JAKARTA - AI evolution not only affects various industries, but has also changed the tactics of criminals in cyberspace. Moreover, when AI is used to perfect phishing attacks.
To that end, Kaspersky shared several explanations about how AI is used in phishing.
Personalization via AI
Previously, phishing attacks relied on mass messages sent to thousands of people, in the hope that one of the recipients would be provoked. With AI, phishing email scripts will become more personal.
Using publicly available information such as those on social media, work boards, and the company's website, AI-powered tools can create email tailored to a person's role, interest, and communication style.
SEE ALSO:
Deepfake technology
AI has also introduced deepfakes into phishing arsenals. This technology is increasingly being used by cybercriminals to create fake audio and video messages but is very accurate, which is made to reflect the voices and appearance of executives they want to imitate.
Kaspersky also predicts that with advances in deepfake technology, it is estimated that such attacks will become increasingly frequent and increasingly difficult to detect.
Passing traditional defense
Cybercriminals can manipulate traditional email filtering system scripts using AI. By analyzing and mimicking legitimate email patterns, AI-generated phishing emails can bypass the detection of security software.
Machine learning algorithms can test and fine-tune phishing campaigns in real time, increase its success rate and make it more sophisticated, explained the global cybersecurity firm.
The English, Chinese, Japanese, Arabic, and French versions are automatically generated by the AI. So there may still be inaccuracies in translating, please always see Indonesian as our main language. (system supported by DigitalSiber.id)