Back to Blog class="article-body"> Back to Blog

Deepfakes have moved out of research labs and political disinformation and into everyday fraud. A finance employee in Hong Kong was convinced by a realistic AI video conference call — featuring a convincing simulacrum of his company's CFO — to wire $25 million to criminal accounts[1]. Voice clone technology now requires as little as three seconds of audio to replicate someone's voice convincingly enough[2] to fool people who know them well. AI-generated profile photos are used in romance scams, fake job listings, and corporate impersonation. Knowing what to look for is not optional anymore. It is a basic literacy skill for anyone who interacts with digital media.

This article breaks down the specific tells — visual, audio, and behavioral — that AI-generated content leaves behind, and gives you the tools to verify what you're seeing before you act on it.

$25M Lost in a single deepfake video-call fraud, Hong Kong South China Morning Post, Feb 2024 ↗
10× Increase in deepfakes detected globally, 2022 to 2023 Sumsub Identity Fraud Report[3] ↗
3 sec Of audio needed to clone a human voice with AI tools McAfee Artificial Imposters, 2023 ↗
2022 Year the FBI issued its first formal deepfake employment fraud warning FBI IC3 PSA, Jun 2022 ↗

This article is about being targeted — a call, a message, a video meeting where someone wants something from you. If instead you have come across a video or photo online and want to know whether it is real before you pass it on, that is a different problem with a different answer, and it is over here.

Start here: you cannot tell by looking, and neither can anyone else

Every version of this advice used to begin with what to watch for. That approach is finished, and the measurements are not close.

A pre-registered study of 1,276 people, published in Communications of the ACM, put ordinary people in front of real and synthetic media[5]. Mean accuracy was 51.2%. On images alone it was 49.4% — slightly worse than a coin toss. People were right 64.6% of the time about genuine material and only 38.8% about synthetic material, because the reflex is to assume things are real.

Familiarity did not help: people who called themselves highly familiar with AI scored 51.9%, the unfamiliar 51.1%. One thing did move the number, and the authors are blunt about it — older participants performed worse, most sharply on audio and audiovisual material. The conclusion is worth quoting exactly:

"it is no longer feasible to rely on the perceptual capabilities of people to protect themselves against the growing threat of weaponized synthetic media, and that the need for alternative countermeasures is more critical than ever before."

The tells that used to be taught have expired on their own schedule. Malformed hands are still common but were never evidence of the reverse. Unnatural blinking was solved years ago. And the audio advice aged worst of all: readers were told AI voices don't breathe, while the vendors now document adding breath on request — ElevenLabs' own help page says "you can use audio tags such as [sighs] or [exhales] to add breathing and similar reactions to generated speech."

So this article does not teach you to listen harder. Everything below works whether the voice is real, cloned, or a stranger — because none of it depends on you telling the difference.

The procedure: hang up, then call back on a number they never gave you

One rule, three parts. End the call yourself. Find a number they had no way to control. Call that. Every step below protects one of those three.

1. Hang up first. Don't explain, don't argue, don't verify with them.

You owe a cold caller nothing — not politeness, not an explanation, not one more moment. Staying on the line to "just check something" is the whole trick, and there is no question you can ask that a prepared caller has not already got an answer to. Never let them keep you on while you look something up. Never accept a transfer to the fraud team, the police, or a supervisor.

2. Get a number from something you already own.

Not from the call, the caller ID, a voicemail, an email, a text or a link — those are all things the caller chose for you. The FTC is explicit: "Don't trust your caller ID. Your caller ID might show the government agency's real phone number or name — like 'Social Security Administration.' But caller ID can be faked."[6]

3. Take a minute before you dial.

Urgency is the product. The bank, the warrant, the grandchild — every version is built to stop you pausing, because a pause is where it falls apart. Nothing real is ruined by ten minutes.

On a landline, hanging up may not be enough. The caller can hold the line open after you put the handset down, then play a recorded dial tone so your next call seems to connect. You dial your bank and reach the same people. Consumer Protection BC documents them changing voices, or handing you to an accomplice, to sell it[7]. The reason is mundane: "the person who initiates a call on a landline has to end the call for the other person to be able to dial out again."

So on a landline, use a different phone — a mobile, or a neighbour's. If you have no other phone, wait several minutes and call someone you know first; if you reach them, the line is clear. Mobiles disconnect properly and are not affected.

What no real caller ever does

Behavioral Red Flags — What the Attacker Is Asking You to Do

Technical tells become less reliable as generation quality improves. Behavioral patterns are far more durable — because the goal of a deepfake attack is to get you to do something, and that goal creates predictable behaviors regardless of how convincing the media is.

"Hi, it's Dad. I'm in an emergency situation — I can't talk long. I've been in an accident, my phone is damaged, I'm using someone else's phone. I need you to send $800 via Zelle right now, I'll explain everything later. Please don't call the family, I don't want to worry everyone. Can you do it now?"

This script — or close variants — is used in what the FTC calls "family emergency scams,"[4] increasingly paired with AI voice cloning of the supposed family member's voice.

▲
Urgency + money request in the same communication. Legitimate emergencies involving family do not require you to wire money to an unfamiliar account within minutes. The pressure to act before you can think is by design.
▲
Request to not verify through other channels. "Don't call your brother, it'll worry him" or "I can't have you calling the hospital right now" are manufactured reasons to prevent you from calling a known number and confirming the situation independently.
▲
Refusal to appear on video or switch platforms. A deepfake voice caller cannot show their face live and unscripted. Requests to keep communication on voice only, especially with technical excuses ("my camera is broken"), are a warning sign.
▲
Inability to answer personal verification questions. Ask something only the real person would know — a family memory, a pet's name, a shared private experience. Voice clone systems cannot generate correct answers to questions the attacker doesn't know.
▲
Payment method specificity. Requests for wire transfer, gift cards, cryptocurrency, or Zelle are chosen because they are difficult to reverse. Legitimate urgent situations don't require you to buy Amazon gift cards.
▲
Contact through an unexpected or unfamiliar channel. Receiving a distress call from an unfamiliar number, a LinkedIn message from an unusual email address, or a WhatsApp message claiming to be from a known contact is a structural red flag — attackers can't use the real person's established channels.
▲
Extreme story inconsistencies. AI attackers research targets but imperfectly. The "CFO" in a business email compromise may not know a project name. The "family member" may not remember what city they supposedly live in. Probe with specific details and watch for vagueness.

Set this up before you need it

All of this works better if it is already decided, because the moment it matters is the moment you are least able to think.

The institutions that carry this risk professionally have already made the switch. J.P. Morgan states the reason plainly — people identify deepfake video correctly only about 40% of the time — and draws the conclusion that matters: "Verifying a directive, even one that appears to come from the CEO, is not just acceptable but expected."[8] U.S. Bank's guidance contains no perceptual tells at all. After losing $25 million, Arup's chief information officer recommended rehearsing the response rather than training the eye.

Verifying is not rudeness and it is not paranoia. It is the procedure — and unlike every trick for spotting a fake, it does not stop working when the fakes get better.

What to Do When You're Not Sure

✓
Slow down deliberately. The most effective defense against deepfake fraud is time. Urgency is manufactured. If anyone — a caller claiming to be a family member, a CEO in a video message, a government official in a social post — is creating pressure to act immediately, that pressure is the attack. Take the time to verify.
✓
Call back on a known number. Never call back on the number that contacted you. If a family member calls in distress, hang up and call their actual phone number from your contacts. If a company calls you, hang up and call the main number from the company's official website. This simple step defeats most voice clone attacks.
✓
Establish a family code word. Choose a word or phrase that only your family knows, and agree to use it to verify identity in any suspicious emergency communication. A voice clone cannot produce a code word the attacker doesn't know. This is recommended by the AARP Fraud Watch Network.
✓
Run the four-second video call test. In any video call where identity matters, ask the person to do something unrehearsed — turn their head slowly to the side, hold up a specific object, or perform a simple physical action. Current real-time deepfake systems degrade visibly during unexpected movements and object interaction.
✓
Use a verification tool before sharing or acting. Before forwarding any image or video that seems significant or shocking, run it through Google Reverse Image Search and one AI detection tool. This takes 60 seconds and catches a substantial proportion of synthetic media in active circulation.
✓
Look for C2PA watermarks on trustworthy content. The Coalition for Content Provenance and Authenticity (C2PA) is developing a technical standard for cryptographic content credentials that certify the origin and editing history of media. Major camera manufacturers, Adobe, and some news organizations are implementing this. An image or video with verified C2PA credentials is significantly harder to fake.
✓
Ask the right questions about the content itself. Who benefits from you believing this? What would you need to do if it were true? Why is this reaching you this way, at this time? The answers to these questions reveal a lot about whether content is legitimate or manufactured.

If You've Been Targeted

If you've sent money, shared personal information, or been manipulated by content you now believe was AI-generated, act quickly — not to recover the money (which is often unrecoverable) but to document and report, which helps track and potentially stop the operation targeting others.

→
Report to the FTC at reportfraud.ftc.gov. Fraud reports feed into the Consumer Sentinel Network used by law enforcement.
→
File an IC3 complaint at ic3.gov — the FBI's Internet Crime Complaint Center. There is no minimum — IC3 accepts complaints at any value, and filing is what triggers the FBI’s recovery process for wire transfers.
→
Call your bank immediately if a wire transfer was involved. Some international transfers can be recalled within 72 hours if reported fast enough — call, do not email.
→
Contact the AARP Fraud Helpline at 877-908-3360 — available to all ages, not only AARP members. Staff are trained specifically on AI fraud schemes and can advise on next steps.
Conclusion
The tells are real. The defense is learnable.

Deepfake quality will continue to improve, and some of the specific visual artifacts described here will eventually be resolved by better generation systems. But the behavioral patterns of deepfake attacks — urgency, financial pressure, manufactured reasons to avoid verification — are structural features of the fraud, not features of the technology. Those won't change.

The most durable protection isn't a detection tool. It's the habit of slowing down before acting on anything that arrived unexpectedly, claimed to be urgent, and asked you to do something you'd normally verify. A phone call, a code word, an extra 90 seconds — these are not inconveniences. They are the difference between a close call and a $25 million wire transfer.

Sources and References
[1]
South China Morning Post — "Everyone looked real: multinational firm's Hong Kong office loses HK$200 million after scammers stage deepfake video meeting," Feb 2024.
scmp.com
[2]
McAfee — "Artificial Imposters: Cybercriminals Turn to AI Voice Cloning," 2023. Voice cloning from roughly three seconds of audio.
mcafee.com
[3]
Sumsub — Identity Fraud Report, 2023. Tenfold increase in detected deepfakes, 2022 to 2023.
sumsub.com
[4]
Federal Trade Commission — "Scammers use AI to enhance their family emergency schemes," Mar 2023.
consumer.ftc.gov
[5]
Cooke, D., Edwards, A., Barkoff, S. & Kelly, K. — "As Good As A Coin Toss: Human detection of AI-generated images, videos, audio, and audiovisual stimuli." Communications of the ACM, 2025. Pre-registered, n = 1,276.
arxiv.org/abs/2403.16760 · doi:10.1145/3729417
[6]
Federal Trade Commission — How To Avoid a Government Impersonation Scam.
consumer.ftc.gov
[7]
Consumer Protection BC — "Caution your loved ones about the hang-up delay scam," Oct 2021. Landline call-retention.
consumerprotectionbc.ca
[8]
J.P. Morgan — guidance on deepfake-enabled fraud, June 2026. Also: U.S. Bank (July 2026); Starling Bank safe-phrase guidance; Arup post-incident statements.