AI and Cybersecurity: the future of phishing defence

2025 marked a turning point in cybersecurity, as AI transformed both phishing techniques and the tools used to combat them, ushering in a more complex digital arms race.

In 2025, AI technology played a growing role in cybersecurity, influencing both attacker methods and defensive strategies. According to the Kaseya INKY Email Security Report, AI-generated phishing tactics became widely used in phishing attacks.

The report outlines how AI can be used to produce highly convincing and scalable phishing messages, reducing the reliability of traditional warning signs such as poor grammar, suspicious domains, and obvious links. As a result, defenders are increasingly required to assess the intent and context of emails rather than relying solely on conventional indicators.

Phishing continues to be a leading vector for cyberattacks, accounting for 26% of cybercrime-related complaints filed with the FBI and contributing to financial losses, including $2.8 billion associated with Business Email Compromise. A large proportion of these attacks—up to 82%—target organisations with fewer than 1,000 employees, indicating the exposure of small and mid-sized businesses (SMBs) to cyber threats.

The report also states that among the more than 4.5 billion emails processed by the INKY system in 2025, 281 unique brands were impersonated. Using AI-generated layouts, attackers are able to more closely replicate legitimate communications from financial and retail organisations.

AI is also being applied in defensive tools. INKY reports using generative AI-driven detection models, including intent-based labelling, multi-label classification, and computer vision techniques, to improve threat identification. These approaches are being developed alongside changes in phishing methods, such as the use of calendar invitations, protected document prompts, and callback phone numbers.

As AI continues to influence both attack techniques and security tools, organisations are increasingly adopting updated approaches to address evolving phishing activity.
Arrow Electronics has received four awards in the Broadcom 2025 Partner Awards that recognise its performance across the security ecosystem.

ThreatDown accelerates channel-first strategy

Posted 2 days ago by Phil Alsop
Nexus Partner Program launches with deal protection, margin retention, and new MDF and rebate structure.
inforcer introduces Copilot Manager to support MSPs in delivering AI services, including features related to monitoring and managing Shadow AI usage.
Guardz outlines how AI is influencing cybersecurity, with the report highlighting identity-related issues and vulnerabilities affecting MSPs, based...

Kaseya launches Agentic IT management platform

Posted 4 days ago by Sophie Milburn
Kaseya has introduced an autonomous IT management system that uses AI and unified data to support IT operations and security management.
Westcon-Comstor has integrated its value-added services into the Microsoft Marketplace, aiming to support partner operations and improve scalability.

Opus Technology achieves B Corp certification

Posted 5 days ago by Sophie Milburn
Opus Technology has earned B Corp status, joining a global community aiming for ethical and sustainable business practices.
Cisco has announced its Sovereign Critical Infrastructure portfolio targeting organisations in Europe, the Middle East, and Africa.