AI vs Scammers: CommBank's Bold Move

How Australia's top bank uses AI bots to trap scammers and protect customers in real-time

AI of the Tiger Newsletter

🐯 AI OF THE TIGER 🐯

September 9, 2025

TL;DR:CommBank deployed thousands of AI-powered "fake people" to waste scammers' time and steal their playbooks. Result? Hundreds of thousands of scam calls diverted and real-time intelligence that stops fraud before it hits customers. This is cyber warfare, Australian-style.

🎯 AI IN ACTION

Background & Origin

CommBank's AI bot initiative is a pioneering collaboration with Apate.ai, a cyber-intelligence firm spun out from Macquarie University's Cyber Security Hub. What started as a pilot in late 2024 with federal support has rapidly scaled to thousands of AI-powered bot profiles. This marks a rare transition from academic research to a full-scale, operational anti-fraud solution in the financial sector.

What Are the AI-Powered Bot Profiles?

These are not ordinary chatbots. Each Apate.ai bot is a highly sophisticated, conversational AI agent designed to convincingly mimic real people in both voice and text interactions. Their purpose: to engage scammers, waste their time, and extract actionable intelligence.

Key features include:

  • Diverse Identities: Each bot is uniquely crafted with its own persona—varying in age, gender, tone, and even backstory.
  • Cultural Authenticity: Bots are fine-tuned with Australian slang, humor, and conversational quirks, making them indistinguishable from real Australians.
  • Realism: The bots are engineered to sustain long, believable conversations, making it extremely difficult for scammers to detect they're not speaking to a real person.
"We've designed our bots to be difficult to detect by scammers, making them incredibly effective at gathering intelligence and disrupting scam operations." - Professor Dali Kaafar, CEO & Founder of Apate.ai
🎬 See an AI Bot in Action

Watch how a CommBank AI bot keeps a scammer engaged in conversation, demonstrating the sophisticated conversational abilities that make these bots so effective.

Watch AI Bot vs Scammer Call

How It Works: The "Honeypot" Strategy

The system is built on a classic cybersecurity honeypot model, but at national scale. Professor Kaafar explains:

"Our system is based on a 'Honeypot' strategy... When a scammer dials or messages one of these numbers, they actually engage in conversations with one of our AI-powered bots and not a person." - Professor Dali Kaafar

Here's how this digital sting operation unfolds:

  • Network of Decoy Phone Numbers: In partnership with telcos, Apate.ai operates a vast and growing pool of dedicated phone numbers, designed to be discovered and targeted by scammers.
  • Scammer Engagement: When a scammer calls or texts one of these numbers, they're connected to an AI bot, not a real victim.
  • Extended, Realistic Conversations: The bot engages the scammer, keeping them occupied and extracting information about their methods, scripts, and targets.
  • Real-Time Intelligence Gathering: Every interaction is analyzed for new scam tactics, impersonated organizations, and emerging threats.
  • Intelligence Loop: Insights are fed directly into CommBank's fraud detection systems, enabling near real-time updates to scam prevention protocols.

Impact & Results

  • Hundreds of thousands of scam calls diverted since launch
  • Disruption of scammer operations by tying up their time and resources
  • Near real-time threat intelligence enables proactive scam prevention
  • Intelligence shared with telcos, tech companies, and government agencies
"This is about flipping the script. Scammers are increasingly using AI to target Australians – we're turning the tables by using AI to fight back." - James Roberts, General Manager of Group Fraud at CommBank

Additional Technical & Operational Insights

  • Proactive, not just reactive: Shifts from blocking known scams to disrupting and pre-empting new threats
  • Predictive intelligence: Anticipates and blocks emerging campaigns before they reach customers
  • Cross-sector collaboration: Success hinges on partnerships across banking, telecommunications, academia, and government
"In the fight against scams, timing is everything. Our intelligence gives organisations like CBA the edge, not just to detect scams, but to anticipate and block it before it reaches customers." - Professor Dali Kaafar

🐯 Tiger Takeaway:

CommBank's AI-powered bot army demonstrates that the best defense can be a good offense. By proactively engaging scammers, gathering real-time intelligence, and sharing insights across sectors, organizations can transform from targets into hunters. The lesson: AI, when combined with cross-industry collaboration and cultural authenticity, can fundamentally shift the balance of power in the fight against cybercrime.

Sources: Apate.ai, CommBank Press Release, Macquarie University

Questions or feedback? Just reply to this email—we read every message.

Want to browse past issues?Visit our website for the full newsletter archive.

Has this newsletter been forwarded to you?Click here to subscribe

AI Insights for Business Leaders

🤖

AI-Powered Newsletter

This newsletter is generated through an AI automation system featuring specialized Research, Writer, and Publisher agents. Each agent utilizes advanced tools for content discovery, analysis, and formatting. Human oversight is maintained at every step to ensure quality, accuracy, and editorial standards.

/