X
  • About
  • Advertise
  • Contact
Get the latest news! Subscribe to the ifa bulletin
  • News
  • Opinion
  • Podcast
  • Risk
  • Events
  • Video
  • Promoted Content
  • Webcasts
No Results
View All Results
  • News
  • Opinion
  • Podcast
  • Risk
  • Events
  • Video
  • Promoted Content
  • Webcasts
No Results
View All Results
No Results
View All Results
Home News

AI is supercharging social engineering, raising risks for financial services firms

It’s easy to think of cyber security as being focused on stopping hackers purely through digital tools, however, “malware-free intrusions” are far more likely, and firms in the financial services industry are prime targets.

by Keith Ford
September 25, 2025
in News
Reading Time: 3 mins read
Share on FacebookShare on Twitter

According to global cyber security technology company CrowdStrike, 81 per cent of interactive intrusions – attacks where adversaries establish an “active presence within a target network, often engaging in hands-on-keyboard activities to achieve their objectives – were malware free over the year to 30 June 2025.

With a 26 per cent increase in intrusions over the past year, the financial services sector continues to be a target of cyber attacks, however this is far from the only motivating factor.

X

Cyber crime remains the predominant cause of intrusions, however, attacks coming from nation-state actors grew 80 per cent year-on-year, while e-crime saw a 10 per cent increase.

Speaking with ifa, Fabio Fratucello, CrowdStrike field chief technology officer world wide, said financial institutions are a major target for all types of threat actors.

“I’m not going to say e-crime is disappearing, but e-crime was already high in the previous year, and what effectively metrics are telling us is that both nation-state and crime have an interest in targeting financial institutions,” Fratucello said.

“If you think about it, usually financial institutions hold a lot of extremely valuable information in terms of both data and IP, as well as they are an amazing target and from an adversary perspective.”

He explained that the rise of malware-free intrusions has come as a result of stronger barriers at the endpoint.

“They were targeting the endpoint … where you have user interaction, people typing on a keyboard, and code execution, so you can exploit the interconnectedness of the human and the machine together,” Fratucello said.

“What threat actors do – they have KPIs and return on investment – is there an easier way to make the same money? And the answer is, let’s look at the identity. Identity today is the new perimeter.

“We need to bring a detection and response and a prevention lens into the identity domain.”

He added that these social engineering-type intrusions are utilising generative AI tools to create more convincing versions of standard methods.

“Social engineering is extremely prevalent and that really leads into an identity-based type of attack,” Fratucello said.

“When we look at the effectiveness of a social engineering attack, think of an email or a text or a combination, when generated through a GenAI tool, the click-through rate, which is that the effectiveness that is measured in cyber security, is significantly higher than human generated.”

According to Fratucello, the main takeaways for advice firms and any other financial services business are largely around securing identities.

“We go back to identities. Have good capabilities at the identities, secure them, have prevention, detection and response capabilities in place. You need to be able to defend your cloud environment,” he said.

“Think of a house: you need to secure the door, you need to secure the window, you need to have cameras outside all of the different components. They’re actually technical capabilities that secure a specific element within the cloud.”

One way of doing this, Fratucello explained, is to ensure that you are utilising a modern defensive solution.

“We know they’re using AI. Guess what? AI is just a technology,” he said.

“AI works extremely well from a defensive standpoint as well, so embrace AI, embrace the AI security capabilities that are available today, that are getting developed for tomorrow, because that is going to retake the advantage in terms of speed, in terms of consistency, in terms of taking out human error from the adversary.”

Related Posts

How mapping client emotions can transform apprehension into trust

by Keith Ford
November 11, 2025
1

Clients undergo a range of emotional responses throughout the advice process and, according to new financial adviser-led research, advisers’ ability...

Iress launches business efficiency program for FY26

by Olivia Grace-Curran
November 11, 2025
0

The financial services software firm said its renewed focus on core platforms, technology investment and client engagement reflects a leaner,...

Regulator updates guidance for exchange-traded products

by Shy-ann Arkinstall
November 11, 2025
0

ASIC has released a new regulatory guide for exchange-traded products that consolidates previous guidance as the ETF market undergoes significant...

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

VIEW ALL
Promoted Content

Private Credit in Transition: Governance, Growth, and the Road Ahead

Private credit is reshaping commercial real estate finance. Success now depends on collaboration, discipline, and strong governance across the market.

by Zagga
October 29, 2025
Promoted Content

Boring can be brilliant: why steady investing builds lasting wealth

Excitement sells stories, not stability. For long-term wealth, consistency and compounding matter most — proving that sometimes boring is the...

by Zagga
September 30, 2025
Promoted Content

Helping clients build wealth? Boring often works best.

Excitement drives headlines, but steady returns build wealth. Real estate private credit delivers predictable performance, even through volatility.

by Zagga
September 26, 2025
Promoted Content

Navigating Cardano Staking Rewards and Investment Risks for Australian Investors

Australian investors increasingly view Cardano (ADA) as a compelling cryptocurrency investment opportunity, particularly through staking mechanisms that generate passive income....

by Underfive
September 4, 2025

Join our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

Poll

This poll has closed

Do you have clients that would be impacted by the proposed Division 296 $3 million super tax?
Vote
www.ifa.com.au is a digital platform that offers daily online news, analysis, reports, and business strategy content that is specifically designed to address the issues and industry developments that are most relevant to the evolving financial planning industry in Australia. The platform is dedicated to serving advisers and is created with their needs and interests as the primary focus.

Subscribe to our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

About IFA

  • About
  • Advertise
  • Contact
  • Terms & Conditions
  • Privacy Collection Notice
  • Privacy Policy

Popular Topics

  • News
  • Risk
  • Opinion
  • Podcast
  • Promoted Content
  • Video
  • Profiles
  • Events

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited

No Results
View All Results
NEWSLETTER
  • News
  • Opinion
  • Podcast
  • Risk
  • Events
  • Video
  • Promoted Content
  • Webcasts
  • About
  • Advertise
  • Contact Us

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited