2 Sources
[1]
Deepfaked calls hit 44% of businesses in last year: Gartner
A survey of cybersecurity bosses has shown that 62 percent reported attacks on their staff using AI over the last year, either by the use of prompt injection attacks or faking out their systems using phony audio or video generated by AI. The most common attack vector is deepfake audio calls
[2]
Watch out - even small businesses are now facing threats from deepfake attacks
Prompt injection is also giving criminals access to sensitive company information Gartner says even small businesses are facing a spike in cybercrime, and AI could be to blame - more than three-fifths (62%) of organizations reporting AI-driven attacks in the past year. The firm's study found
Share
Copy Link
A Gartner survey reveals that 62% of organizations faced AI-driven attacks in the past year, with deepfake audio emerging as the top threat. Small businesses are increasingly targeted, and prompt injection attacks are on the rise, highlighting the need for enhanced cybersecurity measures across all sectors.

In a startling revelation, a recent Gartner survey has uncovered that 62% of organizations reported AI-driven attacks in the past year, with deepfake audio emerging as the most prevalent threat vector
1
2
. The study found that 44% of businesses experienced at least one instance of deepfake audio calls, while 36% encountered video deepfakes1
2
.Chester Wisniewski, global field CISO of Sophos, explained the growing concern: "With audio, you can kind of generate these calls in real time at this point. If it was your spouse they could tell, but if it's just a co-worker you talk to occasionally, you pretty much can do that in real time now without much pause, which is a real challenge."
1
The impact of these attacks is significant, with 6% of audio deepfake incidents resulting in business interruption, financial loss, or intellectual property theft
1
. However, the use of audio screening services can reduce this loss rate to 2%, highlighting the importance of implementing protective measures1
.While less common than audio deepfakes, video-based attacks are still a significant threat. Sophos has observed instances where scammers briefly use CEO or CFO video deepfakes on messaging platforms before claiming connectivity issues and switching to text communication to continue their social engineering attacks
1
.Beyond deepfakes, prompt injection attacks are emerging as a serious concern. The Gartner survey revealed that 32% of respondents experienced prompt injection attacks against their applications
1
2
. These attacks involve embedding malicious instructions into content processed by AI systems, potentially leading to the disclosure of sensitive information or misuse of connected tools1
.Related Stories
Contrary to popular belief, AI-driven attacks are not limited to large corporations. Gartner's study emphasizes that even small businesses are now facing threats from deepfake attacks and other AI-powered cybercrime tactics
2
. This shift in the threat landscape underscores the need for organizations of all sizes to enhance their cybersecurity measures.As AI technology continues to advance rapidly, the sophistication and accessibility of deepfake tools are expected to increase. While person-specific, real-time video deepfakes remain expensive to produce, experts anticipate that this barrier will diminish over time
2
. The cybersecurity community is observing a trend where attackers use deepfakes as an initial vector before transitioning to simpler, cost-effective methods2
.In light of these emerging threats, cybersecurity experts recommend that companies of all sizes strengthen their defenses. The zero-trust approach is gaining popularity as an effective strategy to block unauthorized activity
2
. Additionally, implementing audio screening services and staying informed about the latest AI-driven attack methods can help organizations mitigate risks and protect their assets in an increasingly complex threat landscape.Summarized by
Navi
[1]
1
Technology

2
Technology

3
Policy and Regulation
