Loading...

13 Jun 2026 21:10

Leadership Perspectives

We’re All a Target: Generative AI and the Automation of Spear Phishing- Jim Downey, Senior Product Marketing Manager, F5

Not long ago, we could pick out phishing emails by their bad spelling, grammatical errors, and non-English syntax. We could spot widely used, generic ploys like the Nigerian prince scam. Most of us have not faced well-polished, targeted spear phishing because researching our background and crafting personalized messages has been too costly for criminals. With generative AI, that’s rapidly changing, and as security professionals, we need to prepare for the consequences.

Generative AI enables end-to-end automation of spear phishing, lowering its cost and broadening its use. Think of the work that an attacker must go through to craft an effective spear phishing message for a business email compromise (BEC). The attacker picks a target, researches their social media, discovers their closest connections, and picks out the target’s interests. With this information, the attacker crafts a personalized email in a tone of voice intended to avoid suspicion. This requires a thoughtful following of leads and psychological intuition.

Could this work be automated? Certainly. Attackers automate the scraping of social media content and use credential stuffing to take over accounts for information gathering. Similarly, through automation, attackers can build a knowledge graph about the life of a target.

With this knowledge graph, attackers can feed highly personal information into a ChatGPT-like service–one without ethical safeguards–to create targeted and effective spear phishing messages. The attacker could create entire sequences of messages that span multiple channels from email to social media with messages originating from multiple fake accounts, each with a well-crafted persona generated based on the target’s trust propensities.

There are signs that this threat is imminent. Reports of new attack tools for sale on the dark web, including WormGPT and FraudGPT, indicate criminals have begun to adapt generative AI to nefarious purposes, including phishing. While the use of this technology has not yet reached large scale end-to-end automation, the pieces are coming together, and the economic dynamics of cybercrime make the development nearly inevitable.

Within the economy of cybercrime, there is a specialization that drives innovation. The World Economic Forum (WEF) estimates that cybercrime is now the world’s third-largest economy, coming in behind the United States and China, with costs expected to reach $8 trillion in 2023 and $10.5 trillion in 2025. The cybercrime economy includes vendors with specializations: there are vendors who sell stolen credentials, vendors who provide access to compromised accounts, and vendors offering IP address proxying over tens of millions of residential IP addresses.

Moreover, there are phishing-as-a-service providers offering complete toolkits from email templates to real-time phishing proxy sites. As vendors compete to win the business of criminals, the highest prizes will go to those organizations providing an end-to-end service at the lowest cost —a dynamic likely to drive forward the automation of spear phishing. We can imagine organizations that specialize in various types of data gathering around targets, data aggregation, and LLMs focused on specific industries or that excel at distinct types of fraud.

Given the likelihood of increases in spear phishing to new targets, organizations need to bolster their existing anti-phishing practices:

Uplevel phishing awareness training: It has long been important to regularly educate employees about the dangers of phishing, how to recognize suspicious emails, and what steps to take if they encounter a potential phishing attempt. However, many organizations train employees to recognize phishing emails by their spelling and grammar mistakes. Instead, training is going to have to go deeper to train people to look out for any request from a non-trusted, non-verified source. In conducting simulated phishing campaigns to test employees’ ability to identify phishing emails, use phishing messages that are well-written, professional, targeted at specific employees, and originating from sources that appear legitimate.

Defend against real-time phishing proxies: Attackers often use phishing to bypass multi-factor authentication (MFA) via real-time phishing proxies. The criminals use phishing to fool users into entering their credentials and one-time password into a site that they control, which they then proxy to the real application to gain access.

Defend more rigorously against account takeovers: Criminals gain control of massive numbers of accounts through credential stuffing using bots. In addition to financial fraud, criminals gather additional personal data through scraping that they can use in further phishing attacks. Defending effectively against bots requires rich signal collection and machine learning.

Use AI to battle AI: With criminals exploiting generative AI to commit fraud, organizations should leverage AI in their defence. F5 partners with organizations to take advantage of rich signal collection and AI to battle fraud. F5 Distributed Cloud Account Protection monitors transactions in real time from across the user journey to detect malicious activity and deliver accurate fraud detection rates. If you can detect fraud within applications, it reduces the harm of phishing. Inspecting traffic with AI requires decrypting traffic efficiently, which you can accomplish with TLS orchestration.

What’s next?

Generative AI clearly poses a new set of security challenges. With the onset of automated spear phishing, we need to unlearn many of our heuristics of trust. While in the past we may have trusted based on the appearances of professionalism, we now need more rigorous protocols for determining the veracity of communications. We need to become more suspicious in this new age of misinformation campaigns, deep fakes, and automated spear phishing, and organizations will need to deploy AI in defence at least as rigorously as criminals use it against us.

(Visited 91 times, 1 visits today)
peri hokiperihokiduta 76AWSBEThttps://sintnicolaasschool.com/https://abc1131aa.com/kincir88cakar76Slot mahjonghttps://www.abc1131.it.com/Gerakan99Era77stc76duta76duta76 loveduta76 careduta76bduta76 sejiwaduta76 lokasiterdekatduta76 africafuelduta76 oscarmykeduta76 naptimepkduta76 daikinduta76 raes-munichduta76 destyduta76 bio-linkduta76 lynkduta76 heylinkduta76 bioduta76 radarkeduWar138navigasi rtp live eksploitasi peluang taktik mahjong wild deluxe analisa dadu sicbo strategi gates of olympusanalisa komprehensif rtp live pola algoritma strategi mahjong ways 2 pgsoft taktik baccarat teknik starlight princessoptimasi presisi analisa strategi blackjack teknik membaca pola mahjong wins 3 taktik peluang rtp live sweet bonanza pragmaticdekonstruksi peluang taktis strategi analisa roulette pemetaan pola mahjong ways 2 pgsoft teknik membaca rtp live wild west goldeksekusi taktis analisa probabilitas strategi komprehensif sv388 teknik membaca peluang blackjack pola mahjong wins 3 pemetaan rtp live sugar rushstrategi rasional baca rtp live analisa pola gates of olympus taktik sicbo teknik mahjong wild deluxe jitutaktik eksekusi presisi sinkronisasi analisa rtp live pola mahjong ways 2 pgsoft teknik baccarat kuantitatif peluang starlight princesseksploitasi algoritma analisa strategi taktis menaklukkan blackjack pemetaan pola mahjong wins 3 teknik rtp live sweet bonanza pragmaticmetodologi optimasi peluang analisa teknik roulette klasik taktik pola mahjong ways 2 pgsoft strategi rtp live wild west goldanalisa matriks peluang sinkronisasi teknik blackjack taktik sv388 strategi pola rtp live mahjong wins 3 sugar rush pragmatichttps://www.thewayofthespirit.com/contact/kalkulasi taktik cerdas strategi peluang sicbo teknik pola mahjong wild deluxe analisa rtp live gates of olympusdekonstruksi varians strategi pola mahjong ways 2 pgsoft analisa peluang baccarat taktik teknik rtp live starlight princesseksekusi silang taktik teknik strategi blackjack analisa pola mahjong wins 3 pragmatic peluang rtp live sweet bonanzaformulasi taktik peluang roulette analisa pola mahjong ways 2 pgsoft teknik jitu strategi rtp live wild bounty hunternavigasi probabilitas analisa pola mahjong wins 3 pragmatic taktik peluang blackjack strategi sv388 teknik rtp live sugar rushanatomi struktur wild tengah mahjong wins 3 karakter mekanik baru pasca update versi klasikanomali perilaku scatter hitam parameter baru perubahan karakter kemunculan yang ramai diperbincangkandekonstruksi algoritma putaran cepat manajemen waktu konsistensi pemetaan pola sugar rush terstrukturevolusi karakteristik wild tengah mahjong ways efek pembagian simbol durasi putaran efektiffenomena anomali simbol kembar beruntun statistik dinamika formasi gates of olympus modern digitalintegrasi metodologi rtp live pragmatic statistik sweet bonanza kalibrasi pola dinamis adaptifkonvergensi pola mahjong wild deluxe logika dadu sicbo strategi sistematis perubahan ritme modernmetodologi pemetaan probabilitas pragmatic distribusi rtp live sweet bonanza sugar rush rasional modernprotokol taktis kalkulasi peluang blackjack integrasi manajemen risiko kalibrasi strategi analisa sv388 modernstrategi komparatif logika dadu sicbo blackjack mengukur titik jenuh probabilitas pendekatan analitikalgoritma menang taktik mahjong wild deluxe peluang sicbo analisa pola gates of olympusanalisa rtp live peluang teknik mahjong ways 2 pgsoft baccarat starlight princessbedah peluang rtp live teknik transisi blackjack sweet bonanza mahjong wins 3 pragmaticeksekusi taktis data peluang roulette teknik wild bounty hunter rtp live mahjong ways 2 pgsoftdekonstruksi multi disiplin strategi blackjack peluang sv388 teknik sugar rush pola mahjong wins 3keindahan simbol mahjong menari scattersimfoni tarian mahjong ways scatteraksi memikat simbol mahjong hujanmomen magis simbol mahjong scattertransisi lembut scatter hitam mahjong besarmahjong wins 3 frekuensi fitur distribusi datamahjong ways analisis scatter wild variansitutorial rtp live gates of olympus scatter datadilema validitas rtp live gates of olympus indikator visual fluktuasi dinamika analisis modern adaptifeksplorasi efisiensi taktis analisa sv388 manajemen risiko anomali putaran strategi rasional terukuridentifikasi variabel unik wild tengah mahjong wins 3 pembaharuan visual durasi simbol langka dinamiskalkulasi deviasi pola distribusi sweet bonanza pemetaan terstruktur perubahan algoritma statistikkatalisator perubahan algoritma scatter hitam fenomena visual komunitas kontemporer dinamika diskusimekanisme trigger scatter hitam terbaru analisis komparatif perubahan karakter mekanik dinamika visual modern berkembangprotokol defensif manajemen modal sugar rush indikator rotasi simbol langka pendekatan taktis analitissinergi analisa sv388 taktik peluang blackjack komposisi rasional fluktuasi sistem data polatransformasi geometris formasi grid transisi simbol premium dinamis pola visual ritme perubahanvalidasi empiris indikator struktural gates of olympus formasi dinamis deviasi rtp live analisis teknismetodologi manajemen informasi keputusan gameimplementasi analitik cerdas platform pgsoftarsitektur ai big data kasino virtualevaluasi konfigurasi observatif midas fortunepemetaan ritme putaran strategi mahjong wayseksplorasi efek kumulatif variabel wild tengah mahjong wins 3 stabilitas pengali bertingkat komparatifkajian fenomenologi perilaku scatter hitam lonjakan minat komunitas pasca pembaharuan sistem analisis persepsilonjakan multiplier free spin pg soft kecenderungan mahjong ways 2 persentase rtp malam harimetodologi pemetaan densitas kategori mahjong ways kecepatan runtuhan distribusi simbol langka analisis strukturaluji probabilitas matematis black scatter putaran cepat mahjong wins 3 wild bertingkat analisismulti wild mahjong ways pendekatan data historis berita komunitas minat pemain baru analisispemetaan alur permainan pragmatic play strategi blackjack baccarat uji keaslian terkini analisisperhitungan waktu presisi mahjong wins trigger tumbling uji valid berbasis pengalaman analisisprobabilitas wild keakuratan rtp pragmatic mahjong wins 3 perbedaan ritme analisis statistiktrik blackjack dan baccarat acuan mahjong wins 3 target harian analisis ritme strategigates of olympus 1000 sensitivity mapping variansi hasilpemodelan stokastik mahjong wins rtp variansi Top