World Congress 2023 Oct 6, 2023

Skynet wants your Passwords! The Role of AI in Automating Social Engineering

Wolfgang Ettlinger , Alexander Hurbean

Could your team spot a phishing lure dynamically generated by an autonomous LLM? Learn why passkeys are your only defense when AI makes malicious content indistinguishable from reality.

Pause
Mute Enter Fullscreen
#1 about 1 min

Future realities of AI in social engineering

How artificial intelligence could automate phishing and scale social engineering attacks in the near future.

#2 about 2 min

Dual usage of machine learning in cybersecurity

How AI tools can be leveraged for both detecting threats and developing automated malicious campaigns.

#3 about 2 min

Eroding trust through artificial media generation

How highly realistic, artificially generated images and audio complicate the verification of digital identities.

#4 about 2 min

Real-world voice cloning and targeted fraud cases

How attackers use cloned voices for CEO fraud and highly targeted family emergency scams.

#5 about 4 min

Scaling malicious tasks with autonomous AI agents

How agents like AutoGPT can be repurposed to perpetually scale scams, phishing, and fake chats.

#6 about 3 min

Designing an automated phishing attack pipeline

The theoretical steps for building a system that gathers target intelligence to perpetually distribute personalized phishing.

#7 about 3 min

Bypassing safety filters with conversational jailbreaks

Exploiting prompt injection and community-found jailbreaks to override restrictions on commercial AI platforms.

#8 about 4 min

Architecture for automated targeted phishing campaigns

Designing a system that uses large language models alongside service enumerators to craft convincing email payloads.

#9 about 5 min

Configuring local models and service enumerators

Utilizing an open-source text generation web UI to orchestrate prompts and identify target infrastructure.

#10 about 4 min

Demonstrating the automated targeted phishing software

Observing a proof of concept automatically generate tailored lures based on a victim's specific domain records and software usage.

#11 about 7 min

Defensive strategies against AI-driven social engineering

Enhancing security postures through passwordless authentication, verified digital signatures, and prompt injection counter-attacks.

Matching moments

3:05 min

Enhancing social engineering and phishing with generative AI

Chris Wysopal Chris Wysopal +2 · WWC 2024

1:23 min

Automating compromised roles through AI agents and backup scammers

George Proorocu George Proorocu · WWC Europe 2026

8:04 min

Understanding AI chatbot vulnerabilities and stateful attacks

Sebastian Messingfeld Sebastian Messingfeld · WWC Europe 2026

2:12 min

Open-source voice cloning and deepfake vulnerabilities

Chris Heilmann +3 · LIVE

2:46 min

Bypassing language model safeguards utilizing contextual prompt injection attacks

Chris Heilmann +1 · LIVE

3:09 min

Distinguishing AI-assisted users from experienced security professionals

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

Upcoming sessions on this topic

Open session

World Congress 2026 North America

The Things Your AI Isn't Telling You

Desmond Lamptey

Lead Software Engineer @ Capital One

Desmond Lamptey
Open session

World Congress 2026 North America

Securing AI Agent Infrastructure: Identity, Attestation, and Trust at Scale

Abdel Fane

Founder of OpenA2A

Abdel Fane
Open session

World Congress 2026 North America

SecurePrompt: Building a Pre-Flight Security Layer for Agentic AI

Ravi Sastry Kadali

AI/ML Engineer at General Motors

Ravi Sastry Kadali
Open session

World Congress 2026 North America

Responsible AI Architecture with Zero Trust Agents

Ashok Prakash

Staff ML Engineer at Apple

Ashok Prakash
Open session

World Congress 2026 North America

Who Tests the AI? Building Trustworthy AI Systems at Enterprise Scale

Him Raj Singh

PayPal, Manager, Software Engineer

Him Raj Singh
Open session

World Congress 2026 North America

When Agents Became Users: Rearchitecting Identity and Permissions for AI at Scale

Yoav Gal, Dor Cohen

Yoav Gal
Dor Cohen