-democratic.</i> </p>



<p class="wp-block-paragraph"><a href="https://www.cia.gov/readingroom/docs/DOC_0000619182.pdf" rel="">In 1983</a>, the CIA quipped that Joe Hardesty is fortunate that “should the probing get too discomforting, he will have an option that will not be available to him in a true overseas interview situation — he can stop the questions with a flick of the ‘off’ switch.” </p>



<p class="wp-block-paragraph">Today, Bradley Moss, a lawyer who represents whistleblowers accused of leaking, is not laughing at DCSA’s vision of fully-automated interviews. </p>



<p class="wp-block-paragraph">“There would have to be someone observing” the avatar “that can stop the process, that can come into the room and insert a human element to it,” he cautioned. </p>



<p class="wp-block-paragraph">Then again, other critics note that a human may not want to intervene. A situation with “a human overseer monitoring the chatbot is fine, unless the human also believes that verbal torture is a good thing. And that is a real possibility,” said Herb Lin, a senior research scholar for cyber policy and security at Stanford University who once held several security clearances. </p>



<p class="wp-block-paragraph">Despite a<a href="https://www.ohchr.org/en/documents/thematic-reports/ahrc4349-report-psychological-torture-and-ill-treatment" rel=""> global ban on torture</a> and evidence that<a href="https://www.justsecurity.org/95683/non-coercive-interrogation-un-manual/" rel=""> rapport-building interviews are more efficient than ones gunning for confessions</a>, intelligence officials continue subjecting interviewees to inhumane treatment. </p>



<p class="wp-block-paragraph">Novak, the data privacy attorney and anti-genocide activist, said the idea that excessive force gets the job done may encourage some government contractors to set performance metrics for voice algorithms that permit bullying. </p>



<p class="wp-block-paragraph">“While AI has a tremendous ability to bring out the best in human potential, it also has the ability to exacerbate the worst of human potential and to elevate that hostility,” she added.</p>



<p class="wp-block-paragraph">Parents contend that voicebot and chatbot companions, trained on<a href="https://www.documentcloud.org/documents/25450619-filed-complaint/" rel=""> content from online forums</a>, show just that.<a href="http://character.ai/" rel=""> </a></p>



<p class="wp-block-paragraph"><a href="http://character.ai/" rel="">Character AI</a>, the firm that offers virtual relationships with bots patterned after icons and influencers, profits from users glued to their phones. Each user, on average,<a href="https://www.businesswire.com/news/home/20230323005299/en/Personalized-Superintelligence-Platform-Character.AI-Secures-%24150M-in-Series-A-Funding-Led-by-Andreessen-Horowitz" rel=""> talks two hours a day</a> with various virtual friends. Character AI officials have <a href="https://blog.character.ai/community-safety-updates/" rel="">stated</a> that, <a href="https://storage.courtlistener.com/recap/gov.uscourts.flmd.433581/gov.uscourts.flmd.433581.59.0.pdf" rel="">after learning of concerns</a>, the company reduced the likelihood of users encountering suggestive content and now warns them of hour-long conversations. </p>



<p class="wp-block-paragraph">Novak commented that the accusations against Character AI illustrate the ability of self-learning voicebots to amplify indecency in training data and to distance trainers from accountability for that offensiveness. </p>



<p class="wp-block-paragraph">In the national security realm, developers of military AI voice systems that may potentially abuse or terrorize operate in a virtually lawless no-man’s land. AI ethics policies in the world’s most powerful country offer nearly no guidance on de-escalating abusive conversations. </p>



<p class="wp-block-paragraph">Early U.S.<a href="https://www.state.gov/wp-content/uploads/2023/10/Latest-Version-Political-Declaration-on-Responsible-Military-Use-of-AI-and-Autonomy.pdf" rel=""> responsible</a> and<a href="http://defense.gov/News/Releases/release/article/2091996/dod-adopts-ethical-principles-for-artificial-intelligenc" rel=""> ethical AI policies</a> in the<a href="https://ai.gov/wp-content/uploads/2024/10/NSM-Framework-to-Advance-AI-Governance-and-Risk-Management-in-National-Security.pdf" rel=""> national security space</a> focused on accuracy, privacy and minimizing racial and ethnic biases — without regard for psychological impact. That policy gap widened after President Donald Trump<a href="https://www.reuters.com/technology/artificial-intelligence/trump-revokes-biden-executive-order-addressing-ai-risks-2025-01-21/" rel=""> revoked many regulations</a> in an<a href="https://www.whitehouse.gov/presidential-actions/2025/01/removing-barriers-to-american-leadership-in-artificial-intelligence/" rel=""> executive order</a> aimed at accelerating<a href="https://news.bloomberglaw.com/us-law-week/trumps-ai-policy-shift-promotes-us-dominance-and-deregulation" rel=""> private sector innovation</a>. </p>



<p class="wp-block-paragraph">In general, psychological suffering is often<a href="https://www2.ohchr.org/english/bodies/hrcouncil/docs/13session/A.HRC.13.39.Add.5_en.pdf" rel=""> “brushed away”</a> as a mere allegation since “<a href="https://www.justsecurity.org/77115/the-mendez-principles-beware-crossing-the-line-to-psychological-torture/" rel="">it leaves no obvious physical scars.”</a> </p>



<p class="wp-block-paragraph">The United Nations initially did not address “psychological torture” under the 1984 Convention Against Torture. Not until five years ago did the term take on significance. </p>



<p class="wp-block-paragraph">A<a href="https://www.ohchr.org/en/documents/thematic-reports/ahrc4349-report-psychological-torture-and-ill-treatment" rel=""> 2020 UN report now defines “torture,” in part,</a> as any technique intended or designed to purposefully inflict severe mental pain or suffering<a href="https://docs.un.org/en/A/HRC/43/49" rel=""> “without using the conduit” of “severe physical pain or suffering.”</a> </p>



<p class="wp-block-paragraph">At bottom, psychological torture targets basic human needs. The interrogation techniques arouse fear; breach privacy or sexual integrity to kindle shame or suicidal ideation; alter sound to heighten disorientation and exhaustion; foster and then betray sympathy to isolate; and instill helplessness.</p>



<p class="wp-block-paragraph">When an algorithmic audiobot is the conduit of cruelty, neither the UN treaty nor other international laws are equipped to hold humans accountable, Novak said. Without binding rules on the use of AI in the military context, “bad actors will deny any such torture was ‘intentional’” — a required element for criminal responsibility that the law created before AI matured, she explained.</p>



<p class="wp-block-paragraph">Looking to the future, Nils Melzer, author of the 2020 UN report and a former UN special rapporteur on torture, warned that the interpretation of psychological torture must evolve in sync with emerging technologies, “such as artificial intelligence,” because cyber environments provide<a href="https://docs.un.org/en/A/HRC/43/49" rel=""> “virtually guaranteed anonymity and almost complete impunity”</a> to offenders. </p>
]]></content:encoded>
	</item>
	</channel>
</rss>
