KnowBe4's AI Agents Defend Against AI-Driven Phishing and Human Risk

By Greg Tavarez

AI-generated content has brought in many great ideas across various industries. But it has also brought upon us a new era of sophistication for cybercriminals.

With the ability to craft hyper-realistic phishing emails and messages, attackers now bypass traditional security measures designed to detect and thwart social engineering attempts. This development has sparked widespread concern among cybersecurity professionals, as evidenced by a LastPass survey revealing that over 95% believe AI-generated content makes phishing detection significantly more challenging.

One of the most concerning aspects of this trend is the ease with which AI can be used to create highly personalized and targeted attacks. By leveraging vast amounts of data on individuals and organizations, attackers can tailor their messages to resonate with specific recipients, which makes them even more convincing and difficult to spot.

As a result, KnowBe4, a renowned cybersecurity platform that comprehensively addresses human risk management, recently announced a new innovative suite of AI-native security agents designed to automate and enhance human risk management: AIDA.

AIDA is a suite of agents that enhances the approach to human risk management by using multiple AI technologies to create personalized, adaptive and highly effective training for all end users that actually changes behavior.

The first four agents that have been released include Automated Training Agent, Template Generation Agent, Knowledge Refresher Agent and Policy Quiz Agent.

Automated Training Agent uses AI with 316 indicators influencing 37 factors across seven knowledge areas to analyze end users’ learning history, job role, risk score, behavior patterns and even languages so AIDA can automatically assign the most relevant and engaging content.

Template Generation Agent uses GenAI, which means AIDA creates highly realistic phishing templates that mirror current attack vectors. Social Engineering Indicators, or red flags, are based upon the NIST Phish Scale Framework.

With Knowledge Refresher Agent, AIDA delivers bite-sized knowledge refreshers at optimal intervals, ensuring end users actually apply critical security concepts. And Policy Quiz Agent allows AIDA to generate intelligent quizzes based on an organization's specific security and compliance policies.

The foundation of KnowBe4's agent suite is the SmartRisk Agent. This tool utilizes user behavior data gathered from various KnowBe4 products to assess human cyber risk. By analyzing this data, the SmartRisk Agent generates multi-faceted Risk Scores. These scores offer security professionals a clear view of potential vulnerabilities within individual users, specific groups and the entire organization.

“AIDA is not merely the next step in KnowBe4's human risk management, it is a quantum leap forward,” said Stu Sjouwerman, CEO, KnowBe4. “It offers a suite of AI-native agents that transform how security professionals approach human risk management. AIDA empowers organizations to stay ahead of AI-based cybersecurity attacks by measuring human risk scores to better understand and mitigate threats within the risk landscape.”

AIDA is available as an add-on for KnowBe4 customers with a Diamond level KnowBe4 subscription.

To learn how to take your MSP to the next level, don’t miss MSP Expo 2025. Taking place from February 11-13, 2025, in Fort Lauderdale, Florida, MSP Expo is the premier event for MSPs, offering a three-day experience combining conference education focused on growth strategies, networking opportunities, an exhibit hall full of the latest technologies and solutions to help MSPs build their businesses.




Edited by Alex Passett
Get stories like this delivered straight to your inbox. [Free eNews Subscription]

MSPToday Editor

SHARE THIS ARTICLE
Related Articles

Building a Security-First Culture: 4 Strategies That Matter

By: Contributing Writer    6/10/2026

Running a business today means dealing with more than just market competition and economic uncertainty. It also means dealing with threats, and compan…

Read More

The SOC Gap Organizations Can No Longer Afford to Ignore

By: Erik Linask    6/10/2026

ArmorPoint's new partnership with Isogent brings 24/7 SOC and SIEM capabilities into Isogent's existing services stack, giving mid-market organization…

Read More

How MSPs Help Clients Move Away From Legacy Remote Access Platforms

By: Contributing Writer    6/9/2026

Legacy remote access platforms carry costs that go well beyond licensing. Infrastructure overhead, specialist administrators, unpredictable fee struct…

Read More

For MSPs, the Future of Patching Is Not Just Faster, It's Safer

By: Erik Linask    6/8/2026

ConnectSecure's new Patch 360 platform is designed to help MSPs move beyond reactive patching with pilot-first validation, risk-based prioritization, …

Read More

ConnectSecure's Partnership with TD SYNNEX Lowers the Barrier to Entry for MSPs Building Security Services

By: Erik Linask    6/3/2026

ConnectSecure's new TD SYNNEX distribution partnership gives MSPs, resellers, and IT teams broader access to vulnerability and compliance tools throug…

Read More