The “SlashNext State of Phishing Report 2023” revealed a worrying 1265% increase in phishing emails since Q4 2022. The increase in phishing emails is also related to the use of AI tools, including ChatGPT.

The annual report, compiled by SlashNext Threat Labs, includes an analysis of threats observed across email, mobile, and browser channels from Q4 2022 to Q3 2023.
Patrick Harr, CEO of SlashNext, has attributed the increase in phishing attacks to the growing use of generative AI.
See also: The use of QR codes in phishing attacks is increasing
“We know from our research that attackers are leveraging tools like ChatGPT to help craft sophisticated, targeted Business Email Compromise (BEC) and other phishing messages, and the increase in the volume of these threats by over 1,000% coincides with the release of ChatGPT , and this is no coincidence,” the executive said.
An example of a successful attack with ChatGPT is sending a fake email pretending to come from a well-known bank. ChatGPT can create realistic emails that convince recipients to click on malicious links or reveal sensitive information, such as passwords or credit card numbers.
Another example is the use of ChatGPT to create fake login pages. Attackers can use ChatGPT to create exact copies of the login pages of well-known websites, such as banks or social networks. Users who fall victim to this attack can hand over credentials to the attackers, believing that they are connecting to the real website.
See also: Education: Increased attacks through phishing and exploitation of vulnerabilities
Mr. Harr stressed that the report does not aim to exaggerate the threats associated with generative AI. However, customers and the cybersecurity at large should understand the real risks of the new technology and respond appropriately.

Other important findings
The report also states that an average of 31,000 daily phishing attacks were observed, with 68% of them identified as BEC text-based. The survey, which included over 300 cybersecurity professionals, shows that 46% of respondents have encountered BEC attacks.
Additionally, 77% of these professionals have been the victims of phishing attempts, with 28% of these attacks being via text messages. Also, 39% of attacks targeting mobile phones were SMS phishing, or Smishing.
See also: Gmail: Strengthens defenses against phishing and malware from 2024
The report emphasizes that organizations must adopt protective measures and use AI-based solutions to address threats that are also fueled by AI.
“The threat landscape is changing incredibly quickly with the introduction of AI into the game,” commented Mika Aalto, co-founder and CEO of Hoxhunt. “But the good news is that AI can also be used to defend against sophisticated attacks, and we have seen that good training generated threats AI-.”
Source: www.infosecurity-magazine.com
