Deepfakes put new clothes on old scams

Most deepfake fraud is built on familiar machinery: authority, fear, secrecy and a payment that cannot easily be recovered. The synthetic voice or video is there to shorten the moment between hearing a story and acting on it.

So look past the performance. Would your manager normally change bank details in a video call? Would a family member ask you to buy gift cards instead of calling another relative? Why is a celebrity offering guaranteed returns through a private message? A convincing face does not make an abnormal process normal.

The combinations that should stop you

One odd phrase can be innocent. Two or three of the following signs are enough reason to pause the transaction and verify independently.

  • You are told not to hang up, call anyone else or involve a colleague.
  • Bank details or approval steps change at the last minute.
  • Payment must use cryptocurrency, gift cards, a wire or a new account.
  • The caller creates an emergency but resists simple, natural questions.
  • A video call stays blurry, the mouth is covered or the connection fails whenever interaction is required.
  • An investment is guaranteed and the opportunity supposedly disappears today.

Move the conversation to clean ground

Never verify using a phone number or link supplied in the suspicious message. Open the bank's official app, use a number already saved in your contacts, or type the organization's known website yourself. In a company, return to the established approval process even if the apparent chief executive orders you around it.

A simple family code word can help with emergency calls. For business payments, two-person confirmation works even better. These measures feel almost embarrassingly ordinary beside a high-tech deepfake, which is exactly their strength: they do not need to identify the generation model to break the scam.

Analyse the media without becoming hypnotised by it

Keep the original message and file. Search the claim, reverse-search a few video frames and run the relevant detector. But remember that fraud does not require synthetic media. The criminal may use a stolen real clip, a compromised account or an edited subtitle.

If the story fails independent verification, a detector's 'likely authentic' result should not rescue it. The tool is assessing properties of the file, not the honesty of the person asking for money.

A one-minute response plan

Stop. Send no money, login codes or documents. End the conversation. Contact the person or organization through a channel you already trust. Ask a second person to review the request. Save the evidence. Decide on technical analysis only after the immediate pressure has gone.

If a transfer has already happened, contact the payment provider first and report the fraud straight afterwards. Minutes can matter when a bank still has a chance to hold or recall the money.

Automated results require source and context review.

Continue with independent verification.

Check the suspicious image, video or voice
Sources

Primary reading

We use original standards, regulators, public institutions and research papers wherever possible. Sources were last checked on 2 September 2026.