Home / Learn / AI voice cloning scams
Field note · Everyday AI
Published June 28, 2026 · Empire Publishing
Short answer: AI can now copy a voice from a few seconds of audio, so a caller who sounds exactly like someone you love may not be them. You don't beat this by listening harder — you can't hear the difference. You beat it with one habit: hang up and verify through a channel you control.
For most of history, a familiar voice was proof. If your daughter called and it was her voice, it was her. That assumption is now broken. Voice-cloning tools can build a convincing imitation from the audio in a voicemail greeting, a social-media clip, or a few seconds of a podcast — material that's public for almost everyone. The technology isn't exotic anymore, and neither is the crime. The raw ingredient for impersonating the people you trust is already out there.
Every version runs on the same two levers: a voice you recognize, and urgency engineered to stop you from pausing to check.
Don't act inside the call. Hang up and call the person back on the number you already have for them. A cloned voice cannot pick up a phone you dial independently. That single move — verify through a separate, trusted channel — defeats nearly every voice-cloning scam, because the entire attack depends on you staying in the conversation it controls.
Two reinforcements make it bulletproof:
The same playbook now runs on video. In 2024, an employee at the engineering firm Arup was convinced to transfer roughly $25 million after joining a video call where deepfaked versions of the CFO and colleagues appeared and gave the instruction. Everyone on the call but the victim was synthetic. The lesson scales down to your phone: seeing and hearing are no longer proof on their own. Verification through a channel you trust is. A live face and a familiar voice are now things that can be manufactured — so they stop being the thing you rely on.
Stop. Don't move money, don't read out codes, don't confirm details. Hang up and call back on a known number. Tell one other person before you act — saying it out loud breaks the spell urgency casts. If money already moved, contact your bank immediately and report it to your local fraud authority. Being targeted isn't a failure; acting without verifying is the only mistake that costs you.
Often just seconds to a minute of clear speech — the kind in a voicemail greeting or social clip. The samples to impersonate most people are already public.
Hang up and call back on the number you already have, or use a pre-agreed family safe word. Verify through a channel you control; never act inside the suspicious call.
Yes — a 2024 deepfake video call cost the firm Arup about $25 million. Treat any urgent money request as suspect regardless of who appears to be asking.
Go deeper
This is the short version. The full, non-technical guide — spotting deepfakes and cloned voices, the defense that beats almost all of them, what to never trust AI with, and how to use it without getting fooled — is Don't Trust the Robot: how to use AI without getting fooled (and spot when it's lying). Written by someone who builds these systems for a living. Live on Amazon.