AI-Driven Deepfake Scams and Malware Cause Cyber Harm in Kenya and South Africa

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

ESET's H2 2025 Threat Report highlights a surge in AI-powered cyber threats in Kenya and South Africa, including deepfake-enabled investment scams, AI-generated malware, and AI-driven ransomware. These attacks have led to financial losses, impersonation, and operational disruptions, with notable incidents involving deepfake videos impersonating public figures for fraud.[AI generated]

Why's our monitor labelling this an incident or hazard?

The article explicitly mentions AI-driven ransomware (PromptLock) and AI-generated phishing content being used in active cyberattacks against organizations, causing harm such as financial loss and operational disruption. The AI systems are directly involved in the development and use phases leading to these harms. This fits the definition of an AI Incident because the AI system's use has directly led to harm to organizations (harm to property and communities). The article also references law enforcement actions responding to these harms, reinforcing that the harms are realized and ongoing rather than potential. Hence, the classification as AI Incident is appropriate.[AI generated]
AI principles
Robustness & digital securityTransparency & explainability

Industries
Digital securityFinancial and insurance services

Affected stakeholders
ConsumersBusiness

Harm types
Economic/PropertyReputational

AI system task:
Content generation


Articles about this incident or hazard