AI-Enhanced Phishing Scams: South Korea's Record Losses Ahead

Edward Zhou
Edward Zhou

CEO & Founder

 
July 17, 2025 3 min read

South Korea’s Voice Phishing Losses

South Korea is facing a significant increase in voice phishing losses, which are expected to hit record levels. Scammers are leveraging advanced technologies, including deepfake video and voice technology, to deceive victims with remarkable precision.

Voice Phishing
Image courtesy of Source Name

The rise in these scams is alarming as criminals use AI-generated audio to impersonate individuals, including bank employees and family members. The technology enables them to create highly convincing audio messages, often using personal information gathered through previous data breaches.

To protect against these scams, authorities recommend verifying identities before sharing sensitive information and being cautious of urgent demands, regardless of the medium. Google News and Recorded Future provide ongoing coverage of current scams.

AI-Driven Tax Scams

Cybercriminals are increasingly using AI to enhance their tax-related scams. In 2025, reports emerged detailing how hackers employed AI-produced audio to impersonate tax preparers and IRS officials. This method allows for more believable and sophisticated phishing attempts.

taxes
Image courtesy of Source Name

Casey Ellis, founder of Bugcrowd, highlighted that generative AI and deepfakes allow scammers to scale their operations. They can produce “highly convincing phishing emails, voice calls, and even video messages.” The increase in AI-driven attacks has been noted particularly during tax season, targeting individuals and organizations alike.

Experts emphasize that individuals should be vigilant, looking for inconsistencies in communications and confirming identities before divulging sensitive data. Microsoft also published insights on tax-themed phishing campaigns, further underscoring the threats present during tax season.

North Korea’s Phishing Evolution

North Korea's cyber operations are rapidly evolving, as they integrate artificial intelligence into their phishing strategies. The nation has a history of targeting researchers, analysts, and academics, particularly those who monitor its activities.

The evolution towards AI-driven phishing has made these attacks faster and more credible. The Korea watcher community, small and interconnected, is particularly vulnerable to these sophisticated tactics. North Korean cyber units, including the Lazarus Group, are reportedly using AI for reconnaissance and social engineering.

Researchers have noted that detection of these phishing attempts has become increasingly difficult. The use of AI allows for tailored attacks that can manipulate targets psychologically, making it imperative for individuals to remain vigilant against potential threats.

AI in Pig Butchering Scams

Pig butchering scams are becoming more advanced with the help of AI technologies. These scams, which involve building fake romantic relationships to defraud victims, are now utilizing deepfakes and AI chatbots to create realistic interactions.

AI Scams
Image courtesy of Source Name

Deepfake technology allows scammers to conduct real-time video calls, impersonating individuals to build trust with victims. These interactions can be so convincing that even close acquaintances might not recognize them as fraudulent. The automation of communications through AI chatbots enables these operations to reach a larger audience, increasing their chances of success.

Reports indicate that the use of LLMs (large language models) has significantly lowered language barriers, allowing scammers to communicate effectively in multiple languages. This advancement opens up new markets for these scams, targeting individuals who may not be aware of such threats.

Law enforcement agencies are working to track these scams, utilizing blockchain analytics to uncover financial trails linked to pig butchering operations.

For more information about protecting against these scams, explore the services provided by undefined for comprehensive cybersecurity solutions.

Edward Zhou
Edward Zhou

CEO & Founder

 

CEO & Founder of Gopher Security, leading the development of Post-Quantum cybersecurity technologies and solutions..

Related Articles

Ransomware Attacks Target Russian Vodka and Healthcare Sectors

The Novabev Group, parent company of the Beluga vodka brand, experienced a ransomware attack on July 14, 2025, causing significant disruptions. The attack affected WineLab, the company's liquor store chain, leading to a three-day closure of over 2,000 locations in Russia. The company reported that the attack crippled its IT infrastructure, particularly point-of-sale systems and online services. Novabev Group stated, "The company maintains a principled position of rejecting any interaction with cybercriminals and refuses to fulfill their demands."

By Alan V Gutnov July 19, 2025 3 min read
Read full article

Retail Sector Faces Surge in Ransomware Attacks: A 2025 Analysis

Publicly disclosed ransomware attacks on the retail sector globally surged by 58% in Q2 2025 compared to Q1, with UK-based firms being particularly targeted, according to a report by BlackFog. This spike in attacks follows high-profile breaches affecting retailers like Marks & Spencer (M&S), The Co-op, and Harrods, attributed to the threat actor known as Scattered Spider.

By Alan V Gutnov July 19, 2025 2 min read
Read full article

AI-Driven Lcryx Ransomware Emerges in Cryptomining Botnet

A cryptomining botnet active since 2019 has incorporated a likely AI-generated ransomware known as Lcryx into its operations. Recent analysis by the FortiCNAPP team at FortiGuard Labs identified the first documented incident linking H2miner and Lcryx ransomware. This investigation focused on a cluster of virtual private servers (VPS) utilized for mining Monero.

By Edward Zhou July 19, 2025 3 min read
Read full article

Preventing ClickFix Attacks: Safeguarding Against Human Error

ClickFix is an emerging social engineering technique utilized by threat actors to exploit human error. This technique involves misleading users into executing malicious commands under the guise of providing "quick fixes" for common computer issues. Threat actors use familiar platforms and deceptive prompts to encourage victims to paste and run harmful scripts.

By Alan V Gutnov July 19, 2025 3 min read
Read full article