Skip to content

AI-Powered Cyber Attacks

How attackers use AI to scale phishing, find vulnerabilities and automate attacks, and what it means for defenders.

Editorial team 1 min read

AI helps attackers as well as defenders.

How Attackers Use AI

  • Phishing: fluent, personalised messages in any language, at scale.
  • Social engineering: researching targets and generating convincing pretexts.
  • Malware development: assistance writing or modifying code.
  • Vulnerability discovery: analysing code and systems for weaknesses faster.
  • Automation: agents that perform reconnaissance and parts of attacks with less human effort.
  • Impersonation: deepfake voices and video.

What Changes

AI lowers the skill and cost needed for some attacks and increases their volume and polish. Tell-tale signs like poor grammar are no longer reliable indicators of phishing.

Defender Responses

  • Phishing-resistant authentication such as passkeys and hardware keys.
  • Verification procedures for payments and sensitive requests.
  • Faster patching, since vulnerabilities may be found and exploited sooner.
  • AI-assisted detection and response.
  • Updated security awareness training.

Provider Safeguards

AI providers monitor for and disrupt malicious use of their models, and publish reports on observed misuse.

Stay Informed

Follow threat intelligence on AI-enabled attacks relevant to your sector.

More in AI security

All AI security guides →
AI security Guide · 1 min

Introduction to AI Security

What AI security covers — attacks on models, data and AI applications — and how it differs from traditional security.

AI security 1 min read 29 Jun 2025

AI security Guide · 1 min

The OWASP Top 10 for LLM Applications

An overview of the widely used list of the most critical security risks for applications built on language models.

AI security 1 min read 28 Jun 2025

AI security Guide · 1 min

Jailbreaks: How They Work and How to Defend

How people try to get models to bypass their safety training, common techniques, and layered defences.

AI security 1 min read 27 Jun 2025

AI security Guide · 1 min

Indirect Prompt Injection

How attackers hide instructions in web pages, emails and documents that AI systems read, and why it's so dangerous for agents.

AI security 1 min read 26 Jun 2025