TL;DR: Attackers are already using AI to increase the scale and sophistication of cybercrime, while the webinar also weighs whether tools like ChatGPT are a genuine threat and how tactics may evolve, according to Abnormal AI. The real issue is not AI hype but how quickly adversaries can industrialise deception, targeting, and response bypass.
Editorial analysis by NHI Mgmt Group, based on content published by Abnormal AI: “New Year, New Threats: Security Predictions for 2025”.
Key questions
Q: How should security teams respond to AI-assisted phishing and social engineering?
A: Treat AI-assisted phishing as a scale and quality problem, not just a messaging problem.
Q: Why does generative AI make cybercrime harder to stop?
A: Generative AI lowers the cost of producing convincing lures, translating messages, and testing variations at scale.
Practitioner guidance
- Harden identity verification for high-risk requests Add stronger verification steps for password resets, payment changes, session resets, and sensitive approvals that AI-generated lures often target.
- Tune detections for high-volume campaign variation Adjust alerting to spot rapid message iteration, unusual sender behaviour, and campaign reshaping that signals AI-assisted social engineering.
- Constrain AI use in security operations Define where AI can draft, summarise, or prioritise work, and require human approval for containment, account actions, and external communication.
Bottom line: AI is amplifying familiar cybercrime patterns by making phishing, impersonation, and campaign iteration cheaper and faster to run.
Explore further
View Full Forum → | NHI Foundation Course → | Our Services → | Read the full analysis →
AI in cybercrime is primarily a force multiplier for familiar attack paths, not a new category of crime. The article points to scale and sophistication gains, which usually show up first in phishing quality, impersonation success, and campaign churn. That means the operational risk lives in how quickly existing abuse patterns can be automated and refined. Practitioners should treat AI as an acceleration layer on established attacker tradecraft, not as a separate threat silo.
A question worth separating out:
Q: How can organisations reduce the impact of AI-enabled cybercrime?
A: Shorten the path from suspicious activity to identity containment. Use stronger authentication, narrow privilege, and rapid session review so a successful lure does not automatically become a successful breach. When attackers move faster, response has to be anchored in the identity layer, not only in email filtering or awareness training.
👉 Read our full editorial: AI in cybercrime is reshaping attacker scale and sophistication