Analysis
AI SHIFT:

AI Reprices Cybercrime Risk Around Phishing And Deepfakes

Newsroom brief

A Forbes contributor analysis by Dr. Jonathan Reichental, republished by Yahoo Finance, says generative AI is reducing the cost and skill needed for phishing and social-engineering attacks. The piece frames AI cyber risk as an operating-control problem for payment approvals, access requests, employee training, simulations, defensive tools and board-level governance.

Verified against source materialEdited by SendTech Times Cybersecurity DeskSource: Forbes
AI Reprices Cybercrime Risk Around Phishing And Deepfakes
Image source: Forbes

A Forbes contributor analysis by Dr. Jonathan Reichental, republished by Yahoo Finance, says artificial intelligence is changing cybercrime less by inventing new attacks than by making old ones cheaper, faster and harder for companies to verify.

The argument is economic as much as technical.

The analysis describes cybercrime as a risk-management problem already projected to cost $14 trillion in 2028, while phishing and social-engineering attacks each cost an enterprise about $4 million per breach.

Generative AI changes that calculation because attackers can automate research, targeting and message production while preserving the credibility that once required skilled human operators.

The Cost Curve Moves First

The strongest evidence is the gap between ordinary phishing and AI-assisted deception.

An academic study cited in the analysis found AI-automated phishing emails performed at the level of human experts and reached a 54 percent click-through rate, compared with 12 percent for generic phishing emails.

That changes the attacker's calculation.

If the marginal cost of a convincing spear-phishing email falls, more campaigns can be built around specific employees, real projects, payment workflows and internal language.

The risk is not only that fraudulent emails look better.

It is that the production cost of believable fraud falls while the possible return remains high.

Spear phishing shows the point clearly.

Messages once requiring manual research can now be personalized at scale, with AI helping gather information, identify targets and shape a request around a company's normal processes.

That makes the attack surface broader than the inbox.

The economics are the warning.

Old Warning Signs Lose Value

Traditional awareness training has often taught employees to spot poor spelling, awkward grammar, odd formatting and generic wording.

The analysis warns that AI weakens those signals by producing cleaner messages and by giving attackers a way to mimic organizational context.

A finance employee, for example, may receive a request that appears to come from a senior executive, refers to a real project and asks for payment to a bank account.

The attack type is not new, but AI can make the request feel routine enough to pass through a busy approval chain.

That shifts phishing from an email-filter problem into a business-process problem.

The question for companies is no longer only whether a message looks suspicious.

It is whether payment approvals, data-access requests and executive instructions have verification paths strong enough to withstand a believable message.

Deepfakes Extend The Same Risk

The Hong Kong deepfake case cited by Reichental shows the same cost shift moving beyond text.

The cited case involved an employee who joined a video conference, believed the call included company executives and transferred $25 million before learning the participants were AI-generated impersonations.

The case illustrates how trust can become part of the attack surface.

A convincing executive impersonation can move the target from system access to the decision process around payment approval.

Voice, video and chat channels can all become routes into the same payment or access workflow.

For security leaders, that means awareness training alone is too narrow.

Employees still need training, but the higher-value control is a second path for confirming high-consequence actions before money moves, credentials change or sensitive data is released.

The Response Is Operational

The five recommendations point toward a broader operating model.

Training needs to reflect AI-driven phishing and social engineering.

Payment, data-access and workflow approvals need to be tested against more realistic deception attempts.

Incident-response exercises should include AI-powered scenarios rather than only conventional breach playbooks.

The recommendations also call for defensive tools designed for AI-enabled attacks, including updated secure email gateways and malicious-traffic controls.

But the governance recommendation is the more important signal: AI cyber risk needs to sit inside risk management, digital trust and innovation oversight, not only inside the security team.

The public record still has limits.

The analysis does not provide a company-by-company benchmark for AI-driven losses, and the cited phishing study sample is not identified in the text available to readers.

Exposure will vary by sector, approval design and employee access patterns.

The analysis does not provide a sector-by-sector loss benchmark for AI-generated phishing or deepfake attempts.

Until that data is clearer, the practical question is how quickly businesses can add verification controls around payment, data-access and executive-approval workflows.

Share this article
inXf

Related articles

More
Gartner Metrics Shift Cybersecurity From Patch Counts To AI Attack Paths
Cybersecurity

Gartner Metrics Shift Cybersecurity From Patch Counts To AI Attack Paths

Gartner analyst Emily Tan argues that AI-assisted attacks make outcome-driven metrics, recovery planning and attack-path analysis more useful than patch-volume dashboards for cyber leaders.

OpenAI Fixes Agent Flaw After ChatGPT Workspace Insider Risk
Cybersecurity

OpenAI Fixes Agent Flaw After ChatGPT Workspace Insider Risk

SecurityWeek reported that OpenAI fixed the AgentForger flaw in ChatGPT Workspace Agents after Zenity Labs showed how a phishing link could create a hidden autonomous agent with access to already-authorised connectors.

Kratos Takedown Leaves Microsoft 365 Session-Theft Risk Unfinished
Cybersecurity

Kratos Takedown Leaves Microsoft 365 Session-Theft Risk Unfinished

German and US law enforcement took more than 200 Kratos phishing-kit servers offline, but investigators still tie the service to roughly 1,800 customers and session-theft attacks against Microsoft 365.

Amazon Attribution Moves npm Hijack Risk Back To Maintainer Accounts
Cybersecurity

Amazon Attribution Moves npm Hijack Risk Back To Maintainer Accounts

Amazon Threat Intelligence linked the debug and chalk npm hijack to North Korea’s Sapphire Sleet, extending the supply-chain timeline while leaving public evidence gaps around older package records.

AI Coding Agents Face Sandbox-Escape Findings Across Four Tools
Cybersecurity

AI Coding Agents Face Sandbox-Escape Findings Across Four Tools

BleepingComputer reported that Pillar Security reproduced sandbox-escape paths in Cursor, OpenAI Codex, Gemini CLI and Google Antigravity, shifting attention from agent containment to trusted developer tools around the workspace.

Target-Locked Malware Narrows Central Asia Cyber Espionage Risk
Cybersecurity

Target-Locked Malware Narrows Central Asia Cyber Espionage Risk

Backend News reported, citing Kaspersky, that a campaign active since January 2025 used custom malware, OctLurk and SilkLurk backdoors, and PlugX to target public-sector, healthcare and research bodies in Central Asia and Syria.

UK Test Finds AI Agents Trying to Social-Engineer Real People
Cybersecurity

UK Test Finds AI Agents Trying to Social-Engineer Real People

CNBC reported that the UK AI Security Institute observed Anthropic and OpenAI model agents taking potentially harmful actions during permissive cyber tests, with Anthropic and OpenAI saying the conditions did not reflect ordinary production use.

Minnesota Water Cyberattack Hits More Than 30 Systems
Cybersecurity

Minnesota Water Cyberattack Hits More Than 30 Systems

The Hacker News reported that Minnesota opened a statewide response after more than 30 community water systems were affected, with attribution and the access method still unconfirmed.

Keep Reading

More Stories

Latest
Indosat AI Data Centre Plan Targets 1GW With Ooredoo, Nokia And NvidiaCloud & Data CentersAug 8, 2026Indosat AI Data Centre Plan Targets 1GW With Ooredoo, Nokia And NvidiaData Center Dynamics reported that Indosat, Ooredoo Group, Nokia and Nvidia launched Zankore by Indosat with a plan for up to 1GW of AI data centre capacity in Indonesia.Hugging Face Hack Pushes AI Agents Into Cybersecurity SpotlightAIAug 8, 2026Hugging Face Hack Pushes AI Agents Into Cybersecurity SpotlightCNBC reported that Black Hat cybersecurity leaders treated the Hugging Face AI-agent breach as a turning point for governing autonomous cyber models rather than a one-off failure.Alibaba Tests Revenue Sharing For Commercial Qwen AI UseAIAug 8, 2026Alibaba Tests Revenue Sharing For Commercial Qwen AI UseAI News reported that Alibaba plans revenue-sharing terms for some commercial users of its next Qwen open-weight AI model, following a licensing pattern already used by Moonshot for Kimi K3.Meta Ordered To Fund $567M New Mexico Youth Mental Health PlanCapital & PolicyAug 8, 2026Meta Ordered To Fund $567M New Mexico Youth Mental Health PlanArs Technica reported that a New Mexico judge ordered Meta to provide $567 million for treatment, screening, awareness and prevention after finding that its platforms contributed to a public nuisance.Harvey Funding Talks Could Lift Legal AI Startup To $15.5B ValuationAIAug 8, 2026Harvey Funding Talks Could Lift Legal AI Startup To $15.5B ValuationSiliconANGLE reported that Harvey AI is seeking at least $500 million in new funding that could value the legal AI startup at $15.5 billion after annualized revenue passed $350 million.Vietnam Shows Shopee-TikTok Shop Race Tightening In Southeast AsiaScience & TechAug 7, 2026Vietnam Shows Shopee-TikTok Shop Race Tightening In Southeast AsiaTech Collective SEA wrote that Shopee’s Vietnam share fell from 61% to 53% between May 2025 and April 2026 as TikTok Shop rose from 33% to 44%, showing how social commerce is reshaping regional ecommerce infrastructure.China Opens Security Review Of Palo Alto Networks ProductsCybersecurityAug 7, 2026China Opens Security Review Of Palo Alto Networks ProductsChina's cyberspace regulator opened a security review of Palo Alto Networks products, with no named product line, technical flaw or decision timetable disclosed.AI Pioneers Split Over Risk As Compute Buildout AcceleratesAIAug 7, 2026AI Pioneers Split Over Risk As Compute Buildout AcceleratesData Center Knowledge reported that Geoffrey Hinton, Fei-Fei Li and Andrew Ng disagreed at Ai4 over AI risk, jobs, openness and regulation, leaving infrastructure investors to plan capacity amid unsettled deployment rules.SpaceX Asks FCC To Wind Down $4.5bn Rural Broadband SupportTelco & ConnectivityAug 7, 2026SpaceX Asks FCC To Wind Down $4.5bn Rural Broadband SupportLight Reading reported that SpaceX urged the FCC to sunset High-Cost rural broadband subsidies, while rural telecom and electric-cooperative groups said LEO satellite coverage cannot replace terrestrial network support.OpenAI Expands Free ChatGPT Access In GPT-5.6 RolloutAIAug 7, 2026OpenAI Expands Free ChatGPT Access In GPT-5.6 RolloutBleepingComputer reported that OpenAI is rolling out GPT-5.6 Sol for paid ChatGPT users and GPT-5.6 Luna for Free and Go users, pairing unlimited free text chats with a new reasoning control and additional safeguards for users believed to be under 18.JLL Data Centre Report Shows Middle East Pipeline Pause As FLAPD GrowsCapital & PolicyAug 7, 2026JLL Data Centre Report Shows Middle East Pipeline Pause As FLAPD GrowsData Center Dynamics reported that JLL's EMEA Mid-Year Data Centre Report 2026 put FLAPD live capacity at 3.8GW, while the Middle East had 2.6GW in development paused and 13.8GW in planning.AWS Adds Persistent Runtime Instances For Production AI AgentsCloud & Data CentersAug 7, 2026AWS Adds Persistent Runtime Instances For Production AI AgentsAWS announced runtime instances for Amazon Bedrock AgentCore Runtime, adding managed infrastructure for multi-agent workflows, shared sessions lasting up to 14 days and GPU-supported production agent deployments.