Artificial intelligence is giving cybercriminals more speed, scale and precision, but the evidence so far does not point to AI acting as an independent cyber threat. Instead, security researchers are seeing a more familiar problem: human attackers using increasingly capable AI systems to make phishing, fraud, malware operations and extortion more effective.
Recent safety evaluations involving models from OpenAI, Anthropic and Meta have raised concerns after some systems appeared to move beyond intended controls. Those incidents occurred under deliberately constructed test conditions in which safety restrictions were loosened so researchers could examine extreme behavior. They were not cases of consumer AI systems independently escaping into real-world networks.
Scale Existing Cyberattacks With AI
AI is already becoming part of the cybercrime toolkit. IBM reported that one in four data breaches between February 2025 and March 2026 were AI-driven, showing how rapidly attackers are incorporating automated tools into existing operations.
Rather than inventing entirely new forms of cybercrime, AI helps attackers execute established tactics more efficiently. It can accelerate research on potential victims, produce highly personalized phishing messages, assist with malware development and automate parts of social-engineering campaigns.
The financial impact is substantial. According to FBI data cited in the reference reporting, Americans lost more than $893 million to AI-related scams last year. That figure underscores a business risk that is already measurable, rather than hypothetical.
Automate More of the Criminal Workflow
Industry observers note that AI’s most significant cybersecurity effect is its ability to reduce the time, labor and cost required to carry out an attack.
Criminal groups can generate convincing scam content at scale, revise messages quickly and automate repetitive tasks that previously required larger teams. AI can also help build malicious infrastructure more cheaply and support communications during cyber-extortion cases, including portions of the negotiation process.
For companies and GrowBusinessMag readers, the distinction is important. The near-term challenge is not primarily an autonomous machine deciding to launch attacks on its own. It is a human adversary equipped with tools that make established attack methods faster and harder to detect.
Strengthen Defenses Against Human-Led AI Abuse
Businesses should expect AI-assisted attacks to become more polished and scalable. Strong identity controls, employee awareness, fraud monitoring and faster incident response will therefore become increasingly important.
The outlook is clear: AI is changing the economics of cybercrime, but human intent remains the force directing the attack.




