Share

How cyber scammers are trying to make AI tools pay

accreditation
0:00
play article
Subscribers can listen to this article
Cyber scammers are embracing AI.
Cyber scammers are embracing AI.
Sean Gallup/Getty Images


Proponents of artificial intelligence say its potential is limitless. But cyber scammers could also use it to their advantage. Analysts explained to AFP how the technology could increase the risk from online crime.

Phishers of emails

Chatbots are the best-known of all AI tools thanks to the rampant success of ChatGPT and many that have come afterwards, not least Google's Bard.

Phishing is the most ubiquitous form of cyber scam, and involves criminals posing as a company or an individual sending batches of emails that include links to counterfeit websites or malware.

The two worlds are already starting to collide, with cybercriminals trading tips in online forums on the best ways to get chatbots to generate phishing emails.

The big players block users from generating these kinds of emails, so developers have designed programs aimed at creating phishing messages -- FraudGPT and WormGPT among them.

The effectiveness of these tools has yet to be tested, with Gerome Billois of consulting firm Wavestone telling AFP: "We're only at the very beginning."

Experts say the major skill of chatbots for phishing gangs is to generate fairly clean prose.

One of the telltale signs of a phishing email has long been dodgy spelling and scattergun punctuation.

"AI accelerates the pace of attacks," said Billois.

The FBI said it received 300 497 complaints about phishing scams last year, with losses suffered worth $52 million.

Attack of the clones

Earlier this year, US mother Jennifer DeStefano explained how she received a call from her daughter begging for help, before being told by a kidnapper to pay $1 million ransom.

"I never doubted for one second it was her," she told local media.

Only the voice was an AI-generated imitation and DeStefano quickly uncovered the ruse.

But it points to the risk of a future where deepfake impersonations of loved ones or colleagues appear on phone or video calls -- a development that could be a gold mine for scammers.

With a recording of just few seconds of a person's voice, online tools can produce an imitation capable of tricking employees or friends.

Jerome Saiz, founder of the French OPFOR Intelligence consultancy, said "a whole industry of small-time crooks" already adept at extorting credit card details through text messages was likely to start using such tools.

He told AFP such scammers were often young and skilled with technical tools.

A programming guide

One of the much-vaunted talents of chatbots such as ChatGPT has been their ability to generate passable computer code.

Scammers could employ those skills to create malware capable of locking a victim's computer or gaining access to files or accounts.

There are claims online that the new breed of bespoke chatbots are able to perform this kind of operation but solid evidence is hard to come by.

Chatbots can certainly identify flaws in existing code and even generate malicious code but they cannot execute it directly.

Saiz said he could see AI helping scammers who have little talent to become more skilled -- a kind of coding tutor.

"But someone starting from scratch is not going to get ChatGPT to code malware for them," he said.

Saiz, who generally gets called when something major has gone wrong, said he had not seen any evidence that any of his cases over the past year had involved AI.

Shawn Surber of US cybersecurity firm Tanium is equally cautious.

"Much of the concern over how generative AI will affect risks for businesses is based on fear of the unknown rather than specific threats," he said.

We live in a world where facts and fiction get blurred
Who we choose to trust can have a profound impact on our lives. Join thousands of devoted South Africans who look to News24 to bring them news they can trust every day. As we celebrate 25 years, become a News24 subscriber as we strive to keep you informed, inspired and empowered.
Join News24 today
heading
description
username
Show Comments ()
Rand - Dollar
18.51
+0.3%
Rand - Pound
23.23
+0.2%
Rand - Euro
19.92
-0.1%
Rand - Aus dollar
12.24
-0.4%
Rand - Yen
0.12
-0.2%
Platinum
964.60
+0.6%
Palladium
946.00
+0.8%
Gold
2,301.08
-0.1%
Silver
26.46
-0.8%
Brent Crude
83.67
+0.3%
Top 40
70,300
+0.5%
All Share
76,428
+0.5%
Resource 10
60,246
-0.2%
Industrial 25
107,200
+1.3%
Financial 15
16,554
-0.2%
All JSE data delayed by at least 15 minutes Iress logo
Company Snapshot
Editorial feedback and complaints

Contact the public editor with feedback for our journalists, complaints, queries or suggestions about articles on News24.

LEARN MORE
Government tenders

Find public sector tender opportunities in South Africa here.

Government tenders
This portal provides access to information on all tenders made by all public sector organisations in all spheres of government.
Browse tenders