Discover how AI is changing cybersecurity
AI is everywhere these days. Lots of us are still all on a learning curve with it but cybercriminals seem to be one step ahead. In fact, 86% of hackers surveyed in 2024 reported that it had ‘fundamentally changed their approach’.
Should businesses be worried? By staying aware of the latest developments, being cautious and making informed decisions, companies stand the best chance of being able to protect their networks.
What to look out for
Here are three things businesses can look out for:
1. Well-written text
Once upon a time, we were told that poorly written emails with spelling mistakes could be signs of a scam. Put that indicator aside right now! With a shedload of AI-powered text-generation chatbots freely available online, it’s easy for fraudsters to get them to write emails or messages with any bad spelling, punctuation or grammar all ironed out. It seems we’re going to have to get wiser when it comes to spotting the signs.
2. Social engineering
Cyber-attacks don’t always begin at the ‘company’ level, whatever that may be. Cybercriminals look for any small gap to give them a way into the network. Personal attacks aren’t exclusively reserved for outside of the workplace, so their way in could be via you, the employee.
The realistic nature of AI-powered chatbots and their human-like responses can quickly engage people and instil trust when there really shouldn’t be any. For instance, if you work in the Finance team, you could quite plausibly receive a communication from your company’s “bank” about suspicious activity on a business account, quoting relevant details and recent transactions, and engage with it without knowing it’s a scam until it is too late.
3. Deepfakes
Another thing to be alert to is AI-generated deep fake video or audio recordings. These are increasingly used to target employees. If you get a highly realistic and credible message from your “manager” that sounds exactly like them, asking you to transfer company money for some reason (and that is sometimes part of your job), you would probably be highly likely to act on it. After all, you hear their voice every day, so why would you doubt it?
Unfortunately, we now need to question everything.
Employee education
The best way to tackle the new landscape of cybersecurity threats is to be aware of them – and that starts with employee education and raising awareness of the latest developments. Helping everyone to understand how AI is being used in social engineering cybersecurity attacks is the way for organisations and individuals to stay one step ahead.
Reinforcing the message that everyone should be cautious if they receive unexpected calls, emails or messages and that they should verify the sender’s identity before acting on any request is fundamental. It’s the first line of defence in protecting your company’s network and keeping your systems and data safe.
Further reading: Guide to Chatbot Scams and Security
Originally published 12 Jan 2024. Updated 28 March 2025.
