The latest deepfake numbers give CISOs plenty to worry about

The latest deepfake numbers give CISOs plenty to worry about
AI-powered social engineering is helping attackers bypass traditional phishing defenses by using deepfakes, vishing, smishing, and business email compromise across email, calls, and video meetings. Gartner says CISOs should make verification the default for risky requests, harden account recovery and privileged access, and correlate suspicious activity across channels to spot multimodal impersonation. #Gartner #CraigPorter #Deepfake #BusinessEmailCompromise #Vishing #Smishing #HongKong

Keypoints

  • 41% of CISOs reported deepfake-based social engineering during employee audio calls.
  • 36% reported deepfake incidents in video calls, showing AI fraud is spreading across channels.
  • Gartner says verification should be required for risky requests, not left to employee judgment.
  • Account recovery, privileged access, and payment authorization are prime targets for attackers.
  • Deepfake detection is becoming harder as generative AI improves and scams grow more convincing.

Read More: https://www.helpnetsecurity.com/2026/09/22/cisos-deepfake-incidents-social-engineering-survey/