ONLINEAGENT_OPS 2026.Q3 HOMEARTICLESBLOGRECORDCRAFTSEARCH
HOMERECORDDeepfake Defence
RECORD · REVISED ON A SCHEDULE

Deepfake Self-Defence

Voice clones need about three seconds of audio. Voice clones need about three seconds of audio. Sourced, dated, and revised when the numbers move.

A cracked porcelain mask floating in darkness, one half dissolving into a glowing green audio waveform.
The half that dissolves is the half you are asked to trust.

Every other room in this museum teaches you to recognise synthetic things. This one assumes you will not recognise it — because the people who lose money to voice clones are not careless, they are correct about everything except one voice. So the defenses here do not rely on your ears. They rely on a word, a callback, and a pause.

How little it takes

In 2023, Microsoft researchers demonstrated a model that could reproduce a person's voice — pitch, cadence, speaking style — from roughly three seconds of recorded audio. Not a studio session. Three seconds: a birthday clip, a voicemail greeting, a few words in someone else's livestream.Source: Microsoft Research, VALL-E — “Neural Codec Language Models are Zero-Shot Text to Speech Synthesizers”, January 2023. Microsoft's own description: high-quality personalised speech from “only a 3-second enrolled recording of an unseen speaker”. Trained on 60,000 hours of speech from over 7,000 speakers; code not released. A 2024 successor claimed human parity.

That is the entire technical story, and it is why "just listen carefully" stopped being advice. The US Federal Trade Commission put it plainly in a consumer alert as early as March 2023: scammers are using AI to sharpen family-emergency schemes, and you should not trust the voice.Source: FTC Consumer Alert, "Scammers use AI to enhance their family emergency schemes," March 2023.

An old telephone handset on a museum plinth with a translucent green duplicate hovering above it.
Three seconds of your voice is the entire raw material.

The call, beat by beat

Nearly every version runs the same five beats. Learning the shape is more useful than learning the symptoms, because the shape does not change when the technology improves.

BEAT 01 — THE VOICE

Someone you love, in distress. An accident, an arrest, a hospital, a hostage. The voice is right, because the voice was cloned from something they posted.

BEAT 02 — THE HANDOFF

A second speaker takes over: a lawyer, an officer, a doctor, a manager. Authority arrives to do the asking, so the "loved one" never has to answer questions.

BEAT 03 — THE SECRET

Do not tell anyone. It is embarrassing, it is under investigation, it will make things worse. Secrecy exists for one reason: it prevents the one phone call that ends the scam.

BEAT 04 — THE CLOCK

It must happen now, within the hour, before the court closes. Urgency is not a detail of the story. Urgency is the attack — it exists to prevent verification.

BEAT 05 — THE CHANNEL

Wire transfer, gift cards, cryptocurrency, or a courier who comes to the door for cash. Every one of them is chosen because it is hard to reverse.

THE RIPPLE
Three seconds of audio is the entire raw material.

It scaled to boardrooms

In January 2024, a finance employee at the engineering firm Arup joined a video call with people who looked and sounded like the company's chief financial officer and several colleagues. Every other participant was synthetic. Fifteen transfers followed, totalling about US$25.6 million (HK$200 million). The Financial Times broke the story in May 2024; Arup confirmed that fake voices and images were used and that none of its internal systems were compromised. The attackers built the impersonations from footage that was already public.Sources: Hong Kong Police briefing, February 2024 (15 transfers to five accounts, HK$200m ≈ US$25.6m); Arup identified as the victim in May 2024, confirming to the Financial Times and Fortune that fake voices and images were used and that no internal systems were compromised.

The employee did what training says to do — he was suspicious of the initial email. The video call is what dissolved the suspicion. That is the lesson worth carrying home: a face and a voice are no longer verification, at any scale, in any setting.

The pattern now has a national price tag. The FBI's 2025 Internet Crime Report — the first in the agency's 25-year history to break out artificial intelligence as its own category — logged 22,364 AI-related complaints and $893,346,472 in reported losses, including roughly $30M in business email compromise with a confirmed AI component and about $13M in deepfake job-interview schemes. Americans over 60 reported around $7.7 billion in total fraud losses — the steepest rise of any age group.Source: FBI Internet Crime Complaint Center, 2025 Internet Crime Report, published April 2026.

Four defenses that still work

None of these require you to detect anything. That is the point.

01 · THE FAMILY CODE WORD

One word or short phrase, known only to your household. Anyone calling in an emergency must be able to say it. Choose something unguessable and unposted — not a pet's name, not a street you have written about. Say it out loud to each family member; never store it in a phone note, a group chat, or anywhere a breach could reach. Then tell the eldest members first, in two sentences: if anyone calls sounding like us in trouble, ask for the word, then hang up and call us back.

02 · THE CALLBACK RULE

Any unexpected request for money or secrecy ends the same way: you hang up and call the person back on the number already saved in your phone. Never a number the caller gives you. This works in both directions — a boss, a bank, a government office. Legitimate callers have never once objected to being called back.

03 · URGENCY IS THE TELL

Stop treating panic as evidence that something is real. The script is engineered to keep you from pausing, because a five-minute pause is fatal to it. Real emergencies survive verification. If someone is working hard to stop you from checking, that effort is the finding.

04 · THE PAYMENT METHOD IS THE TELL

Wire transfer, gift cards, crypto, or a courier for cash — the channel is chosen for irreversibility, not convenience. No hospital, court, or police department takes bail in gift cards. When the request reaches this beat, the beat itself is the answer.

A fifth, quieter defense: shrink the sample. Public video and audio is the raw material. Locking down who can see family posts will not make cloning impossible, but it makes your household a slower target than the next one.

IF A CALL LIKE THIS IS HAPPENING RIGHT NOW
  1. Do not confirm names or relationships. Answering "which grandchild?" hands the script its next line.
  2. Do not send anything. Do not stay on the line.
  3. Hang up. Call the person directly on their saved number. If they do not answer, try a text, another relative, or wherever they are supposed to be.
  4. If money has already moved, call your bank immediately — speed is the only lever left — and report it to the FTC at reportfraud.ftc.gov (US) or your national fraud reporting line.
◈ WHERE THIS SITE STANDS

Voice synthesis is not the villain here. The same technology restores speech to people who have lost it, narrates books, and crosses languages. What changed is that impersonation became cheap, and the institutions we trust to verify identity have not caught up. Until they do, the defense is a household habit, not a gadget. Set the code word tonight; it takes fifteen minutes and it outlives every model release.