• Home
  • Blog
  • Android
  • Cars
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • Sci-Fi
Tech News, Magazine & Review WordPress Theme 2017
  • Home
  • Blog
  • Android
  • Cars
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • Sci-Fi
No Result
View All Result
  • Home
  • Blog
  • Android
  • Cars
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • Sci-Fi
No Result
View All Result
Blog - Creative Collaboration
No Result
View All Result
Home Gadgets

AI deepfakes as fake employees

July 20, 2026
Share on FacebookShare on Twitter

The most dangerous person in your company might not work there at all. AI deepfakes are getting cheaper and better. Hackers now use them to pose as trusted staff, a threat the industry calls the “synthetic insider.”

The tactic sits at the sharp end of an old problem. Insider threats run from a worker emailing the wrong file to a thief who knows exactly where the valuables are. A 2026 analysis of about 22,000 incidents by Verizon found 12% were the work of internal actors, the Financial Times reported.

The deliberate ones do the most damage. “They know where the crown jewels are and how to access them,” said Alex Lisle, chief technology officer at deepfake-detection firm Reality Defender.

The fake employee

The clearest example is a North Korean scheme the US Justice Department cracked down on last year. Operatives fraudulently landed remote jobs at US firms. The goal was to earn wages and steal data for the sanctioned regime.

TNW City Coworking space – Where your best work happens

A workspace designed for growth, collaboration, and endless networking opportunities in the heart of tech.

They used the stolen identities of more than 80 Americans to get hired at over 100 companies, the government said. That raised more than $5m for Pyongyang. Eight US-based people were later sentenced for running “laptop farms.” These are racks of computers in American homes that made overseas workers look local.

Cheap deepfake tools make this easier. Attackers can now fake live video and audio, not just a photo. That lets them sail through a video interview as someone else.

Catching them at the door

The fix starts with hiring. Companies are knitting together HR, security, legal and IT, said Adam Finkelstein of consultancy Alvarez & Marsal. Treating recruitment as a pure HR task, he argued, “is no longer sufficient for high-risk remote technical roles.”

Tom Hegel, a threat researcher at SentinelOne, said firms should screen metadata, IP addresses and device fingerprints when an application lands. They should also watch for candidates altering their face or voice in real time. Some defences are low-tech. Asking a candidate to turn their head or wave a hand can still break a live deepfake, he said.

The checks continue after the hire. Firms should make sure new laptops are not shipped to a farm. Then they can use behaviour analytics to flag odd activity.

Most leaks are accidents

The headline-grabbing plots are the exception. “Insider threats are far more likely to happen by accident,” said Dave Spillane of Fortinet. A 2025 report from the firm blamed 62% of incidents on human error or hijacked accounts. That covers everything from emailing the wrong file to pasting secrets into an unsanctioned chatbot.

That last habit has a name: shadow AI. Staff feed sensitive data into AI tools their employer never approved, said John Hultquist of Google Threat Intelligence Group.

The next worry is the software itself. As AI agents gain the power to act, they start to look like staff with system access. And they can be tricked. An agent “operates in a similar way to an employee,” Hultquist said.

It “can sometimes be fooled into doing things it shouldn’t do.” Art Gilliland, chief executive of identity firm Delinea, put it plainly. Agents need access to sensitive systems, so their identities are as valuable to attackers as a human’s.

The surveillance trap

All this is good for the security industry. The market for data-loss prevention grew from $33bn last year to almost $43bn this year, by one estimate. Some vendors sell Big Brother-style tools that log keystrokes and screenshots to flag risky behaviour.

That raises its own problem. “Too much monitoring can undermine trust,” said Bernard Montel of Tenable. “The challenge is protecting the organisation without creating a culture of surveillance.”

There is a fairness risk too. Finkelstein warned that nationality, remote-work patterns or an unusual career history should not become grounds for suspicion. Controls should hang on verifiable signals instead, such as odd privilege use or impossible travel.

The simplest defence, several argued, is also the oldest. Give people, and rogue software, access only to what they need.

Next Post

Best free online courses from Harvard University (July 2026)

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

No Result
View All Result

Recent Posts

  • AI slop is faking rare bird sightings and hurting science
  • NYT Strands hints and answers for Monday, July 20 (game #869)
  • Ant International raises $1.2bn to fund its payments push beyond China
  • Is a $330 Pixel 8 Pro the best Android deal in 2026? I used it to find out
  • South Korea bets $540bn on a southwest chip hub the grid cannot yet feed

Recent Comments

    No Result
    View All Result

    Categories

    • Android
    • Cars
    • Gadgets
    • Gaming
    • Internet
    • Mobile
    • Sci-Fi
    • Home
    • Shop
    • Privacy Policy
    • Terms and Conditions

    © CC Startup, Powered by Creative Collaboration. © 2020 Creative Collaboration, LLC. All Rights Reserved.

    No Result
    View All Result
    • Home
    • Blog
    • Android
    • Cars
    • Gadgets
    • Gaming
    • Internet
    • Mobile
    • Sci-Fi

    © CC Startup, Powered by Creative Collaboration. © 2020 Creative Collaboration, LLC. All Rights Reserved.

    Get more stuff like this
    in your inbox

    Subscribe to our mailing list and get interesting stuff and updates to your email inbox.

    Thank you for subscribing.

    Something went wrong.

    We respect your privacy and take protecting it seriously