
The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
The Baden-Württemberg Cybersecurity Agency (CSBW) reports a sharp rise in phishing attacks due to AI-generated emails. These more convincing and frequent phishing attempts have led to increased malware infections and data breaches, harming individuals, organizations, and communities in the region.[AI generated]
Why's our monitor labelling this an incident or hazard?
The article explicitly states that AI is being used to create highly convincing fake phishing emails, which have increased in number and success rate, leading to cyberattacks that cause harm such as data breaches or malware infections. This is a direct use of AI systems causing harm to people and organizations, fitting the definition of an AI Incident. The harm is realized, not just potential, as the phishing attacks are ongoing and increasing.[AI generated]