News

Dalla copia alla generazione: come gli LLM cambiano l’economia del phishing e la difesa delle pagine di login

Individuare una pagina contraffatta, oggetto di phishing, che imita una schermata di login è stato per anni un compito basato su due premesse: si analizzava il codice sorgente e si contava sul fatto che allestirla richiedesse una bassa manualità tecnica. 

Large Language Models (LLM) hanno smontato entrambe: oggi un prompt in linguaggio naturale è sufficiente per ottenere una schermata di login credibile, senza disporre dell’originale né saper scrivere una riga di codice. 

Nel nuovo studio AI4Cyber of Cyber Studios di T-Defence esaminiamo questa trasformazione attraverso quattro leve che agiscono in modo sinergico: 

  • scala: la centesima variante non costa più della prima; 
  • personalizzazione: lingua, tono e aspetto adattati al singolo bersaglio senza penalizzarne il volume; 
  • mutazione: l’output non deterministico rende ogni replica un esemplare unico nel codice, indebolendo le difese basate su firme; 
  • abbassamento della barriera tecnica d’ingresso: allarga e rende meno prevedibile il numero di attori che può tentare un’operazione.   

Il riconoscimento di queste pagine non può più affidarsi al solo confronto mediante cataloghi di firme note, ma dovrebbe spostarsi sull’osservazione dei comportamenti, come ad esempio i pattern con cui un’infrastruttura preleva risorse o l’intento che un’applicazione manifesta. 

Mentre il rischio riguarda ormai anche l’ampia platea di dispositivi connessi, e non solo i grandi marchi, delle contromisure efficaci già esistono e agiscono su più livelli: dall’autenticazione resistente al phishing alla progettazione più attenta dei sistemi coinvolti.  

If you wish to learn more, here is the link to our comprehensive study.

In addition, you can subscribe to the specific mailing list Cyber Studios by T-Defence, to receive updates on upcoming research: 

https://t-defence.it/mailing-list-cyber-studios/ 

Share:

Degree in Business Administration from the University of Naples 'Federico II' with an MBA in Business Management achieved with high merit in 2008 by winning a scholarship provided by Invitalia S.p.A. from which she was selected in the first months of attendance as the best MBA profile.

After a brief experience in Invitalia S.p.A., he immediately held increasingly important roles in the management of Administration, Finance and Control of companies operating in the defence sector, theInformation Technology, of Cyber and National Security. In addition, she was Treasury Manager in companies operating in theEnergy.

He obtained an Executive Master in Finance (EMF) at SDA Bocconi in 2020, with a specialisation in Corporate Finance & Control and, in 2022, a further specialisation track in Asset, Wealth Management also at SDA Bocconi.

For over five years it has been the Chief Financial Officer of the Defence Tech Group, whose listing process he followed on the Euronext Growth Milan segment of Borsa Italiana.

From 2017 to 2024, she was a member of the boards of directors of all the legal entity of the Defence Tech Group with delegated powers over their financial management and from October 2021 to October 2024 was a Board Member of the Holding Company.

It is currently also Investor Relations Manager of the listed Defence Tech and follows all ESG issues of the Group.

In July 2021, she was recognised by Federmanager as one of the best talents under 44 at national level, receiving an important award as Young Manager 2020.