AI-driven scams escalate as criminals manipulate victims into giving remote access to their smartphones

Cybercriminals are increasingly exploiting AI technology and social engineering tactics to trick smartphone users into installing remote-access software, enabling them to steal personal data and funds with alarming speed and sophistication.

Scammers are increasingly targeting smartphones with a simple but devastating tactic: persuading users to install remote-access software that hands over control of the device. Once the software is in place, criminals can browse files, open banking apps, transfer money and lift personal data with alarming speed, often before the victim realises what has happened.

The method usually starts with deception. A fraudster may call pretending to be from a bank, warning of suspicious transactions or account problems and then urging the target to download an app to “verify” their identity or secure their funds. In some cases, security researchers have seen criminals disguise malicious tools as legitimate updates or trusted services, including fake Zoom and Adobe prompts that install remote-management software. According to cyber security specialists, the power of the scam lies less in technical hacking than in social engineering: the victim is manipulated into granting access.

That pressure is often intensified by urgency and fear. Universiti Sains Malaysia Cybersecurity Research Centre director Prof Dr Selvakumar Manickam has warned that scammers commonly claim a bank account has been frozen, a police matter must be resolved or an unpaid bill needs immediate attention. Newer frauds are becoming more convincing too, with artificial intelligence used to clone voices or create deepfake videos that mimic relatives or officials. Reports from Hong Kong and other markets show how AI-generated audio can be used to persuade people to send money, while other schemes have relied on counterfeit emails and fake login pages to install remote-access tools or harvest credentials.

The risk is not limited to any one country. Public awareness may be rising, but fraud continues to grow, and Malaysians have still been falling victim despite knowing about scams, according to the figures cited in the report. For anyone who suspects their phone has been compromised, the immediate advice is to disconnect it from the internet, alert the bank and report the incident to the authorities. Selvakumar also recommends resetting the device after backing up important data or having it checked by a trusted technician. Prevention remains the best defence: avoid downloading unfamiliar software, ignore unsolicited links and verify any request for access through official channels.

Disclaimer: This article is intended to inform and educate, not to recommend or endorse any financial product, investment or strategy. Please consider your own financial circumstances and seek professional advice where appropriate before making financial decisions.