
The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
Criminals are using AI to craft convincing phishing emails mimicking the German Pension Insurance's official style, aiming to steal personal data from recipients. The organization has issued warnings, urging people not to follow instructions or click links in suspicious emails. The incident is centered in central Germany.[AI generated]
Why's our monitor labelling this an incident or hazard?
An AI system is involved as the fraudsters use AI to generate convincing phishing emails. The event involves the use of AI in a malicious way to deceive people and obtain sensitive data, which constitutes a violation of personal rights and potentially leads to harm to individuals. Since the harm (fraud attempts targeting personal data) is occurring or actively attempted, this qualifies as an AI Incident. The AI system's use is in the malicious generation of phishing content that directly leads to harm or risk of harm to individuals' privacy and security.[AI generated]