Deconstructing the Architecture of AI-Orchestrated Web Attacks
Akamai Technologies, Monday, August 24th, 2026
Akamai's Security Intelligence Group breaks down the orchestrator-executor architecture behind AI-driven web attacks.
The Akamai Security Intelligence Group dissects how AI-orchestrated web attacks are actually built, separating the orchestrator that plans from the executors that carry out requests.
It maps the anatomy of AI-driven attack phases and describes the new offensive tool belt built on MCP and AI agents, which lets attackers industrialize capabilities that previously required skilled operators.
A central problem is visibility: there is no 'User-Agent: LLM' header, so AI-driven traffic does not self-identify. Akamai argues the answer is defensive AI at the edge that can close the gap and secure enterprise infrastructure at machine speed.