Map/D3/3.4

I · D3 · 3.4

AI-generated phishing

Fluent, personalized emails at scale.

Major · 4Documented at scaleNowRisk 20

Severity

4/5

Likelihood

5/5

In the hierarchy

  1. Part I: Technical & System Concerns
  2. D3. Security & Adversarial Risk
  3. 3.4 AI-enabled cyberattacks

Virtues and principles to explore

Held as inquiry, not as a verdict.

  • Stewardship

    Service

    Hold what is built in trust for those who will live with it.

  • Prudence

    Excellence

    Small, reversible steps before irreversible ones.

  • Accountability

    Trust

    Name who holds the consequence before it is needed.

Starter questions

Written to probe curiosity and learning, not accusation.

  1. 01If a colleague raised this concern tomorrow, how would we receive it as inquiry rather than accusation?
  2. 02What capacity would we need — in people, in the institution, in the tools — to meet this well?
  3. 03What would Accountability require of us here, before we proceed?
  4. 04What might we be missing if we treat “AI-generated phishing” only as a technical problem?

Also on this branch

Frameworks and sources

Writing and incidents

Open indexes first. Then, if you wish, ask Grok to search the live web for this concern — one request, cached for the rest of this session.

Attacks on and through AI systems: injection, jailbreaks, cyber offense.