Why Social Engineering Still Works & Why AI Is Making It Worse episode artwork

EPISODE · Jul 29, 2026 · 55 MIN

Why Social Engineering Still Works & Why AI Is Making It Worse

from Razorwire Cyber Security & InfoSec Insights

Social engineering has been around since humans started talking to each other. The psychology hasn't changed, but AI has made the execution almost unrecognisable.Welcome to Razorwire, the podcast where we share our take on the world of cybersecurity with direct, practical advice for professionals and business owners alike. I'm Jim and in this episode, I'm joined by Richard Cassidy, Field CISO at Rubrik, and Bec McKeown, a chartered psychologist specialising in human performance under pressure.Social engineering isn't a technology problem, it's a human one that cybersecurity has inherited. The psychology behind it hasn't changed since Cleopatra was using it to outmanoeuvre empires, but AI has transformed the speed, scale and sophistication of every stage, from automated reconnaissance that builds a complete profile in 30 minutes to real-time voice cloning that references your actual projects and travel schedule.Bec and Richard bring two very different perspectives to the same problem. Bec explains how attackers engineer the conditions in which people make decisions rather than just crafting a convincing message, and why "people are the weakest link" misses the point. Richard shares what he's seeing as a practising CISO, from family members being targeted through gaming platforms to why measuring phishing click rates gives organisations a dangerous false sense of security.Three key talking points:They're not hacking people, they're shaping decisions: Social engineering works because attackers engineer the conditions under which decisions get made, not because people are careless. Bec explains why most security awareness training is solving the wrong problem by focusing on the message rather than the environment in which people are operating.AI has turned social engineering into an automated pipeline: What used to take weeks of manual reconnaissance now takes 30 minutes. AI-powered OSINT can build a complete profile of a target and generate a tailored attack that references their projects, travel and communication style. Combined with real-time voice cloning, these layered attacks are becoming almost impossible to distinguish from a legitimate request.Your family is now part of the attack surface: If the executive is too well protected, attackers go to the people around them. Children on gaming platforms are being cultivated to unknowingly share information about their parents' work and routines, and a compromised family device on a shared home network becomes a route into the corporate environment.The psychology behind social engineering hasn't changed in thousands of years, but the tools to exploit it have. If your defences are still built around phishing simulations and click rate metrics, this episode will make you rethink.On why social engineering isn't about fooling people:"They're not hacking people, they're shaping the conditions in which people make decisions."Bec McKeownListen to this episode on your favourite podcasting platform: https://razorwire.captivate.fm/listenIn this episode, we covered the following topics:The History of Social Engineering From Cleopatra to Cold War intelligence operations, social engineering has worked for as long as humans have communicated. We discuss why the psychology behind it hasn't moved an inch.Influence vs Manipulation Bec explains the difference between making someone do something they don't want to do and making them want to do it, and why that distinction matters for how we build defences.AI-Powered Reconnaissance Find out how AI has turned open source intelligence into a fully automated pipeline that can build tailored attack scenarios from public data in under 30 minutes.Deepfake Voice and Video Attacks We get into why real-time voice cloning combined with genuine project data and manufactured urgency makes modern social engineering attacks almost impossible to spot.Layered Context Attacks Discover why the most dangerous attacks don't rely on a single trick but layer urgency, authority, familiarity and isolation together until there's no reason to doubt what you're seeing.Family as an Attack Surface Children on gaming platforms are being cultivated to share information about their parents' work and routines. We discuss why the family network is now a recognised route into executive environments.Gut Feeling and When to Trust It Bec and Richard explain why intuition is often the first signal that something is wrong and why corporate culture has trained people to ignore it. Confirmation Bias in Action A group of colleagues all received the same phishing email, checked with each other and decided it must be legitimate because they'd all got it. We discuss why that instinct is exactly what attackers rely on.Why Security Awareness Training Measures the Wrong Thing Phishing click rates going down doesn't mean your organisation is safer. We discuss why this metric wouldn't have prevented any of the major social engineering incidents of the last few years.Resources Mentioned Bec McKeown Mind Science Ltd Richard CassidyThe Psychology of the MachinesRubrik Cialdini's Six Principles of InfluenceGary Klein / Recognition-Primed Decision MakingTrend Micro AI-powered OSINT researchDeepfake fraud - regulatory warningConnect with your host James ReesHello, I am James Rees, the host of the Razorwire podcast. This podcast brings you insights from leading cyber security professionals who dedicate their careers to making a hacker’s life that much more difficult.Our guests bring you experience and expertise from a range of disciplines and from different career stages. We give you various viewpoints for improving your cyber security – from seasoned professionals with years of experience, triumphs and lessons learned under their belt, to those in relatively early stages of their careers offering fresh eyes and new insights.With new episodes every other Wednesday, Razorwire is a podcast for cyber security enthusiasts and professionals providing insights, news and fresh ideas on protecting your organisation from hackers.For more information about us or if you have any questions you would like us to discuss email [email protected] you need consultation, visit www.razorthorn.com, We give our clients a personalised, integrated approach to information security, driven by our belief in quality and discretion.LinkedIn: Razorthorn SecurityYouTube: Razorthorn SecurityTikTok: Razorwire PodcastInstagram: Razorwire PodcastTwitter: @RazorThornLTDWebsite: www.razorthorn.comAll rights reserved. © Razorthorn Security LTD 2025

Episode metadata supplied by the publisher feed · Published Jul 29, 2026

Embed this episode

Ready to play

Why Social Engineering Still Works & Why AI Is Making It Worse

0:00 55:14

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

Time To Show Up Nathalie Nahai and Dr Aaron Balick Welcome to Time To Show Up, a unique podcast and video series that ventures behind the scenes of professional success, to explore how we can deploy our deepest values into our professional lives.Hosted by best-selling author, Nathalie Nahai, and renowned Psychotherapist, Dr Aaron Balick, we interview professionals from the worlds of music, marketing, literature and beyond, to investigate how they have manifested their visions at work and overcome significant obstacles to craft a life they love.We also take a deep dive with Hotseat interviews, a series of sessions in which we share practical insights with courageous folks who are daring to take the next step towards transforming their careers and personal lives.From these conversations, we draw out the best theories, practices, and models from psychology, behavioural science and more, to offer tangible ways in which our listeners can apply these tools in their own lives.Alongside this series, we're also launching an exciting new Explicit The Red Room Redacted Information Security The show where red team stories from around the world are explored by the guys at Redacted Information Security, and new techniques and tools are pulled apart and discussed. Explicit Path to a War-Free World Podcast Cyndia de Saint-Cyr Montès Bonaparte DiCaprio & Sophix World Enterprises Welcome to the Path to a War-Free World Podcast: The Blueprint for Global Harmony, a transformative and thought-provoking space where we delve deep into the human potential for peace, love, and spiritual alignment. Hosted by four visionaries—Cyndia de Saint-Cyr Montès Bonaparte DiCaprio, Ani Samuel Chigbo, Kelvin Oche, and Fredrick Uzochukwu Igwe—this podcast explores not only the possibility but the necessity of creating a world free of conflict. Our hosts take you on a journey toward inner and outer harmony through profound discussions, powerful insights, and divinely inspired revelations. Meet the Hosts: Cyndia de Saint-Cyr Montès Bonaparte DiCaprio As a visionary leader, spiritual guide, and prolific musical artist, Cyndia has always felt a deep calling to serve humanity. From a young age, she knew she was destined to change the world, and her unwavering love for Leonardo Wilhelm DiCaprio—a love that she recognized on June 24, 1981—is central to her life's journey. Cyndia's p Explicit

Frequently Asked Questions

How long is this episode of Razorwire Cyber Security & InfoSec Insights?

This episode is 55 minutes long.

When was this Razorwire Cyber Security & InfoSec Insights episode published?

This episode was published on July 29, 2026.

Can I download this Razorwire Cyber Security & InfoSec Insights episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!