In March, Janice Malone received urgent calls regarding suspicious activity at her nonprofit, Vivian’s Door, a Birmingham-based group supporting minority-owned businesses. The organisation’s third-party IT team isolated its systems for three days to investigate a wave of automated emails demanding money from victims worldwide. These fraudulent messages were not manually crafted but generated by artificial intelligence tools designed to mimic legitimate communications and bypass standard security filters. Local hospitals and banks face similar vulnerabilities as cybercriminals use these models to create convincing phishing campaigns at scale. The incident highlights a critical gap between emerging offensive AI capabilities and current defensive infrastructure within essential services. Many institutions lack the specific training to recognise synthetic data or the automated logic behind modern social engineering attacks. This shift means traditional spam filters often fail to stop threats that appear authentic down to the writing style.
* Nonprofits handling sensitive financial data are primary targets for these automated scams
* Cybercriminals use AI to generate personalised phishing emails faster than humans can
* Existing security protocols struggle to identify synthetic text as malicious




