GAISSF / D7
Human & Societal Harms
Domain purpose
Controls and requirements
D7-CTL-H01Ai-Generated Phishing Simulation
Reduce human vulnerability (primary attack vector).
D7-CTL-H02Deepfake Detection Training
Prevent CEO/executive impersonation fraud.
D7-CTL-H03Out-Of-Band Authentication
Prevent wire fraud via voice deepfake.
D7-CTL-H04Ai Social Engineering Ir
Enable rapid response to deepfake attacks.
D7-CTL-H05Ai-Enhanced External Attack Defense
Defend against AI-powered offensive campaigns.
Implementation use
Determine applicability using the framework scope and system context. Implementation should be proportionate to risk and supported by evidence sufficient to validate the intended outcome.