The Entrepreneurs Weekly
No Result
View All Result
Saturday, May 31, 2025
  • Login
  • Home
  • BUSINESS
  • POLITICS
  • ENTREPRENEURSHIP
  • ENTERTAINMENT
Subscribe
The Entrepreneurs Weekly
  • Home
  • BUSINESS
  • POLITICS
  • ENTREPRENEURSHIP
  • ENTERTAINMENT
No Result
View All Result
The Entrepreneurs Weekly
No Result
View All Result
Home Business

How to Outsmart AI-Powered Phishing Scams | Entrepreneur

by Brand Post
September 18, 2024
in Business
0
How to Outsmart AI-Powered Phishing Scams | Entrepreneur
152
SHARES
1.9k
VIEWS
Share on FacebookShare on Twitter


Opinions expressed by Entrepreneur contributors are their own.

Artificial Intelligence is a double-edged sword. While it opens a plethora of use cases for making our work and daily lives more efficient, it also empowers cybercriminals to execute more effective attacks.

Phishing, already the most prevalent form of cyberattack with almost 3.4 billion emails sent per day, is now being fueled with AI, enhancing sophistication and maximizing the likelihood of these attacks succeeding.

A recent study reveals a 60% increase in AI-driven phishing, with higher success rates compared to messages created by human experts. This highlights that AI is not merely a tool but a catalyst in transforming the way these attacks are carried out, underscoring the need to stay ahead of their rapid evolution.

Related: Fraud Alert! Watch Out for These 5 Sneaky Scams Targeting Small Businesses and How to Avoid Them

Is it really your CEO? Think Twice

In the GenAI era, the lines between phishing and authentic messages are blurred, making them almost impossible to detect. C-level executives fall as one of the prime targets in cyberattacks due to the amount of sensitive information and authority they wield within an organization. Attackers have elevated phishing to a whole new level with the help of AI tools, engaging in what is known as “whale phishing.”

This method involves leveraging deep fake AIs to impersonate top executives of a company, mimicking their appearance, voice and mannerisms to persuade employees to transfer funds or gain system access, leading to financial and reputational loss.

A stark example would be the attack on an advertising firm where hackers used the CEO’s image to create a fake WhatsApp profile to set up a Microsoft Teams meeting with him and another senior executive. During the call, the attackers used AI voice cloning and YouTube footage to trick the employees into disclosing personal details and transferring money under the guise of setting up a new business. Fortunately, the attempt was a failure due to the vigilance of the company executive.

The sophistication of such attacks reminds us that we no longer can afford to blindly believe someone is who they claim to be simply because they have their image and name on their profile. More than 95% of IT professionals find it challenging to identify phishing attacks crafted with large language models (LLM) like ChatGPT, Gemini and WormGPT. The strategy lies in playing with human psychology and personal information available on the internet to create the most convincing message. These messages often pose as trusted colleagues, incite fear about a potential security breach, or spark curiosity with a “too-good-to-be-true” offer related to a recent purchase, prompting users to click.

Gone are the days when phishing attacks could be spotted with their misspellings, incorrect information and clumsy execution. Today’s AI-powered phishing campaigns correct such errors, making it effortless for bad actors to generate a campaign with only five prompts and five seconds, which could traditionally take a scammer almost 16 hours.

In this landscape, it is crucial to remain vigilant and question the authenticity of every message. The stakes are high, and the need for rigorous verification processes has never been more critical.

Related: Viral TikTok Warns Small Business Owners About Package Scam

How can we outsmart these attacks?

Paradoxically, the defense against these AI-powered attacks is utilizing AI itself. Businesses should consider investing in AI-driven security measures, with Extended Detection and Response (XDR) playing a crucial role in this strategy. XDR constantly monitors the mailbox, scanning for any indicators of compromise (IOC) such as URLs, domains, IP addresses, file hashes, and more.

Additionally, XDR’s behavior analytics establishes a baseline of typical user behavior and email traffic patterns. When deviations from this baseline are detected, such as unusual login times, unexpected email attachments, or strange communication patterns, the system flags these anomalies, proactively mitigating phishing attempts within an organization.

Complementing XDR is the role of a Unified Endpoint Management (UEM) solution. Beyond being a repository from which XDRs can leverage endpoint data, UEMs are also essential in the realm of patch management, enforcing password policies and access management. By enabling timely patch deployment, UEM keeps all systems up to date, reducing vulnerabilities that phishing campaigns often exploit. Moreover, consistent password policies across all endpoints, including password complexity, multi-factor authentication, and access controls, protect the major perishable factor – passwords. So, an integration between XDR and UEM creates a comprehensive defense against phishing threats. XDR detects and responds to attacks, while UEM helps lay the first line of defensive protocols in place. If a breach does occur, UEMs can also remotely wipe compromised devices to contain the damage.

Ultimately, the end goal should always be to transition towards a zero-trust architecture. While UEMs and XDRs are essential in this journey, they are not the entire picture. By adopting role-based access controls and rigorously validating every account before it gains any data handling privileges, administrators can fully embrace the tenet – trust none, always verify. This approach helps prevent unauthorized access in the event of a breach and greatly limits potential damage by restricting lateral movement.

Finally, it boils down to human vigilance

Even with the most advanced security measures, they are completely ineffective if employees are unaware of the latest phishing techniques and the critical details they must watch out for. Business leaders must invest in effective training programs that are not monotonous for the employees and often include the usual markers like bad grammar and failed personalization. It needs to go further by conducting AI-simulated phishing drills that create awareness on validating the sources of the emails, verifying the URL and domain names against the actual company and developing a sense of skepticism to evaluate and respond to highly convincing phishing scenarios critically.

In addition, the basic practices of enforcing strong, unique passwords for each account coupled with multi-factor authentication (MFA) are timeless measures that will always remain essential.



Source link

Tags: AI toolsAIPoweredArtificial IntelligenceBusiness ScamsDevicesentrepreneurGrowth StrategiesinnovationLeadershipOutsmartPhishingScamsScience & TechnologyThought Leaders

Related Posts

This 0 MacBook Air Handles Your Hustle Without Complaints | Entrepreneur
Business

This $200 MacBook Air Handles Your Hustle Without Complaints | Entrepreneur

May 31, 2025
What Every Brand Gets Wrong About Using AI | Entrepreneur
Business

What Every Brand Gets Wrong About Using AI | Entrepreneur

May 31, 2025
Improve Your Productivity with Windows 11 Pro for Just  | Entrepreneur
Business

Improve Your Productivity with Windows 11 Pro for Just $15 | Entrepreneur

May 31, 2025
  • Trending
  • Comments
  • Latest
Meet Amir Kenzo: A Well Known Musical Artist From Iran.

Meet Amir Kenzo: A Well Known Musical Artist From Iran.

August 21, 2022
Behind the Glamour: Bella Davis Opens Up About Overcoming Adversity in Modeling

Behind the Glamour: Bella Davis Opens Up About Overcoming Adversity in Modeling

April 20, 2024
Dr. Donya Ball: Pioneering Leadership Solutions for Tomorrow’s Challenges

Dr. Donya Ball: Pioneering Leadership Solutions for Tomorrow’s Challenges

May 10, 2024
Nasiyr Bey’s Journey from Brooklyn to Charlotte: The Entrepreneurial Path to Owning a Successful Cigar Lounge

Nasiyr Bey’s Journey from Brooklyn to Charlotte: The Entrepreneurial Path to Owning a Successful Cigar Lounge

August 8, 2024
Augmented.City Startup Developers Appeal To US Politicians With An Open Letter

Augmented.City Startup Developers Appeal To US Politicians With An Open Letter

0
U.S. High Court Snubs Challenge To State And Local Tax Deduction Cap

U.S. High Court Snubs Challenge To State And Local Tax Deduction Cap

0
GOP Lawmaker Blames Biden For Russia-Ukraine War: Putin ‘Could never have Invaded’

GOP Lawmaker Blames Biden For Russia-Ukraine War: Putin ‘Could never have Invaded’

0
Brad Winget’s Tips and Tricks on Having a Career in Real Estate

Brad Winget’s Tips and Tricks on Having a Career in Real Estate

0
This 0 MacBook Air Handles Your Hustle Without Complaints | Entrepreneur

This $200 MacBook Air Handles Your Hustle Without Complaints | Entrepreneur

May 31, 2025
What Every Brand Gets Wrong About Using AI | Entrepreneur

What Every Brand Gets Wrong About Using AI | Entrepreneur

May 31, 2025
Improve Your Productivity with Windows 11 Pro for Just  | Entrepreneur

Improve Your Productivity with Windows 11 Pro for Just $15 | Entrepreneur

May 31, 2025
Turn Your Side Hustle Into a 7-Figure Business With These 4 AI Growth Hacks | Entrepreneur

Turn Your Side Hustle Into a 7-Figure Business With These 4 AI Growth Hacks | Entrepreneur

May 31, 2025

The EW prides itself on assembling a proficient and dedicated team comprising seasoned journalists and editors. This collective commitment drives us to provide our esteemed readership with nothing short of the most comprehensive, accurate, and captivating news coverage available.

Transcending the bounds of Chicago to encompass a broader scope, we ensure that our audience remains well-informed and engaged with the latest developments, both locally and beyond.

NEWS

  • Business
  • Politics
  • Entrepreneurship
  • Entertainment
Instagram Facebook

© 2024 Entrepreneurs Weekly.  All Rights Reserved.

  • About Us
  • Advertise
  • Contact Us
No Result
View All Result
  • ENTREPRENEURSHIP
  • ENTERTAINMENT
  • POLITICS
  • BUSINESS
  • CONTACT US
  • ADVERTISEMENT

Copyright © 2024 - The Entrepreneurs Weekly

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In