Research from Keepnet found that AI-generated phishing emails achieve a 54% click-through rate, compared with 12% for manually written ones. Meanwhile, IBM's breach research found that 16% of breaches now involve attackers using AI, with AI-generated phishing accounting for 37% of those cases and deepfake impersonation another 35%.
The UK's National Cyber Security Centre is blunt about where this is heading. Its assessment of AI's impact on cyber threat to 2027 concludes that AI will highly likely increase the volume and impact of cyber intrusions, and that a growing digital divide will open up between organisations keeping pace with AI-enabled threats and those that are not. The good news is that the NCSC also expects this to happen through the enhancement of existing techniques rather than entirely new attack types, which means the fundamentals still matter. They just need to be applied more rigorously, and faster.
AI hasn't invented new categories of attack. It has removed the friction from existing ones.
Phishing no longer looks like phishing. Poor grammar, awkward phrasing and generic greetings were once reliable warning signs. Generative AI removes all of them, producing fluent, personalised emails in seconds by drawing on publicly available information about a company and its staff. The UK government's 2024 cyber security research found that phishing dominated the threat landscape, reported by 84% of businesses, and separate industry research found 46% of SMBs faced AI-generated or advanced phishing schemes in the past year alone.
Impersonation has moved beyond email. Voice cloning can now produce a convincing match from as little as three seconds of audio, which means a recording from a webinar, a voicemail greeting or a conference talk is enough raw material to impersonate a director on a phone call or voice note.
The gap between vulnerability and exploitation is shrinking. The NCSC expects AI to compress the time between a vulnerability being disclosed and being exploited, increasing the volume of attacks against systems that haven't been patched promptly.
The barrier to entry is falling. Less skilled attackers can now run campaigns that previously required real expertise, which widens the pool of people targeting small and mid-sized businesses specifically.
Preparing for this means working across three layers at once: technology, policy and people.
The most effective technical responses to AI-enhanced attacks are largely the same controls that defend against conventional ones, applied with less tolerance for gaps.
If a convincing fake can be produced in seconds, policy has to protect people who can't tell the difference.
Awareness training built around spotting typos and odd greetings is out of date. Effective training now focuses on behaviour: pausing on unusual requests, verifying through a second channel, and reporting quickly without fear of blame.
| Layer | What AI changes | Practical response |
|---|---|---|
| Technology | Phishing bypasses content filters; exploitation windows shrink | Phishing-resistant MFA, behavioural email security, faster patching |
| Policy | Voice and video can be convincingly faked | Mandatory out-of-band verification, AI acceptable use policy, tested response plan |
| People | Traditional red flags disappear | Behaviour-based training, regular simulations, blame-free reporting |
What is an AI-driven cyber attack? It is a conventional attack, such as phishing, impersonation fraud or vulnerability exploitation, that uses AI to make it faster, more personalised or more convincing. The NCSC assesses that AI will mostly enhance existing techniques rather than create entirely new ones.
Are AI-generated phishing emails really more effective? Research from Keepnet found AI-generated phishing achieved a 54% click-through rate against 12% for manually crafted messages, largely because AI removes the spelling errors and awkward phrasing people were trained to look for.
Can deepfake voice and video really be used against a small business? Yes. Voice cloning needs only a few seconds of audio, and the targets are often finance or operations staff asked to action an urgent payment. Mandatory call-back verification using a known number is the most reliable defence.
Is multi-factor authentication still worth it? Absolutely, but the method matters. Phishing-resistant MFA, such as FIDO2 keys or passkeys, holds up against AI-driven credential theft, whereas SMS and push-based approaches can be bypassed through real-time phishing proxies.
What should a small business do first? Start with the controls that remove reliance on human judgement: phishing-resistant MFA for privileged accounts, mandatory verification for payment changes, and a faster patching process for internet-facing systems. Then build awareness training around current scenarios.
Can Protrona help us assess our readiness? Yes. Our security consultancy services include reviewing your email security, access controls, verification processes and staff awareness against current AI-enhanced threats, aligned with the NCSC's published AI and cyber security guidance.
AI has raised the standard of what an attacker can produce, which means resilience now depends on controls and processes that don't rely on anyone spotting a fake. A short review of your technology, policies and training will show where the gaps are. Get in touch to arrange one.