BOXX Insurance, a global cyber insurtech under Zurich Insurance Group, has announced affirmative coverage for AI and deepfake-related events. This update specifically targets social engineering and security failures within the Cyberboxx® Business commercial policy. The move aims to eliminate coverage ambiguity for businesses facing increasingly sophisticated, AI-driven digital threats and advanced social engineering attacks.
Cyberboxx® Business AI Endorsement Details
The new endorsement addresses a growing "grey zone" in cyber insurance by providing explicit protection against AI-enabled incidents. This is critical as threat actors leverage deepfakes to exploit trusted relationships, potentially tricking employees into handing over credentials or misdirecting payments without a traditional system breach. Data highlights the urgency: 86% of US business leaders with cybersecurity responsibilities reported at least one AI-related incident in the last 12 months. Similarly, in Canada, 81% of businesses that experienced fraud in the past year also faced AI-enabled attacks. The policy update ensures that these evolving methods of cybercrime are formally recognized and covered.
Protecting Policy Limits Against Frequent AI Attacks
To manage the rising frequency of these incidents, BOXX is pairing this AI endorsement with its First Party Each and Every Loss feature. This mechanism reinstates the policy Aggregate Limit of Liability after each cyber incident, ensuring coverage remains available throughout the entire policy period. This is particularly relevant as AI-driven social engineering and deepfake losses increase the likelihood of multiple claims within a single term. Erik Tifft, Global Head of Underwriting at BOXX Insurance, stated that the company is continuously enhancing products to capture emerging threats, whether they occur via direct systems breaches or through advanced, human-centric social engineering tactics.
Key Takeaways
- BOXX Insurance's Cyberboxx® Business now includes affirmative coverage for AI and deepfake-related social engineering.
- In Canada, 81% of businesses that experienced fraud in the past year also faced AI-enabled attacks.
- The Each and Every Loss feature reinstates the Aggregate Limit of Liability after each incident to maintain coverage.
TechInsyte's Take
In our view, this move by BOXX Insurance signals a necessary shift from protecting technical perimeters to protecting human workflows. As deepfakes make social engineering indistinguishable from legitimate communication, traditional breach-centric policies become insufficient. By integrating "Each and Every Loss" reinstatements, BOXX is acknowledging that AI-driven attacks may be high-frequency rather than single-event catastrophes. This provides a more realistic financial safety net for enterprises navigating an era of automated, scalable deception.
Source: https://www.prnewswire.com/