Which of the following best describes how GenAI has changed the 'attacker skill floor' for creating convincing spear-phishing emails compared to pre-2022 methods?
- A.GenAI has not materially changed phishing email quality; human-written spear phishing was already highly convincing
- B.GenAI makes phishing easier to detect because AI-generated text has consistent stylometric patterns that email security tools can flag, since LLM-written phishing keeps fixed telltale phrasing
- C.GenAI phishing is only effective against non-English speakers who cannot detect grammatical errors in English
- D.GenAI allows attackers with no writing expertise to produce grammatically perfect, culturally appropriate, and contextually personalized phishing emails at scale, reducing the time from target identification to campaign launch from days to minutes
Why D is correct