Cybercriminals are increasingly leveraging generative AI to enhance the effectiveness of phishing, deepfake, and impersonation attacks, particularly targeting organizations across Africa. According to Microsoft's "Digital Defense Report 2025" and threat intelligence from Group-IB, deepfake-related fraud has nearly tripled in the past year, with AI-generated voice scams and phishing campaigns achieving significantly higher success rates than traditional methods. Attackers are using AI to craft convincing messages in local languages and cultural contexts, overwhelming traditional detection systems and enabling large-scale identity-based attacks.
Security experts and industry leaders are highlighting the urgent need for organizations to adopt AI-based defense mechanisms to counter these evolving threats. Practical guidance emphasizes defending against AI-generated email attacks and the importance of proactive security strategies, as discussed by Patricia Titus at InfoSec World 2025. Demonstrations by cybersecurity firms, such as NCC Group, show that real-time voice deepfakes can now be created with minimal resources, further raising the stakes for enterprise security teams worldwide.

Track how attackers are adapting to this technology.
9 events from the most recent confirmed update back to the earliest known activity.
Cybersecurity firms observed a surge in AI-enabled attacks across Africa, indicating growing operational use of AI by threat actors in the region.
Reporting indicated that the Qilin ransomware group continued broadening its ransomware-as-a-service operations and targeting sensitive sectors to increase reach and impact.
Marks & Spencer terminated its contract with Tata Consultancy Services following a major cyberattack, prompting scrutiny of outsourcing risks in IT and security operations.
A consumer discovered that his smart vacuum was creating and transmitting a map of his home's layout, and that the manufacturer could remotely disable the device.
Over 60 United Nations member states signed a new cybercrime treaty, despite criticism from human rights groups and major technology companies over weak privacy protections.
Cybersecurity experts demonstrated that open-source AI tools and consumer-grade hardware can produce convincing real-time voice deepfakes, heightening concerns about deepfake-enabled vishing attacks.
The US Department of Homeland Security prepared a policy requiring photographs of all non-citizens entering or departing the country.
US telecommunications companies pushed to remove FCC-imposed cybersecurity requirements that were put in place following the Salt Typhoon breach.
The Canadian government moved to refresh its AI strategy by forming a new task force and planning public consultations, amid concerns that the country is falling behind other nations on AI policy.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
3 references tracked. Mallory keeps watching after this page renders.
darkreading.com
Open sourcescworld.com
Open sourcesherpaintelligence.substack.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.