Why the old phishing training is obsolete after deepfake attacks
July 2, 2026
Why the old phishing training is obsolete after deepfake attacks
Resource constraints remain one of the biggest cybersecurity challenges facing state and local governments, and artificial intelligence is making the problem more difficult by enabling lower-skilled threat actors to launch more convincing phishing and social engineering attacks. In this episode of the Future of Threat Intelligence podcast, Rose, Vice President of Security Operations and Intelligence at the Center for Internet Security (CIS), discusses how community defense, foundational security controls, and human verification can help organizations stay resilient as phishing and deepfake threats evolve. Rose highlights the importance of prioritizing CIS Implementation Group 1 safeguards, mapping defenses to top MITRE ATT&CK techniques, moving beyond traditional phishing awareness training, and strengthening verification processes to reduce the risk of AI-enabled attacks.