Digital deception: generative artificial intelligence in social engineering and phishing

被引:2
作者
Schmitt, Marc [1 ]
Flechais, Ivan [1 ]
机构
[1] Univ Oxford, Dept Comp Sci, Oxford, England
关键词
Artificial intelligence; Machine learning; Social engineering; Phishing; ChatGPT; Large language models;
D O I
10.1007/s10462-024-10973-2
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The advancement of Artificial Intelligence (AI) and Machine Learning (ML) has profound implications for both the utility and security of our digital interactions. This paper investigates the transformative role of Generative AI in Social Engineering (SE) attacks. We conduct a systematic review of social engineering and AI capabilities and use a theory of social engineering to identify three pillars where Generative AI amplifies the impact of SE attacks: Realistic Content Creation, Advanced Targeting and Personalization, and Automated Attack Infrastructure. We integrate these elements into a conceptual model designed to investigate the complex nature of AI-driven SE attacks-the Generative AI Social Engineering Framework. We further explore human implications and potential countermeasures to mitigate these risks. Our study aims to foster a deeper understanding of the risks, human implications, and countermeasures associated with this emerging paradigm, thereby contributing to a more secure and trustworthy human-computer interaction.
引用
收藏
页数:23
相关论文
共 59 条
  • [41] Renaud K, 2023, M CYB THREAT GEN AI
  • [42] Schmitt M., 2023, SSRN Electron. J, DOI DOI 10.2139/SSRN.4168458
  • [43] Securing the digital world: Protecting smart infrastructures and digital industries with artificial intelligence (AI)-enabled malware and intrusion detection
    Schmitt, Marc
    [J]. JOURNAL OF INDUSTRIAL INFORMATION INTEGRATION, 2023, 36
  • [44] Automated machine learning: AI-driven decision making in business analytics
    Schmitt, Marc
    [J]. INTELLIGENT SYSTEMS WITH APPLICATIONS, 2023, 18
  • [45] Artificial intelligence powered Metaverse: analysis, challenges and future perspectives
    Soliman, Mona M.
    Ahmed, Eman
    Darwish, Ashraf
    Hassanien, Aboul Ella
    [J]. ARTIFICIAL INTELLIGENCE REVIEW, 2024, 57 (02)
  • [46] Sutton RS, 2018, ADAPT COMPUT MACH LE, P1
  • [47] Trusting artificial intelligence in cybersecurity is a double-edged sword
    Taddeo, Mariarosaria
    McCutcheon, Tom
    Floridi, Luciano
    [J]. NATURE MACHINE INTELLIGENCE, 2019, 1 (12) : 557 - 560
  • [48] Flexible brain-computer interfaces
    Tang, Xin
    Shen, Hao
    Zhao, Siyuan
    Li, Na
    Liu, Jia
    [J]. NATURE ELECTRONICS, 2023, 6 (02) : 109 - 118
  • [49] Teichmann F., 2023, Int. Cybersecur. Law Rev., V4, P399, DOI [10.1365/s43439-023-00094-x, DOI 10.1365/S43439-023-00094-X]
  • [50] EU General Data Protection Regulation: Changes and implications for personal data collecting companies
    Tikkinen-Piri, Christina
    Rohunen, Anna
    Markkula, Jouni
    [J]. COMPUTER LAW & SECURITY REVIEW, 2018, 34 (01) : 134 - 153