Nation-State Threat Actors Incorporate AI to Streamline Attacks
ID: 20c093de-568d-5206-bb1f-81c24bc6c08a
STIX ID: report--20c093de-568d-5206-bb1f-81c24bc6c08a
Feed Name: KnowBe4 Blog
Google Threat Intelligence Group (GTIG) reports that nation-state actors have integrated large language models (such as Gemini) and other generative AI into their operations to automate reconnaissance, create culturally nuanced, hyper-personalized and multi-turn phishing lures, and abuse public sharing features of AI services to host ClickFix social engineering content that tricks users into pasting malicious commands; GTIG observed this campaign in early December 2025 and noted adversaries bypassing safety guardrails.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
