Skip to main content

Psychological challenges of detecting AI-generated cyber scams

Published on September 30, 2026   39 min

A selection of talks on Technology & Operations

Please wait while the transcript is being prepared...
0:00
Hello, everyone. I'm Chris Kayser, founder of Cybercrime Analytics Inc., based in Calgary, Alberta, Canada. I'm a cyber criminologist involved in many aspects of cybercrime awareness and prevention, a published researcher and author of the book: Cybercrime Through Social Engineering: The New Global Crisis. My research, presentations and publications frequently address the subject of social engineering. It is widely accepted that greater than 90% of all cyber attacks involve some form of social engineering. We will examine a number of aspects of social engineering in this presentation, and the advent of AI as they relate to efforts to manipulate our human nature and curiosity and numerous emotions.
0:42
This slide sets the tone for today's presentation. This study suggests that most people do not retain cyber prevention training for long. It is not so much that training is not valuable, but that it could be some time until we experience a malicious attack which, by that time, can be difficult to recognize. I believe that the concepts and characteristics of cyber criminality can be explained in simple terms; we will be more inclined to remember them when we're confronted by nefarious characters.
1:10
Whenever we or our organization is hacked, our first thought is often why? The answer is simple. Bad actors are seeking information that can be used for illicit purposes. Often we do not recognize assets that cyber criminals consider valuable. As individuals, we realize that our Personal Identifiable Information, or PII, such as when we were born, our mother's maiden name and government issued IDs can be used by scammers. But equally appealing to bad actors are social activities, political opinions and preferences, travel habits and other data we share on social media sites. Along with our PII, these types of information can be used to create fake portrayals of us, particularly when our images and voice prints are acquired. Organizations are challenged to identify which assets might be attractive to a bad actor. Sales and marketing materials, intellectual property, internal processes for conducting business can be used for a ransomware attack, sold to competitors, or used for misleading communications such as fake websites that can contain embedded viruses. Most concerning is that any acquired information can be made available instantly on the dark web, and remain there for others to purchase into perpetuity. The risk-reward for cyber criminals is typically in their favor. The odds of getting caught remain low, successful prosecutions are rare, and the rewards can be significant. While many hacks occur by bypassing technology firewalls,

Quiz available with full talk access. Request Free Trial or Login.

Hide

Psychological challenges of detecting AI-generated cyber scams

Embed in course/own notes