
New Video from @CloudSecurityPodcast Explores the Evolution of Social Engineering with AI
In this video, the Cloud Security podcast explores recent and future developments in social engineering, focusing on the impact of generative artificial intelligence technologies and large language models. Bobby Ford, a CISO with over 14 years of experience across various sectors, shares his insights on how social engineering has evolved and how organizations can prepare for these new threats.
One key point discussed is the transformation of social engineering through AI. Unlike traditional attacks where humans were the main actors, modern attacks use AI to create hyper-personalized messages distributed across multiple channels. These attacks are not only more targeted but also faster and on a larger scale, making them difficult to detect using traditional methods. Bobby Ford emphasizes that attacks are no longer limited to emails; they can also occur via SMS, WhatsApp, Signal, social media, help desks, Slack, Teams, Zoom, and many other platforms.
Another important point is the need to rethink security metrics. Bobby Ford suggests that traditional metrics like phishing email click rates are no longer sufficient. He proposes focusing on a more comprehensive measure: susceptibility to social engineering. This measure considers an organization's vulnerability across all communication channels, not just emails. He predicts that in the next 12 to 18 months, organizations should focus on this new metric to better assess their overall risk.
In terms of defenses, Bobby Ford stresses the importance of using AI to counter AI. He explains that security solutions must integrate AI capabilities to detect and neutralize malicious infrastructures before they reach end-users. He cites the example of Scattered Spider, a cybercriminal group known for its sophisticated social engineering attacks, which uses various channels to compromise its targets.
Bobby Ford also shares his professional journey, from his beginnings in the military to his current role at Doppel, a startup specializing in combating social engineering. He explains that his decision to join Doppel was motivated by the desire to build something new and create a lasting legacy. He emphasizes the importance of visibility and remediation in the fight against social engineering, insisting that organizations must be proactive rather than reactive.
Finally, Bobby Ford shares some personal aspects, such as his love for fitness and Michelin-starred restaurants. He mentions that his favorite restaurant is The Inn at Little Washington, a three-Michelin-starred establishment located in a small town in Virginia.
To learn more about the discussions and insights shared in this video, you can watch it on YouTube at the following address: https://www.youtube.com/watch?v=cmF0Bp82Iak