WithSecure uncovers AI sending phishing mails

WithSecure security researchers demonstrated how the GPT-3 natural language generation model and the ChatGPT can be used to carry out phishing scams.

WithSecure ran a number of experiments to see how modifying the language model’s input influenced the text output. These included phishing and spear-phishing, harassment, social validation for scams, the appropriation of a written style, the creation of intentionally divisive opinions, using the models to create prompts for malicious text, and fake news.

GPT-3 even created a convincing email thread to use in a phishing campaign, as well as social media posts with hashtags to harass a fictitious CEO of a robotics company. It made use of prompt engineering, a concept related to large language models that entails discovering inputs that produce desirable or useful results in order to generate a variety of content deemed harmful by the researchers.

It also investigated how changes in inputs to the existing models affected the synthetic text output. The goal was to identify how AI-language generation can be abused through malicious and creative prompt engineering, with the hope that the findings will help guide the development of safer large language models in the future.

The sources for this piece include an article in TheRegister.

Top Stories

Related Articles

June 20, 2024 Target is introducing a new generative artificial intelligence tool aimed at enhancing the efficiency of its store employees more...

June 13, 2024 Generative AI tools are transforming the coding landscape, making both skilled and novice developers more efficient. However, the more...

May 16, 2024 Microsoft's ambitious strides in AI technology are now posing a significant challenge to its own climate goals, as more...

May 15, 2024 Ilya Sutskever, co-founder and chief scientist of OpenAI, has officially announced his departure from the company. This move more...

Jim Love

Jim Is and author and pud cast host with over 40 years in technology.