logo
Social Engineering 2.0: When artificial intelligence becomes the ultimate manipulator

Social Engineering 2.0: When artificial intelligence becomes the ultimate manipulator

Zawya16-06-2025
Once the domain of elite spies and con artists, social engineering is now in the hands of anyone with an internet connection – and AI is the accomplice. Supercharged by generative tools and deepfake technology, today's social engineering attacks are no longer sloppy phishing attempts. They're targeted, psychologically precise, and frighteningly scalable.
Welcome to Social Engineering 2.0, where the manipulators don't need to know you personally. Their AI already does.
Deception at machine levels
Social engineering works because it bypasses firewalls and technical defences. It attacks human trust. From fake bank alerts to long-lost Nigerian princes, these scams have traditionally relied on generic hooks and low-effort deceit. But that's changed, and continues to.
'AI is augmenting and automating the way social engineering is carried out,' says Anna Collard, SVP of Content Strategy&Evangelist at KnowBe4 Africa. 'Traditional phishing markers like spelling errors or bad grammar are a thing of the past. AI can mimic writing styles, generate emotionally resonant messages, and even recreate voices or faces (https://apo-opa.co/409nwPV) – all within minutes.'
The result? Cybercriminals now wield the capabilities of psychological profilers. By scraping publicly available data – from social media to company bios – AI can construct detailed personal dossiers. 'Instead of one-size-fits-all lures, AI enables criminals to create bespoke attacks,' Collard explains. 'It's like giving every scammer access to their own digital intelligence agency.'
The new face of manipulation: Deepfakes
One of the most chilling evolutions of AI-powered deception is the rise of deepfakes – synthetic video and audio designed to impersonate real people. 'There are documented cases where AI-generated voices have been used to impersonate CEOs and trick staff into wiring millions (https://apo-opa.co/4e4JBVv),' notes Collard.
In South Africa, a recent deepfake video circulating on WhatsApp featured a convincingly faked endorsement by FSCA Commissioner Unathi Kamlana promoting a fraudulent trading platform. Nedbank had to publicly distance itself from the scam (https://apo-opa.co/4e4JCJ3).
'We've seen deepfakes used in romance scams, political manipulation, even extortion,' says Collard. One emerging tactic involves simulating a child's voice to convince a parent they've been kidnapped (https://apo-opa.co/3HY5WrR) – complete with background noise, sobs, and a fake abductor demanding money.
'It's not just deception anymore,' Collard warns. 'It's psychological manipulation at scale.'
The Scattered Spider effect
One cybercrime group exemplifying this threat is Scattered Spider. Known for its fluency in English and deep understanding of Western corporate culture, this group specialises in highly convincing social engineering campaigns. 'What makes them so effective,' notes Collard, 'is their ability to sound legitimate, form quick rapport, and exploit internal processes – often tricking IT staff or help-desk agents.' Their human-centric approach, amplified by AI tools, such as using audio deepfakes to spoof victims' voices for obtaining initial access, shows how the combination of cultural familiarity, psychological insight, and automation is redefining what cyber threats look like. It's not just about technical access – it's about trust, timing, and manipulation.
Social engineering at scale
What once required skilled con artists days or weeks of interaction – establishing trust, crafting believable pretexts, and subtly nudging behaviour – can now be done by AI in the blink of an eye. 'AI has industrialised the tactics of social engineering,' says Collard. 'It can perform psychological profiling, identify emotional triggers, and deliver personalised manipulation with unprecedented speed.'
The classic stages – reconnaissance, pretexting, rapport-building – are now automated, scalable, and tireless. Unlike human attackers, AI doesn't get sloppy or fatigued; it learns, adapts, and improves with every interaction.
The biggest shift? 'No one has to be a high-value target anymore,' Collard explains. 'A receptionist, an HR intern, or a help-desk agent; all may hold the keys to the kingdom. It's not about who you are – it's about what access you have.'
Building cognitive resilience
In this new terrain, technical solutions alone won't cut it. 'Awareness has to go beyond ' don't click the link,'' says Collard. She advocates for building 'digital mindfulness' and 'cognitive resilience' – the ability to pause, interrogate context, and resist emotional triggers (https://apo-opa.co/3FF6Zwn).
This means:
Training staff to recognise emotional manipulation, not just suspicious URLs.
Running simulations using AI-generated lures, not outdated phishing templates.
Rehearsing calm, deliberate decision-making under pressure, to counter panic-based manipulation.
Collard recommends unconventional tactics, too. 'Ask HR interviewees to place their hand in front of their face during video calls – it can help spot deepfakes in hiring scams,' she says. Families and teams should also consider pre-agreed code words or secrets for emergency communications, in case AI-generated voices impersonate loved ones.
Defence in depth – human and machine
While attackers now have AI tools, so too do defenders. Behavioural analytics, real-time content scanning, and anomaly detection systems are evolving rapidly. But Collard warns: 'Technology will never replace critical thinking. The organisations that win will be the ones combining human insight with machine precision.'
And with AI lures growing more persuasive, the question is no longer whether you'll be targeted – but whether you'll be prepared. 'This is a race,' Collard concludes. 'But I remain hopeful. If we invest in education, in critical thinking and digital mindfulness, in the discipline of questioning what we see and hear – we'll have a fighting chance.'
Distributed by APO Group on behalf of KnowBe4.
Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

Abu Dhabi's Mubadala invests in AI open-source company Anaconda
Abu Dhabi's Mubadala invests in AI open-source company Anaconda

Arabian Business

time9 hours ago

  • Arabian Business

Abu Dhabi's Mubadala invests in AI open-source company Anaconda

Abu Dhabi's Mubadala Capital has participated as one of the main investors alongside Insight Partners in the US$150 million Series C funding of Anaconda Inc, the company committed to advancing AI with open source at scale. The company operates profitably with over US$150 million in annual recurring revenue (ARR) as of July 2025. The new funding values the startup at about US$1.5 billion. Acquisitions on their mind Capital will be invested in new AI features, strategic acquisitions, and to fuel Anaconda's global expansion into new markets. Additionally, the funding will offer liquidity options for current and former employees, driving the company's continued momentum and growth. This news comes on the heels of Anaconda's newly launched AI Platform as well as a recently announced partnership with Databricks, the data and AI company. Since its founding in 2012, Anaconda has been one of the most trusted and widely used Python distribution platforms, with over 21 billion downloads and 50 million users. Today, more than 10,000 large enterprises rely on Anaconda to build and manage AI systems effectively. The infusion of capital comes at a pivotal moment as enterprises shift from isolated data science projects to building compound AI applications, validating Anaconda's mission to empower organisations and builders to innovate with data through a unified open source ecosystem for enterprise Python—the coding language that has become synonymous with AI development. George Mathew, Insight Partners Managing Director, said: 'As agents and compound AI systems gain traction, companies need a foundational platform to effectively manage key open source artifacts and components to drive fast, scalable innovation. Anaconda takes this a step further by layering simplicity and security to AI in enterprise landscapes. 'As enterprises move from specialised data science to generalised AI systems, we believe Anaconda is incredibly well-positioned for this generational shift.'

Abu Dhabi's IHC to invest $500mn in reinsurance premiums with RIQ
Abu Dhabi's IHC to invest $500mn in reinsurance premiums with RIQ

Arabian Business

time9 hours ago

  • Arabian Business

Abu Dhabi's IHC to invest $500mn in reinsurance premiums with RIQ

RIQ, the AI-native reinsurance platform launched earlier this year by IHC, in partnership with BlackRock and Lunate, has entered into a preferred reinsurance partnership with IHC, anchored by a targeted allocation of over US$500 million in risk coverage within the coming decade. The partnership represents IHC's commitment to pioneering intelligent capital deployment and transformative risk transfer solutions. By leveraging RIQ's AI-powered infrastructure, IHC aims to enhance the resilience and operational agility of its group companies. The collaboration also aligns with Abu Dhabi's ambition to lead globally in structured reinsurance and financial innovation. 'A strategic investment' Syed Basar Shueb, CEO of IHC, called it 'a strategic investment in the future of resilient infrastructure and industrial agility'. 'This partnership reflects IHC's conviction in the transformative power of intelligent capital and data-driven risk transfer. By aligning with RIQ, we are catalysing the next chapter of Abu Dhabi's evolution as a global center for reinsurance innovation. This is not just a financial commitment, it is a strategic investment in the future of resilient infrastructure and industrial agility,' Shueb said. Headquartered in Abu Dhabi Global Market (ADGM), RIQ will offer a full suite of reinsurance solutions, working closely with IHC and its portfolio companies to structure capital-efficient coverage across complex Specialty and Property and Casualty (P&C) risk classes. Leveraging advanced data modelling and AI-augmented underwriting, the platform is purpose-built to meet the demands of a rapidly evolving risk environment. Seeking regulatory approvals The company is currently in the process of getting regulatory approvals with the Financial Services Regulatory Authority (FSRA) of ADGM, as it moves toward formal authorisation as a reinsurer. Final preparations are also underway for the execution of the reinsurance transaction between IHC and RIQ, which remains subject to regulatory clearance. This transaction will mark a foundational step in RIQ's operational rollout. Mark Wilson, CEO of RIQ, added: 'We are proud to collaborate with IHC in this milestone partnership. RIQ's platform is engineered to deliver intelligent risk solutions at pace, fusing advanced analytics, underwriting discipline, and strategic capital. This announcement marks a defining step in our mission to reshape global reinsurance from Abu Dhabi outward.' RIQ has promised more updates in the coming months, as it executes on its global buy-and-build strategy. With over US$1 billion in equity commitments from IHC and strategic partners BlackRock and Lunate, RIQ aims to ultimately write US$10 billion per year.

Furthering Implementation of the Peace Agreement Between the Democratic Republic of the Congo and the Republic of Rwanda
Furthering Implementation of the Peace Agreement Between the Democratic Republic of the Congo and the Republic of Rwanda

Zawya

time11 hours ago

  • Zawya

Furthering Implementation of the Peace Agreement Between the Democratic Republic of the Congo and the Republic of Rwanda

In support of implementation of the Peace Agreement Between the Democratic Republic of the Congo (DRC) and the Republic of Rwanda (Rwanda) signed in Washington, D.C. on June 27, 2025, the United States hosted two sets of meetings on July 30 through August 1, 2025, focused on implementation of the security aspects of the agreement and building a framework for regional economic growth opportunities, which together are critical to achieving long-term stability and durable peace in the Great Lakes region. This bilateral initiative is designed to unlock the immense economic potential of the Great Lakes region made possible only through the implementation of the Peace Agreement. On August 1, representatives from the DRC and Rwanda, facilitated by the United States, initialed the text of the Regional Economic Integration Framework Tenets, a requirement outlined in the Peace Agreement. Through joint coordination in areas including energy, infrastructure, mining, national park management and tourism, and public health, the DRC and Rwanda will drive economic progress and improve the lives of people and the communities where they live across the Great Lakes region. Also on July 31, DRC and Rwandan delegations held the first meeting of the Joint Oversight Committee to support implementation of the Peace Agreement Between the DRC and Rwanda, observed by the United States, the State of Qatar, the Republic of Togo (as the African Union facilitator) and the African Union Commission. The Committee serves as a platform for implementing the Peace Agreement and resolving disputes. At its first meeting, participants appointed Chairpersons to the Commission, agreed to governing terms, and prepared for the launch of the Joint Security Coordination Mechanism. This week's meetings represent a significant step forward in implementing the Peace Agreement, with the DRC and Rwanda taking meaningful actions to advance security and economic cooperation. The United States reaffirms its commitment to supporting these efforts and, as the parties make progress implementing the Peace Agreement, looks forward to hosting the Summit of the Heads of State in Washington, D.C., to drive peace, stability, and economic prosperity. Distributed by APO Group on behalf of Department of State, United States of America.

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into a world of global content with local flavor? Download Daily8 app today from your preferred app store and start exploring.
app-storeplay-store