AI THREATS

AI Threats

Voice cloning scams, deepfake fraud, AI-powered phishing. The new attacks your instincts were not built to catch.

3 posts published
DATA BREACHESPRIVACYAI THREATSVULNERABILITIESSCAMS
Your Claude Account Can Be Hijacked Without Your Password: What to Do Now
AI THREATS5 min read

Your Claude Account Can Be Hijacked Without Your Password: What to Do Now

Infostealer malware is stealing Claude session cookies and draining AI subscriptions without touching your password or 2FA code.

2026-09-04T08:09:34.243356+00:00READ →
Scammers Used a Deepfake of Australia's PM to Steal $7.4 Million — And Your Social Feed Is the Delivery Mechanism
AI THREATS5 min read

Scammers Used a Deepfake of Australia's PM to Steal $7.4 Million — And Your Social Feed Is the Delivery Mechanism

AI audio grafted onto real PM footage fooled investors out of $7.4M AUD. Regulators call it 'an emergency in the making' — and the technique defeats standard detection advice.

2026-08-19T08:02:12.881924+00:00READ →
1 in 4 Americans Got a Fake Call Using Their Family's Cloned Voice
AI THREATS6 min read

1 in 4 Americans Got a Fake Call Using Their Family's Cloned Voice

Scammers are cloning voices from 3 seconds of TikTok audio. One in four Americans already received a deepfake call — and 77% of those who engage lose money.

2026-06-06T14:00:45.772214+00:00READ →
// FAQ

AI Threats Questions Answered

What is AI voice cloning and how are criminals using it?

AI voice cloning tools can replicate a person's voice from as little as three seconds of audio scraped from social media, YouTube, or voicemail. Criminals use cloned voices to impersonate family members in fake emergency calls ("grandparent scams"), executives requesting urgent wire transfers, or government officials demanding payment. Always verify unexpected financial or emergency requests by hanging up and calling the person back on a number you already have.

How can I tell if a video is a deepfake?

Look for these signs: unnatural blinking patterns or eyes that don't move naturally, blurry or distorted edges around the hairline and ears, audio that slightly mismatches lip movements, inconsistent lighting between the face and background, and skin that looks oddly smooth or waxy. Detection tools like Deepware Scanner and Microsoft's Video Authenticator can help, but AI detection is an arms race. When in doubt, verify through another channel.

Are AI-powered phishing emails harder to detect?

Yes. Traditional phishing emails had obvious spelling errors, generic greetings, and clunky grammar. Modern AI generates grammatically perfect emails personalized with real details scraped from your LinkedIn, company website, or social media. They can mimic the writing style of your actual colleagues. Verify unexpected requests involving money, passwords, or sensitive data by calling the sender directly on a known number — never through contact information in the email itself.

What is a prompt injection attack?

A prompt injection attack tricks an AI system into ignoring its safety guidelines by embedding hidden instructions in content the AI processes. For example, an attacker might hide instructions in a document you ask an AI assistant to summarize, causing it to exfiltrate your data or take malicious actions. As AI agents become more autonomous, this attack class is becoming increasingly dangerous.

How do I protect myself from AI-powered cyberattacks?

Use unique, strong passwords managed by a password manager. Enable two-factor authentication (preferably an authenticator app, not SMS). Be skeptical of urgent requests — scammers use AI to create artificial time pressure. Verify unexpected calls, emails, or messages through a separate channel. Keep software updated to patch vulnerabilities AI can exploit. Stay informed: the threat landscape is evolving faster than ever.

← ALL POSTS