The asymmetry has flipped
For 25 years, attackers needed scale. AI now gives one operator the leverage of a hundred — perfect language, perfect voice, perfect timing.
What we're seeing in the wild
- AI-generated phishing with zero grammar tells, personalized using LinkedIn, GitHub, breach data
- Live voice clones of CEOs, family members, doctors — sub-3-second samples
- Real-time video deepfakes in meeting apps for fake interviews, fake KYC, fake board calls
- LLM jailbreak prompts distributed across forums to defraud LLM-powered support agents
- Agentic scam pipelines — one model researches the target, another writes the pretext, a third runs the call
What still works for defenders
- Out-of-band human verification — process beats forensics
- Phoenix AI scoring across email + voice + video + transaction signals
- Live deepfake detection at the call-center and KYC layer
- Behavioral biometrics unaffected by language polish
- Rate limiting + scoped tools on every LLM agent you ship
The next 18 months
Expect AI to fuse channels: a phishing email + matching voicemail + Zoom call follow-up, all from the same synthetic persona. Your defense must fuse too.