- Microsoft report shows criminals weaponising artificial intelligence.
- Create sophisticated scams that have attempted to steal billions.
- Tech giant blocked $4 billion in fraud attempts last year.
You’ve likely received that too-good-to-be-true job offer in your inbox: a remote position with a prestigious company offering substantial pay for minimal experience. What once might have been a suspicious email with poor grammar and generic templates has evolved into something far more convincing.
Today’s AI-crafted scams feature professionally designed websites with employee testimonials, authentic-looking company histories, and video interviews with seemingly real recruiters. The red flags only appear at the final moment – when they request banking details for “payroll setup” before signing any contract.
This is the new face of cybercrime, where artificial intelligence has made deception nearly indistinguishable from reality. The scenario is becoming increasingly common according to Microsoft’s latest Cyber Signals Report, which reveals how AI fraud prevention has become a priority as cybercriminals adopt sophisticated technologies.
Last year, Microsoft thwarted US$4 billion in fraudulent attempts and blocked approximately 1.6 million bot signup attempts every hour, highlighting the scale of criminal operations. The ninth edition of Microsoft’s Cyber Signals, titled “AI-powered deception: Emerging fraud threats and countermeasures,” details how artificial intelligence has lowered barriers to entry for cybercriminals. Tasks that previously took scammers days or weeks to accomplish can now be executed in minutes, making AI fraud prevention measures more important
.
The democratisation of cybercrime
“AI has started to lower the technical bar for fraud and cybercrime actors looking for their productivity tools, making it easier and cheaper to generate believable content for cyberattacks at an increasingly rapid rate,” the report states.
The accessibility to advanced fraud capabilities has created a change in the cybersecurity landscape. Modern scammers use AI tools to scrape the web for company information, construct detailed profiles of potential targets, and create highly convincing social engineering lures.
Bad actors turn increasingly to building entire fake ecosystems, including AI-enhanced product reviews and fully realised AI-generated storefronts with fabricated business histories and customer testimonials.
Kelly Bissell, corporate vice president of anti-fraud and product abuse at Microsoft Security, warns that the problem is escalating. “Cybercrime is a trillion-dollar problem, and it’s been going up every year for the past 30 years,” she says. “I think we have an opportunity today to adopt AI faster so we can detect and close the gap of exposure quickly. Now we have AI that can make a difference at scale and help us build security and fraud protections into our products much faster.”
According to Microsoft’s anti-fraud team, attacks happen globally, with significant activity originating from China and Europe. In the latter, the problems stems particularly from Germany, as it is one of the European Union’s largest e-commerce markets. The larger a digital marketplace, the more likely it will attract proportional levels of fraud attempts.
E-commerce and job recruitment scams lead the charge
Two areas particularly affected by AI-enhanced fraud are e-commerce and job recruitment.
In the e-commerce space, fraudulent websites can now be generated with minimal technical knowledge. Sites often mimic legitimate businesses, using AI-generated product descriptions, images, and customer testimonials to deceive consumers. AI-powered customer service chatbots can interact convincingly with customers, delay chargebacks by stalling with scripted excuses, and manipulate complaints with generated responses.
For job seekers, the problem is that generative AI has made it easier for scammers to create fake listings on employment platforms. Criminals generate fake recruiter profiles with stolen credentials, fraudulent job postings with AI-generated descriptions, and sophisticated email campaigns designed to phish personal information.
“Fraudsters often ask for personal information, like resumes or even bank account details, under the guise of verifying the applicant’s information,” the report warns. Red flags to be aware of include unsolicited job offers, requests for payment, and little use of formal communication platforms.
Strengthening AI fraud prevention measures
To combat the evolving threats, Microsoft promotes Defender for Cloud, threat protection for Azure resources, while the Edge web browser features website typo protection and domain impersonation protection using deep learning.
The company says it’s also enhanced Windows Quick Assist with warning messages to alert users about potential tech support scams. Microsoft now blocks an average of 4,415 suspicious Quick Assist connection attempts daily, representing approximately 5.46% of global connection attempts.
“Microsoft maintains a continuous effort to protect its platforms and customers from fraud and abuse,” the report says. As part of its Secure Future Initiative (SFI), it’s introduced a new fraud prevention policy in January 2025 requiring product teams to perform fraud assessments and implement controls during the design process.
As these AI-powered scams evolve, consumer vigilance remains essential. Microsoft advises people to be cautious of urgency tactics, verify website legitimacy before making purchases, and never provide personal or financial information to unverified sources.
Enterprises are urged to implement multi-factor authentication and use deepfake detection algorithms to help mitigate against these types of emerging risks.
Author
View all postsDashveenjit is an experienced tech and business journalist with a determination to find and produce stories for online and print daily. She is also an experienced parliament reporter with occasional pursuits in the lifestyle and art industries.