Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
CybersecurityManagementSecurity & Business Resilience

The Deepfake Problem is Growing, and Authentication Needs a Rethink

By Carlos DaSilva
Page in typewriter that reads "deepfake"
Markus Winkler via Unsplash
August 19, 2026

It’s late in the day at the end of the week. A CFO receives a phone call from the CEO requesting that they handle a wire transfer while they’re caught up in a meeting. It needs to be done by the end of the day.

The voice is recognizable, the caller ID appears legitimate, and the context of the situation and the urgency of it seem genuine. Everything seems in order. Except, the CEO never made that call.

Unfortunately, this exact scenario has played out at organizations across every sector. Deepfake capabilities and tactics have rapidly advanced, and they are no longer isolated incidents. They now pose real business risk for organizations and undermine the very processes and signals that have traditionally been relied on to verify identity.

This raises the question of whether the current verification processes can withstand such attacks. While improving deepfake detection methods is important, it doesn’t resolve the core issue: organizations need to recognize that existing authentication methods are being exploited, and security leaders need to consider how to verify identity more securely. 

The rate of deepfake attacks is outpacing defenses

According to HYPR’s 2026 State of Passwordless Identity Assurance report, 87% of organizations have already experienced an audio or video deepfake attack. Whether it’s a customer or an employee being targeted, the scale of attacks is cause for concern.

Verification has always come down to a level of trust. When a customer reaches out to a call center, they are asked to identify themselves with a name, address, and possibly a Social Security, bank account or credit card number, or a membership ID. Or when an employee logs into a company portal, they often enter a one-time passcode, usually shared via email or SMS. This is all personally identifiable information, and it’s also the very thing that cybercriminals have been targeting and collecting for years. Today, sophisticated tools allow them to steal even the most complex credentials, and once compromised, the data grants them access to critical systems and financial rewards.

In this threat landscape, the assumption that what we see and hear is always real is disintegrating. Advanced technology allows fraudsters to clone voices, generate images, and fabricate videos, replicating the human layer of what we deem as true. Especially with AI, deepfakes will increasingly become a lot easier to deploy and a lot harder to detect. Just 60 seconds of an audio or video can be enough for a fraudster to succeed.

Building a more resilient authentication strategy 

The sophistication of deepfakes means organizations can no longer rely solely on traditional identity verification methods. While user awareness training, detection tools, and employee intuition are valuable, these approaches depend on signals that fraudsters can easily exploit.

Verification should not hinge on whether someone sounds authentic. Instead, security leaders should prioritize authentication based on deterministic signals. The most robust solutions will not be ones that AI can convincingly clone, but ones that exist at the device and network layer, such as hardware-bound verification and trust.

For example, SIM-based authentication and popup interactions allow mobile carriers to verify user identities through SIM cards that are encrypted and can’t easily be hacked. Unlike traditional two-factor and multi-factor authentication, this approach validates both the device and the end user. Once the legitimate device is verified, the user simply approves a secure popup prompt after unlocking the phone with biometrics, replacing cumbersome processes such as providing a government-issued ID or submitting a selfie. The authentication request is trigged natively by the SIM, so no separate application is required. By tying identities to hardware, it makes it nearly impossible for attackers to fabricate credentials and compromise accounts, even if they obtain the users' device.

Rewriting the identity verification playbook 

For decades, security teams have operated on the assumption that human perception and personal details could reliably support identity verification. Those approaches were built around the premise that people could reasonably determine whether someone is who they claim to be. Now, AI-generated deepfakes have changed that.

As deepfakes increase in volume and sophistication, they’re challenging the playbooks that security teams have long relied on and forcing the script to be rewritten. Security teams need to question the identity layers that are being impacted and reexamine the controls, processes, and trust signals that have formed their identity verification foundation. That shift requires looking beyond visual or auditory cues and 2FA or MFA towards stronger, deterministic forms of authentication. While personal information can be stolen, voices cloned and images and videos manipulated, hardware-based credentials remain significantly more difficult to fabricate and provide a foundation of security that exists outside the reach of most deepfake attacks.

The next phase of identity security will not be defined by the industry’s ability to spot ever-convincing fakes. It will be defined by its ability to verify what is actually real. And sometimes, the strongest defense against emerging threats isn’t a new layer of complexity, but a layer that has been there all along. 

KEYWORDS: Artificial Intelligence (AI) Security deepfakes identity (ID) management identity verification

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Carlos DaSilva is the Chief Product Officer at Unibeam.

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Cyber tech background

    Security’s Top Cybersecurity Leaders 2026

    Security magazine’s Top Cybersecurity Leaders 2026 award...
    Top Cybersecurity Leaders
  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Columns
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the Security audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of Security or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • Northland Controls sponsored content
    Sponsored byNorthland Controls

    The Execution Gap: Why Great Security Design Doesn't Always Deliver Great Security

Popular Stories

Photograph of apartment complex patios

Enhancing Residential Building Security

2026 Women in Security

Security’s 2026 Women in Security

Handcuffs and cash

Mass Kidnapping Increased 154% from 2020 to 2025

Northland Controls sponsored content

The Execution Gap: Why Great Security Design Doesn't Always Deliver Great Security

security

6 Crisis Response Best Practices (That Actually Hold Up When Things go Sideways)

Kaseware sponsored webinar
Schneider Electric sponsored webinar

Events

August 19, 2026

From Investigative Question to Defensible Answer: AI in Digital Forensics and Incident Response

LIVE: August 19, 2026 at 2 PM EDT We'll examine where AI can deliver meaningful value, where incomplete context or black-box reasoning can introduce risk, and what governance, validation, and evidence-traceability controls organizations should establish.

August 25, 2026

Critical Infrastructure Security Is National Security: Protecting Essential Operations in an Era of Escalating Risk

LIVE: August 25, 2026 at 2 PM EDT Learn why critical infrastructure security has become a national security imperative, and the strategies organizations can adopt to improve visibility, collaboration, and response across their security operations.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products


Alertmedia sponsored webinar

Related Articles

  • row of gaming chairs at long desk

    The solution to esports’ identity problem is as simple as a selfie

    See More
  • Silhouette of woman at computer

    The deepfake dilemma: The importance of deepfake awareness training

    See More
  • keypad on safe

    The growing multifactor authentication imperative

    See More

Related Products

See More Products
  • Physical Security and Safety: A Field Guide for the Practitioner

  • Risk Analysis and the Security Survey, 4th Edition

  • physical security.webp

    Physical Security Assessment Handbook An Insider’s Guide to Securing a Business

See More Products
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2026. All Rights Reserved BNP Media, Inc. and BNP Media II, LLC.

Design, CMS, Hosting & Web Development :: ePublishing