Skip to content
Safety & Privacy

AI-Powered Social Engineering

Back to Security Center

Your safety guides how we build. Read this at your own pace, and reach our team any time from the Security Center.

A New Era of Social Engineering

Social engineering, the art of manipulating people into divulging confidential information or taking harmful actions, has existed for as long as communication itself. What has changed dramatically in recent years is the sophistication that artificial intelligence brings to these attacks. AI-powered tools enable criminals to craft messages that are grammatically flawless, contextually relevant, and tailored to individual targets with minimal effort.

Traditional phishing emails were often easy to spot. Poor grammar, generic greetings, and implausible scenarios gave them away. AI has largely eliminated these tell-tale signs, making modern social engineering attacks significantly more dangerous. The National Cyber Security Centre (NCSC) has flagged AI-enhanced phishing as a growing threat in its annual cyber threat assessments.

How AI Chatbots Craft Personalised Phishing

Large language models, the technology behind tools like ChatGPT, can generate human-sounding text on any topic in seconds. Criminals exploit this capability in several ways:

AI Mimicking the Writing Style of People You Know

One of the most concerning developments is AI's ability to replicate an individual's writing style. Given a sample of someone's messages, posts, or emails, an AI model can produce new text that reads as though it was written by that person. Criminals can use this to impersonate a friend, colleague, or family member, sending you a message that sounds exactly like them.

Imagine receiving a message from a friend's compromised social media account asking you to transfer money urgently. The message uses their typical expressions, their usual greeting, and references a shared experience. Without knowing that AI was used to craft the message, you might respond without hesitation. This technique is particularly effective on social platforms like KF.Social, where users communicate regularly with known contacts.

AI-Generated Scam Scripts

Beyond individual phishing messages, criminals use AI to develop entire scam scripts for phone calls, chat conversations, and even video interactions. These scripts are designed to guide a victim through a carefully structured interaction, responding to objections and building trust at each stage. Romance scams, investment fraud, and technical support scams all benefit from AI-generated scripts that sound natural and adapt to the conversation.

How to Tell the Difference

Whilst AI-generated content is increasingly difficult to distinguish from genuine communication, there are strategies you can use:

Protecting Yourself on KF.Social

On KF.Social, be particularly cautious of messages from accounts that have recently been created or that exhibit sudden changes in behaviour. If a long-time contact suddenly sends you unusual requests, their account may have been compromised and an AI tool may be generating messages on the attacker's behalf.

Report any suspicious messages through KF.Social's reporting system. Our moderation team analyses reported content and can take action to protect the wider community from AI-enhanced scam campaigns.

For the latest advice on recognising and defending against AI-powered threats, visit the NCSC's website, which regularly publishes updated threat intelligence and practical guidance for individuals and organisations.

Back to Security Center

Meet people, safely.

ID checks you can see, real dinners, and a team that has your back. See how it works.

KF.Social
Go for dinner. Leave with friends.
Get the app