• Home
  • About
  • Advertise
  • Contact
  • Signup to receive updates
 Innovation | Startups | Funding | Tech Blog in Africa
NiRA Event
  • Home
  • Startups
  • Opportunities
  • Funding
  • Women Tech
  • Expert Column
  • Blockchain
No Result
View All Result
  • Home
  • Startups
  • Opportunities
  • Funding
  • Women Tech
  • Expert Column
  • Blockchain
No Result
View All Result
Innovation | Startups | Funding | Tech Blog in Africa
No Result
View All Result
Home General

Sophos Proactively Tackles AI-Powered Threats, Prepares Detections

At the Moment, Adversaries are Skeptical of AI for Cybercrime, According to Sophos Research

by Editor
3 years ago
in General
Reading Time: 3 mins read
A A
Sophos
Share on FacebookShare on Twitter

RelatedPosts

Conversations 2026:Meet Meta Business Agent

Digital Encode Sounds Alarm Over Nigeria’s Rising Cybersecurity Failures

PayPal’s Account Crackdown in Kenya Exposes a Bigger Challenge for Cross-Border Payments

Anthropic Nears $1 Trillion Valuation After Massive Series H Raise

Sophos, a global leader in innovating and delivering cybersecurity as a service, today released two reports about the use of AI in cybercrime.

The first report—“The Dark Side of AI: Large-Scale Scam Campaigns Made Possible by Generative AI”—demonstrates how, in the future, scammers could leverage technology like ChatGPT to conduct fraud on a massive scale with minimal technical skills.

However, a second report, titled “Cybercriminals Can’t Agree on GPTs,” found that, despite AI’s potential, rather than embracing large language models (LLMs) like ChatGPT, some cybercriminals are skeptical and even concerned about using AI for their attacks.

The Dark Side of AI

Using a simple e-commerce template and LLM tools like GPT-4, Sophos X-Ops was able to build a fully functioning website with AI-generated images, audio, and product descriptions, as well as a fake Facebook login and fake checkout page to steal users’ login credentials and credit card details.

The website required minimal technical knowledge to create and operate, and, using the same tool, Sophos X-Ops was able to create hundreds of similar websites in minutes with one button.

“It’s natural—and expected—for criminals to turn to new technology for automation. The original creation of spam emails was a critical step in scamming technology because it changed the scale of the playing field.

New AIs are poised to do the same; if an AI technology exists that can create complete, automated threats, people will eventually use it.

We have already seen the integration of generative AI elements in classic scams, such as AI-generated text or photographs to lure victims.

“However, part of the reason we conducted this research was to get ahead of the criminals. By creating a system for large-scale fraudulent website generation that is more advanced than the tools criminals are currently using, we have a unique opportunity to analyze and prepare for the threat before it proliferates,” said Ben Gelman, senior data scientist, Sophos.

Cybercriminals Can’t Agree on GPTs

For its research into attacker attitudes towards AI, Sophos X-Ops examined four prominent dark web forums for LLM-related discussions.

While cybercriminals’ AI use appears to be in its early stages, threat actors on the dark web are discussing its potential when it comes to social engineering.  Sophos X-Ops has already witnessed the use of AI in romance-based, crypto scams.

In addition, Sophos X-Ops found that the majority of posts were related to compromised ChatGPT accounts for sale and “jailbreaks”—ways to circumvent the protections built into LLMs, so cybercriminals can abuse them for malicious purposes.

Sophos X-Ops also found ten ChatGPT-derivatives that the creators claimed could be used to launch cyber-attacks and develop malware.

However, threat actors had mixed reactions to these derivatives and other malicious applications of LLMs, with many criminals expressing concern that the creators of the ChatGPT imitators were trying to scam them.

“While there’s been significant concern about the abuse of AI and LLMs by cybercriminals since the release of ChatGPT, our research has found that, so far, threat actors are more skeptical than enthused.

Across two of the four forums on the dark web we examined, we only found 100 posts on AI. Compare that to cryptocurrency where we found 1,000 posts for the same period.

“We did see some cybercriminals attempting to create malware or attack tools using LLMs, but the results were rudimentary and often met with skepticism from other users.

In one case, a threat actor, eager to showcase the potential of ChatGPT inadvertently revealed significant information about his real identity.

We even found numerous ‘thought pieces’ about the potential negative effects of AI on society and the ethical implications of its use.

In other words, at least for now, it seems that cybercriminals are having the same debates about LLMs as the rest of us,” said Christopher Budd, director, X-Ops research, Sophos.

For more about AI-generated scam websites and threat actors’ attitudes to LLMs, read The Dark Side of AI: Large-Scale Scam Campaigns Made Possible by Generative AI and Cybercriminals Can’t Agree on GPTs on Sophos.com.


Don’t miss important articles during the week. Subscribe to techbuild.africa weekly digest for updates.

Join @techbuildafrica on Telegram
ShareTweetShareSendShare

Related Posts

Meta Business Agent
General

Conversations 2026:Meet Meta Business Agent

Digital Encode
General

Digital Encode Sounds Alarm Over Nigeria’s Rising Cybersecurity Failures

Paypal
General

PayPal’s Account Crackdown in Kenya Exposes a Bigger Challenge for Cross-Border Payments

Subscribe Us

Recent Posts

  • Cascador Deploys $5M+ to Back Seven High-Impact Nigerian Startups
  • Celebrating a Decade of Impact: Africa Skills Hub Rebrands to ASH Africa
  • Anara Impact Capital Closes $48M First Fund to Back North Africa’s Impact Startups
  • Conversations 2026:Meet Meta Business Agent
  • Digital Encode Sounds Alarm Over Nigeria’s Rising Cybersecurity Failures
  • PayPal’s Account Crackdown in Kenya Exposes a Bigger Challenge for Cross-Border Payments
  • WhatsApp Experiments With Local Scam Detection to Strengthen User Safety
  • 7 Whale Wallet Patterns That Show Up Before Every Major Crypto Move
  • Africa’s EV Infrastructure Bet Gains Momentum as Spiro Secures $215M in Fresh Capital
  • Cube Cover, SLOT Roll Out Advanced Device Protection Service in Nigeria

Telegram

Join @techbuildafrica on Telegram
Innovation | Startups | Funding | Tech Blog in Africa

© 2013-2024 techbuild.africa. All Rights Reserved.

Navigate Site

  • About
  • Contact
  • Privacy
  • Sitemap
  • Terms
  • Blockchain
  • CleanTech

Follow Us

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Home
  • Startups
  • Hubs
  • Funding
  • WomenTech
  • CleanTech
  • Blockchain

© 2013-2024 techbuild.africa. All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.
Secret Link