BSides San Antonio 2026 June 13 at St. Mary's University LLM-assisted phishing isn't theoretical anymore. I built a methodology for it at TrustedSec that turned into a billable service. This talk walks through how it works in practice — pretext writing, target research, content generation — using a real engagement with a national enterprise client as the example. I'll cover where the LLM tooling actually helps, where it struggles and requires real operator competency, and what defenders should change.