LIVE · cybersecurity feed
Live wire
Zero-Click Grok Chat History Theft: Adversa AI Demonstrates Cryptographic Context InjectionMalware Hijacks Android Car Head UnitsCritical Flaw in NASA/JPL Open-Source Spacecraft Command Software Allowed Unauthenticated Command ExecutionCVE-2026-73570 · U.S. CISA adds Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalogCVE-2024-3094 · Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply ChainHow an Emerging Industrial Protocol Family Could Put OT at Risk14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2Hundreds of leaked AWS keys give full control over corporate accountsAndroid Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy BotnetMalware injected into popular Rust packages to steal developer credentials
phishinghigh

Phishing 3.0: The Fight Moves to Agent Versus Agent

The cybersecurity landscape is evolving with the advent of "Phishing 3.0," where attackers are increasingly using AI-powered agents to conduct sophisticated, multi-channel attacks. These agents automate reconnaissance and personalize lures, moving beyond simple malicious content to exploit trust through social engineering, deepfakes, and impersonation across email, voice, and video. Traditional defenses are struggling to keep pace, necessitating a shift towards proactive, agent-assisted security measures for defenders.

zeroday.news ·

The cybersecurity community is reportedly facing a new phase of attack, dubbed "Phishing 3.0," characterized by the increasing deployment of AI-powered agents by malicious actors. This development signifies a shift in the nature of phishing campaigns, moving towards more automated and sophisticated multi-channel assaults. The core concern is that these AI agents are enhancing attackers' capabilities in reconnaissance and the personalization of social engineering lures, making traditional defenses less effective.

At the technical level, these AI-powered agents are described as automating key aspects of the attack chain. This includes conducting reconnaissance to gather information about targets, which is then used to craft highly personalized and believable lures. Unlike earlier phishing attempts that often relied on generic malicious links or attachments, Phishing 3.0 leverages advanced social engineering techniques. This can involve the use of deepfakes and sophisticated impersonation tactics across various communication vectors, including email, voice calls, and video interactions. The goal is to exploit trust relationships rather than simply tricking users into clicking a link.

The reported shift indicates that attackers are moving beyond static malicious content, which is often detectable by signature-based or even heuristic analysis. Instead, the focus is on dynamic, adaptive interactions that mimic legitimate communication. The multi-channel approach means that an initial email might be followed by a targeted voice call or even a video interaction, all orchestrated by AI agents to build a convincing narrative and overcome skepticism. This level of automation and personalization presents a significant challenge for existing security frameworks.

Products designed for email gateway security, endpoint protection, and even some behavioral analytics tools may struggle to identify these highly personalized and context-aware attacks. Traditional phishing defenses often rely on detecting known malicious indicators, suspicious URLs, or common social engineering patterns. However, when AI agents are generating unique, contextually relevant content and orchestrating multi-stage interactions, these defenses can be bypassed. The human element, which is often the weakest link, becomes even more vulnerable when confronted with highly convincing, AI-generated impersonations.

Mitigation strategies for this evolving threat class typically involve a multi-layered approach. Enhanced user training, focusing on recognizing sophisticated social engineering tactics, deepfakes, and multi-channel impersonations, becomes critical. Organizations may also need to explore advanced threat detection systems that incorporate AI and machine learning to identify anomalous communication patterns, unusual voice characteristics, or inconsistencies in video interactions. Furthermore, the reported need for "agent-assisted security measures for defenders" suggests a move towards leveraging defensive AI to counter offensive AI, potentially through automated threat hunting, real-time anomaly detection, and adaptive access controls.

This development underscores an ongoing arms race in cybersecurity, where advancements in artificial intelligence are being leveraged by both attackers and defenders. The reported emergence of "Phishing 3.0" highlights a significant escalation in the sophistication and automation of social engineering attacks. It signals a future where the battle for digital security may increasingly involve AI agents on both sides, necessitating a proactive and adaptive approach to defense that moves beyond traditional reactive measures.

phishingaideepfakecybersecuritysocial engineering
ShareXLinkedInWhatsAppFacebook

More News

view all →
malware

ToxicPanda Android malware uses VPN permissions to block Google Play

The ToxicPanda Android malware has evolved with new malicious functionality, expanding its targeting to 349 applications and adding support for 167 remote commands. [...]

iran

UK Power Plant Disabled for Four Days by Iran-Linked Hackers, Concurrent with US Water Attacks

Hackers linked to Iran have successfully disabled a small UK power plant for four days, marking the first confirmed attack of its kind against the nation's energy infrastructure. The incident occurred concurrently with cyberattacks targeting water facilities across 12 US states. While the UK power plant's outage did not impact the national grid, the attack served as a demonstration of capability, with intentions likely focused on showcasing access rather than causing widespread disruption.

ransomware

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Windows 11’s strongest security defenses can be bypassed without a screwdriver Researchers from the University of Birmingham and Durham University have found a way to knock down some of the toughest protections in Windows 11 without physically opening or modifying the target machine. The attack assume

aihigh

Zero-Click Grok Chat History Theft: Adversa AI Demonstrates Cryptographic Context Injection

Researchers at Adversa AI have developed a novel attack called Cryptographic Context Injection, which bypasses AI safety filters by embedding malicious instructions within AES-encrypted payloads. This technique tricks AI models like xAI's Grok and Google's Gemini into decrypting and executing these hidden commands. In the case of Grok, the attack can lead to zero-click theft of user chat histories and personal data by disguising the malicious payload as a webpage summary request.

breach

Welcoming the Sri Lankan Government to Have I Been Pwned

Today, we welcome the 48th government onboarded to Have I Been Pwned’s free gov service: Sri Lanka. Sri Lanka CERT now has access to monitor Sri Lankan government domains against the data in HIBP, helping identify exposed government accounts and respond when they appear in new data breaches.

security

Postal Service moves to finalize mail ballot regs before SCOTUS ruling

The rules have already been rejected by multiple state courts, but the Trump administration said it’s preparing in case of a favorable Supreme Court decision. The post Postal Service moves to finalize mail ballot regs before SCOTUS ruling appeared first on CyberScoop.