From typos to deepfakes: the new AI cybersecurity battleground

https://cdn.mos.cms.futurecdn.net/JpXukHGqkZ8gapEzDQNqRW-1920-80.jpg

“Don’t open suspicious emails.”

This used to be the baseline mantra with cybersecurity training. Spotting a counterfeit data request was once simple: poor spelling, questionable email addresses, or a direct request for cash accompanied by an incredible story of a prince or ageing millionaire. But those days are over.

Generative artificial intelligence (AI) makes prepping sophisticated attack flows (which would have taken months to code) available with just a few keystrokes: as a result, spoofing or phishing emails today are often compelling, topical and personalized, making them hard to spot.

With widely available phishing kits (like Evilginx), threat actors can create fake login pages or even CAPTCHA pages with a planted JavaScript injection attack with ease. In other words, there are now even more intelligent ways for threat actors to penetrate a system and steal data quickly, all with the help of AI.

What types of AI-enabled attacks are on...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE

Read more