WorkThe story, in brief

A Three-Minute Protocol to Reduce AI Manipulation Risk

Nobody is talking about this: AI-driven social engineering is now your biggest insider threat—and it takes 3 minutes to stop it.

Illustration of two anonymous hands arranging task cards around an amber tool on a shared desk.
People, judgement and the changing nature of work.AI illustration by KeyNews
The KeyNews take

Why it matters

As AI-powered manipulation tools become sophisticated enough to target employees at scale, corporate security strategies must evolve beyond technical controls to address cognitive vulnerabilities. This MIT research offers a practical framework for leaders to defend their workforce against personalized AI-driven persuasion attacks.

The key facts

8 to know
  1. Three overlapping security threats from AI's effects on human cognition identified

  2. Weaponized persuasion capability: personalized manipulation of employee judgment

  3. MIT Sloan research-backed protocol (3-minute implementation)

  4. Human cognition vulnerability increases with AI tool deployment

  5. Applicable to corporate insider risk and social engineering defense

  6. Weaponized persuasion attack vector via personalized manipulation

  7. MIT Sloan research on human-layer vulnerabilities in AI-era security

  8. Sub-4-minute implementation protocol suggests scalable enterprise deployment

Go to the source

MIT Sloan Management Reviewsloanreview.mit.edu

Publisher excerpt: izusek/Getty Images Of the potential weaknesses of any security system, the human layer has always posed a key risk. The arrival of AI tools has made human cognition even more of a vulnerability. Companies face three overlapping security threats from AI’s effects on human cognition. First,…
Read original report
Back to today's editionMore work news

The wider picture

View all
Illustration of independent geometric mechanisms passing paper tasks along branching amber tracks.
AI illustration by KeyNews
Work01

The Emerging M&A Map For AI Agent Security

As agents move from pilots to production with real system access, enterprise security models are breaking. The M&A map is forming around who controls agent permissions, monitoring, and governance — a new class of identity management problem that practitioners need to architect for now.

Crunchbase News
Illustration of two anonymous hands arranging task cards around an amber tool on a shared desk.
AI illustration by KeyNews
Work02

AI privacy budgets: Ask for the calculation, not the claim

Enterprise AI buyers are accepting privacy budget numbers without verification. This deep dive explains what questions to ask vendors about federated learning privacy claims, and why the gap between contractual promises and operational evidence is where real exposure lives.

CIO
Illustration of two anonymous hands arranging task cards around an amber tool on a shared desk.
AI illustration by KeyNews
Work03

Andrew Kelley Interview: Why He Built Zig, Banned AI Contributions, and Moved Zig off GitHub

Open-source governance is shifting in response to AI-generated contributions. Zig's formal ban and migration off GitHub signals broader industry concern about code quality, maintainer burden, and the cultural impact of automated submissions — a flashpoint for how AI changes the work of software development.

InfoQ AI/ML