AI-Powered Threats Are Rising in Grand Rapids...Now What?
Greg Johnson • October 24, 2025

AI-Driven Cybersecurity Threats Are Coming for Small Businesses.  Here’s How to Stay Safe (Every Month)

It’s officially Cybersecurity Awareness Month.  But let’s be honest…when you're running a small business, every month should be cybersecurity awareness month.


Why?


Because the threats are no longer just knocking at the doors of big corporations. They’re coming for businesses like yours — private practices, local schools, service-based companies, and non-profits right here in West Michigan.


And now, they’re powered by AI.


The Rise of AI-Powered Cyber Threats: What Does That Even Mean?


If you’ve been hearing a lot about artificial intelligence (AI) lately, you’re not alone. It’s powering everything from marketing chatbots to HR tools.  But it’s also being used by cybercriminals in increasingly sophisticated ways.


A recent TechRadar article breaks down how AI is being weaponized by attackers to launch faster, smarter, more targeted attacks…and it’s something we’re seeing firsthand with many of our clients here at IT Systems LLC.


Let’s make it real.


What Does an AI Cyber Threat Look Like for a Business Like Yours?


Here’s the thing: cyberattacks don’t always start with a hoodie-wearing hacker in a dark basement. More often than not, they start with a simple email, a fake login page, or a text message that looks just real enough.


With AI in the mix, attackers can now:


  • Write more convincing phishing emails (with perfect grammar and personalized details)

  • Generate fake websites that look identical to yours or your vendors’

  • Identify weak points in your system faster than ever

  • Automate attacks to target multiple businesses at once

And no, they’re not skipping over the “little guys.” In fact, smaller organizations are often the easiest targets because they don’t think they’re on the radar.


Meet Julie — And Why This Matters


Let’s say you’re Julie.


You run a small but growing dental practice in Grand Rapids. You’ve got 12 staff members, a few part-time hygienists, and hundreds of patient records in your system.


You’re focused on patient care, scheduling, and managing a busy front desk. You’re not thinking about whether your firewall is up to date or if your front desk staff could spot a phishing email.

One afternoon, someone clicks on an email that looks like it’s from your payment processor.

They enter their login credentials into a fake site.

You don’t find out for a few days... until a patient calls and says their credit card has been used to buy gift cards at Target.


What happens next?


You start fielding angry phone calls from patients.

You have to alert your payment provider and possibly your cyber insurance provider.

Your staff is confused, scared, and worried they’re to blame.

Your patients are wondering if they can trust you with their information ever again.

You didn’t do anything wrong.

But now you’re the one cleaning up the mess.



Small Businesses Are a Big Target

We’ve heard it before:


“We’re too small to be hacked.”


“We don’t have anything they’d want.”


“We’re not storing credit cards or social security numbers — we’re just a cleaning company.”


Here’s the truth:  If you use email, have a website, accept payments, or store any customer data - you are a target.


AI doesn’t discriminate. It just looks for weak links.  And small businesses often don’t have the layered security protections that larger enterprises do.


In fact, according to the 2024 Verizon Data Breach Investigations Report, over 60% of cyberattacks now target small and medium-sized businesses.


The Real Cost Isn’t Just Money — It’s Trust


Think about your client relationships.


Your reputation.


The way you build loyalty through referrals, reliability, and doing things the right way.


Now imagine all of that evaporating because of a single click.


It’s not just about downtime or recovering files.


It’s about maintaining the trust your business is built on.


Whether you’re a private practice, an HVAC company, a small charter school, or a non-profit, your community trusts you to keep their data safe.

And when that trust is broken, it’s incredibly hard to get back.



So, What Can You Do to Stay Safe?


No system is perfect, and no tool will eliminate risk completely. But the good news is: there’s a LOT you can do to dramatically reduce your risk.  And we help clients do this every day.

Let’s break it down into manageable, real-world actions:


1. Start With Cybersecurity Basics


  • Use strong, unique passwords for each system
  • Enable multi-factor authentication (MFA) wherever possible
  • Keep all software and systems up to date
  • Use antivirus and endpoint detection software
  • Back up your data regularly (off-site or in the cloud)


2. Train Your Team (Often!)


The biggest security threat in any organization is usually human error.


A staff member who clicks a bad link.  Someone who reuses a password.  An employee who falls for a fake invoice.


That’s why regular training is critical. Even 10-minute refreshers every quarter can make a difference.


At IT Systems LLC, we offer simple, non-technical training sessions tailored for small teams so your staff knows what to look for and how to respond.


3. Layer Your Security


Think of cybersecurity like layers of an onion (minus the tears). One firewall or antivirus program isn’t enough anymore.


We recommend a multi-layered approach, which may include:


  • Firewalls and secure routers
  • AI-enhanced antivirus/EDR solutions
  • Email filtering and spam protection
  • Remote monitoring and management (RMM)
  • Secure cloud storage and backups

The right mix depends on your size, industry, and how your team works (especially if they’re remote or hybrid).


4. Build an Incident Response Plan


What would you do if something did go wrong?


Having a plan — even a simple one — can help your team respond calmly and quickly.  We can help you create one that’s practical for your business, including:


  • Who to call first
  • How to shut down access
  • How to communicate with customers
  • What steps to take next


This kind of preparedness can mean the difference between a minor bump and a full-on business crisis.


5. Work With a Trusted IT Partner


Most small businesses don’t need (or want) a full-time IT department.


But you do need someone in your corner.


At IT Systems LLC, we work with Grand Rapids businesses, just like yours, providing cybersecurity services that are proactive, responsive, and realistic.


Whether you need a one-time security audit or ongoing managed support, we’ll help you build a foundation that protects your team and earns your clients’ trust.



The Bottom Line


Cybersecurity isn’t just for tech companies or hospitals. It’s for everyone...especially small businesses that often don’t realize how exposed they really are.


With AI-powered threats getting smarter by the day, now’s the time to take action.  Because trust takes years to build and seconds to lose.


Need a quick checkup on your cybersecurity setup?


Let’s start with a conversation.


We’ll review your current setup and give you clear, actionable steps to improve your protection, without overwhelming your team.


Contact IT Systems LLC today and let’s build a smarter security strategy. One that works for your business, your budget, and your peace of mind.




Wooden blocks with text
By Greg Johnson October 10, 2025
Still running on a local server? Cloud might be smarter in 2026. Learn the pros, cons, and how to decide what’s right for your business.
Man unsure, pointing at
By Greg Johnson September 26, 2025
Discover the real cost of hourly IT support vs. managed services. Learn how West Michigan businesses stay secure, compliant, and productive.
Person using laptop, with overlay of a firewall setup guide for small businesses. Blue and white color scheme.
By Greg Johnson September 12, 2025
Protect your West Michigan business with the right firewall. Learn setup steps, best practices, and how IT Systems, LLC keeps local networks secure.
Yellow background with text:
By Greg Johnson August 29, 2025
Stop paying for IT that only makes you a better customer. Learn how IT Systems, LLC helps small businesses use technology to grow, secure, and thrive.
School children using tablets at desks, smiling and engaged in classroom.
By Greg Johnson August 16, 2025
Back-to-school is the perfect time to fix what’s not working. Discover 5 signs your school’s tech needs an upgrade and how to do it without disruption.
By Greg Johnson August 1, 2025
Windows 10 support ends October 2025. Learn how Grand Rapids businesses can upgrade to Windows 11 without the stress, downtime, or big cost.
A woman is sitting at a desk with a laptop and a cell phone and frustrated.
By Greg Johnson July 18, 2025
If your business lost all its data tomorrow, would you be ready? This guide explains how to prepare, recover, and stay protected from digital disasters.
A purple background with gears and the words email phishing
By Greg Johnson July 4, 2025
It looked like a normal email—maybe a shipping update, a password reset, or even a message from “Microsoft” saying your account had suspicious activity. Your office manager clicks the link, logs in to "verify" their account, and suddenly… Boom. Your network’s compromised. And you’re looking at a $150,000 loss —on average. Sound dramatic? It’s not. It’s reality for nearly 2 out of 3 businesses that fall victim to phishing scams every year . And the kicker? These emails don’t even look suspicious anymore. Welcome to cybersecurity in 2025. Phishing emails have grown up, and they’re not wearing hoodies or sending you weird Nigerian prince messages anymore. They look like everyday work emails—and that’s exactly why they’re so dangerous. Let’s walk through what’s happening, how it can impact your small business, and what you can do to avoid becoming the next "oops" story. Not Your Grandma’s Spam Email Remember the good old days when spam emails were laughably bad? Weird grammar. Obvious typos. Strange fonts. You’d read them and think, “Who would fall for this?” Well, the scammers have evolved—and unfortunately, so have their emails. Phishing emails today are polished, professional, and scarily convincing. They look like: A Microsoft 365 login prompt (that’s fake) An invoice from a vendor you actually use A package delivery update from UPS or Amazon A calendar invite from a familiar name—just slightly misspelled Some are so well-crafted, they could pass as internal communications from your own team. And with the help of AI tools, these scammers can personalize, adapt, and automate their deception like never before. Honestly, some of these emails are written better than actual corporate memos. What’s the Big Deal? Just Ask the $150K You might be thinking, “Okay, so someone clicks a bad link… then what?” Well, here’s the “then what”: Hackers gain access to your inbox or shared drives They steal sensitive client data or financial info They launch ransomware and demand thousands to unlock your files They use your compromised email to trick your clients or team They install hidden backdoors to monitor your system for months And then there’s the fallout: Legal liability Client trust erosion Fines (especially if you’re in healthcare or finance) Business downtime A massive dent in your bank account The average financial loss from a phishing attack sits around $150,000 . For most small businesses, that’s not just a bump in the road—that’s a potential shutdown. And all of it can happen from one innocent click. Because Antivirus Can’t Fix Poor Judgment Here’s the truth: Your firewall can’t stop Becky in accounting from clicking a link she thought was from FedEx. Technology helps—but your people are the front line . They’re the human firewall. And if they’re not trained, they’ll leave the digital door wide open. That’s why training is not optional anymore. Your team needs to know: What phishing emails look like (and how sneaky they’ve gotten) What red flags to look for Why urgency is often a sign of a scam What to do if they accidentally click something they shouldn’t Let’s put it this way: if your employees can spot a fake handbag on Facebook Marketplace, they can absolutely learn to spot a fake Microsoft alert. Cybersecurity Instincts Are a Thing Phishing training isn’t about turning your staff into cybersecurity experts. It’s about developing a little thing we like to call “cyber instincts.” You know that feeling in your gut when something seems off? Like when your Uber driver looks nothing like the profile picture? That’s what we want to cultivate—digitally. Here’s how: Teach your team to pause before clicking Encourage them to hover over links to preview URLs Show them how to verify sender addresses Remind them: if it smells like panic, it’s probably a trap That’s why we offer hands-on cybersecurity training for teams right here in Grand Rapids. Whether you’ve got five employees or fifty, we help your staff build habits that stick and instincts that protect. It’s practical, judgment-free, and tailored to the real threats your business faces every day. You don’t need high-tech tools to stop phishing. You need a team that’s paying attention and trusting their gut. Introducing the “Better Safe Than Sorry” Call This is where we come in. At IT Systems, LLC, we offer a free, no-pressure consult we call the Better Safe Than Sorry Call . It’s exactly what it sounds like—a short conversation to help you: Understand where your team might be vulnerable Get practical, non-technical tips you can implement right away Learn about tools and training to keep your business safer Ask us anything you’ve always wondered about email security (yes, even the dumb questions—especially those) No jargon. No scare tactics. No sales pitch. Just a step-by-step walkthrough to help you breathe a little easier. 🛡️ Book your Better Safe Than Sorry Call here → Your Quick-Check Phishing Survival Guide Need something you can screenshot and send to your team right now? Here’s our cheat sheet: 🚩 5 Red Flags of a Phishing Email: Urgent or threatening language (“Your account will be closed!”) Unfamiliar sender or strange email addresses Generic greetings (“Dear Customer” instead of your name) Links that don’t match the sender’s domain Attachments you weren’t expecting Train your team to stop and check before they click. It’s the cheapest insurance policy you’ll ever invest in. You Don’t Need to Be a Cybersecurity Expert—Just a Little Paranoid The bad guys are counting on you to be too busy to notice. Too trusting to question it. Too distracted to double-check. But you don’t have to fall for it. Train your team. Slow down. Think twice. And when in doubt? Don’t click. Need help getting started? That’s what we’re here for. 👇 📞 Book your free “Better Safe Than Sorry” call now Because protecting your business shouldn't be a gamble.
A bat is smashing a wifi router on a table.
By Greg Johnson June 20, 2025
Discover how your office layout might be to blame for slow Wi-Fi and poor connectivity. Learn how to fix it with tips from IT Systems, LLC in Grand Rapids, MI.
A person is holding a sign that says buy local
By Greg Johnson June 6, 2025
Thinking about switching IT providers? Discover why local businesses in Grand Rapids and West Michigan are choosing IT Systems, LLC for faster response times, personalized service, and smarter tech solutions. Learn what to expect from a local IT provider—and why it’s a smarter choice than dialing a 1-800 number.
Show More