What you need to know
Synthetic voice and video can make an impostor look familiar. Remove media familiarity from help-desk resets, executive requests, and payment approvals; verify through independent identity and workflow controls.
Potentially affected
Help desks, identity administrators, executives and assistants, finance and payment teams, procurement, human resources, communications, and fraud or incident response teams.
DSE recommendation
Identify sensitive workflows, stop treating voice or video as identity proof, require independent callbacks and in-system approvals, and use detection tools only as supporting evidence.
Source fact: realistic media does not establish identity
The FBI has described attackers who impersonate employees to persuade help desks to reset credentials and attackers who use synthetic voice or video to impersonate executives. In an FBI Ahead of the Threat discussion, investigators explain that personal knowledge questions may be answered from information attackers obtain elsewhere. A familiar face, voice, supervisor name, or biographical detail can make a request persuasive without making it authentic.
The FBI’s 2025 impersonation alert reports malicious text and AI-generated voice messages impersonating senior officials and advises recipients to independently verify identity rather than assume a message is authentic. The FTC’s review of approaches to AI-enabled voice cloning says no single intervention solves the problem and discusses limitations and false results across detection and other technical approaches.
DSE recommendation: make the workflow the authority
DSE recommendation: classify live and recorded audio or video as untrusted presentation, not identity proof. A detector may add a signal, but a sensitive action should be authorized by an independently authenticated person using an approved system of record. This article differs from DSE’s existing business-email-compromise guidance: it focuses on identity proof and action authorization when an attacker can convincingly reproduce a person’s voice or image.
Apply the control where impersonation changes access or money
- Help-desk and identity actions: password and multifactor resets, new authenticator enrollment, recovery-contact changes, account unlocks, privilege changes, and device registration.
- Executive and administrative requests: release of confidential information, creation of accounts, changes to access, urgent travel or personnel requests, and instructions to bypass a normal control.
- Finance and commercial actions: new or changed payment instructions, bank-detail changes, refunds, gift-card or cryptocurrency purchases, new suppliers, and release of a held payment.
Map each action to an authoritative request channel, required authentication, approver, separation of duties, evidence retained, and an alternate process for genuine emergencies. The requester must not be allowed to choose a new phone number, email address, messaging account, or colleague as the only verification route.
Checklist for help desks
- Locate the user in an existing trusted directory; do not rely on contact details provided in the inbound request.
- Use an established authenticated channel or call a previously recorded number. If that path is unavailable, use the documented recovery process and its additional approval rather than improvising.
- Verify the requested action and its business reason. Treat urgency, secrecy, and pressure to avoid a callback as risk signals, not proof of fraud.
- Require independent approval for high-impact resets or privilege changes according to local policy. The same person should not both override identity proof and execute an irreversible action without review.
- Notify the account owner through a separate established channel and preserve the request, verification steps, decision, operator, and resulting account changes.
Checklist for executives and payment teams
Route instructions into the normal approval system and require the same authorization steps regardless of whether the request arrived by video conference, phone, text, or email. For a material change, call back through a known directory or confirm in an existing authenticated workflow. Verify the transaction details as well as the person: payee, account, amount, purpose, contract or invoice, and approving authority. An executive’s presence on video should not cancel dual approval or supplier bank-change validation.
Use detection as supporting evidence
NIST AI 100-4 surveys provenance and authentication, watermarking, detection, testing, and auditing for synthetic content. These techniques can contribute evidence, but coverage varies by content, generator, transformation, and operating condition. Validate any tool on the media and decisions where it will be used; document false-positive and false-negative consequences. Do not let a detector’s clean result authorize a reset or payment.
When impersonation is suspected, stop the action, preserve the original message and metadata, contact the real person through a known route, notify fraud or incident response, and follow reporting obligations. Avoid repeatedly forwarding sensitive media through consumer tools, which can lose metadata and expose information. The durable defense is a workflow that remains valid even when the voice and face are perfect.
Official sources
Review the official source
NIST AI 100-4, Reducing Risks Posed by Synthetic Content · Published November 20, 2024
Need help applying this guidance safely?
DSE can help confirm applicability, protect service continuity, and validate the result across physical security and IT systems.
Talk with DSE