<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[The Human Perimeter]]></title><description><![CDATA[Deepfakes, synthetic personas, and the contested edge of trust, including field notes from the production of "The Only Human in the Room", a documentary premiering September 2026]]></description><link>https://www.thehumanperimeter.com</link><image><url>https://substackcdn.com/image/fetch/$s_!tVcY!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51b376df-e892-4a94-8469-592deebd39d4_608x608.png</url><title>The Human Perimeter</title><link>https://www.thehumanperimeter.com</link></image><generator>Substack</generator><lastBuildDate>Mon, 05 Oct 2026 03:45:18 GMT</lastBuildDate><atom:link href="https://www.thehumanperimeter.com/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[Hanson Hosein]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[thehumanperimeter@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[thehumanperimeter@substack.com]]></itunes:email><itunes:name><![CDATA[Hanson Hosein]]></itunes:name></itunes:owner><itunes:author><![CDATA[Hanson Hosein]]></itunes:author><googleplay:owner><![CDATA[thehumanperimeter@substack.com]]></googleplay:owner><googleplay:email><![CDATA[thehumanperimeter@substack.com]]></googleplay:email><googleplay:author><![CDATA[Hanson Hosein]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[Changing the Game on AI Fraud]]></title><description><![CDATA[Discover how a novel legal strategy in an Illinois privacy lawsuit classified an AI voice verification vendor as a financial institution to fight fraud.]]></description><link>https://www.thehumanperimeter.com/p/ai-voice-fraud-financial-institution-legal-precedent</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/ai-voice-fraud-financial-institution-legal-precedent</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Sun, 04 Oct 2026 21:05:54 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/218831222/dde46a1aade8a8c10646ef1f6e1a619a.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>What happens when you need to play by the rules as &#8220;good&#8221; AI takes on &#8220;bad&#8221; AI? If you&#8217;re a super creative legal eagle like Clarissa Cerda, you win by changing the game&#8217;s perspective of you as a player.</p><p>I&#8217;m both a former lawyer and former digital media academic who is well aware that legal systems struggle to keep up with the rapid pace of technological innovation, sometimes lagging by decades. But with the existential impact of artificial intelligence, we can&#8217;t afford to wait for the law to align with the facts on the ground.</p><p>Case in point: criminals are using AI to easily mimic our voices and gain access to our financial accounts. To combat this, technology vendors such as Clarissa&#8217;s Pindrop (underwriter to my documentary, <em>The Only Human in the Room</em>) offer a voice verification layer to protect our assets when we call customer service.</p><p>But innovation often collides with regulation. Plaintiffs <a href="https://law.justia.com/cases/federal/appellate-courts/ca3/24-3215/24-3215-2026-05-12.html">in an Illinois lawsuit</a> argued that they never gave consent to have their biometric data recorded and analyzed, contravening a strict state privacy law. Clarissa countered with a brilliant maneuver: she argued that Pindrop was exempt under that law because providing this critical authentication service meant it was engaging in &#8220;financial activities.&#8221;</p><p>The federal courts agreed with that novel interpretation, setting judicial precedent for a tech vendor in this space to be classified as a &#8220;financial institution.&#8221; </p><p>As Clarissa explains in the clip above, the courts recognized that you simply can&#8217;t do banking today without that verification piece.</p><blockquote><p><em>&#8220;They actually said it was so closely related to banking activities that it is considered financial in nature. I think authentication is becoming part of the financial infrastructure... and the courts have recognized that in this case, it means we are now subject to the same standards that every financial institution is.&#8221;</em></p></blockquote><p>This ruling yet further evidence of how <a href="https://www.thehumanperimeter.com/p/should-verification-replace-trust">verification is replacing trust</a>, in our day-to-day institutional infrastructure. We&#8217;re increasingly called upon to prove who we say we are, and these new systems ostensibly make it easier to do so.</p><p>Yet, for all this digital scaffolding, Clarissa&#8217;s ultimate takeaway is surprisingly analog. Navigating a landscape where AI fights AI only reaffirms the one thing algorithms can&#8217;t replicate.</p><p><em>&#8220;I believe in the humans. And so a lot of these rules apply to what&#8217;s happening in the digital world... where you don&#8217;t have the human in the loop. What it does for humanity is it reaffirms that we have to keep that human contact. It cannot be replaced and superseded.&#8221;</em></p>]]></content:encoded></item><item><title><![CDATA[Should Verification Replace Trust?]]></title><description><![CDATA[The man who inspired Hollywood&#8217;s &#8220;Catch Me if You Can&#8221; on fighting fraud today]]></description><link>https://www.thehumanperimeter.com/p/should-verification-replace-trust</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/should-verification-replace-trust</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Tue, 22 Sep 2026 13:04:25 GMT</pubDate><enclosure url="https://substackcdn.com/image/youtube/w_728,c_limit/s-7pyIxz8Qg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Stephen Spielberg&#8217;s 2002 classic <em>Catch Me if You Can</em> was inspired by the real-life story of scam artist Frank Abagnale Jr., played in the movie by Leonardo DiCaprio.</p><div id="youtube2-s-7pyIxz8Qg" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;s-7pyIxz8Qg&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/s-7pyIxz8Qg?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p>Frank is now 78 years-old, having worked with the FBI for five decades (his son is also an agent). He&#8217;s as generous with his knowledge as he is with his time. I caught up with him in Atlanta after his keynote at a Pindrop Security customer event. I was impressed with Frank&#8217;s up-to-date insights and his ability to succinctly articulate the clear and present danger of synthetic personas and deepfakes.</p><p>The thesis statement to his talk? &#8220;Verification must replace trust.&#8221; I worry that this puts true human connection at risk if we must first prove our verifiable existence to an algorithm before engaging in any sort of relationship. So, both during his talk and after, I asked Frank for further explanation. Here&#8217;s what he said:</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;9bd4185a-91e8-4d1f-b782-3deeb69ce869&quot;,&quot;duration&quot;:null}"></div><p>I felt compelled to re-watch <em>Catch Me if You Can</em> after meeting Frank. He points <a href="https://abagnale.com/Frank-W-Abagnale-Jr-Film-And-Book-Comments.html">on his website</a> that it exaggerated the facts, but is still &#8220;honored that Steven Spielberg, Leonardo DiCaprio and Tom Hanks participated in the making of the movie inspired by my life.&#8221; Given Frank&#8217;s significant experience with both fraud and film, I&#8217;m gratified that he told me that he liked the title (and premise) to my documentary, <em>The Only Human in the Room</em>. I intend to consult with Frank Abagnale Jr. further as I continue production: his integrity, sincerity, and expertise were palpable &#8212; and very real to me.</p><p></p>]]></content:encoded></item><item><title><![CDATA[I Spent 26 Hours Building a Digital Disguise]]></title><description><![CDATA[What broke taught me a valuable lesson]]></description><link>https://www.thehumanperimeter.com/p/deepfakes-local-vs-cloud</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/deepfakes-local-vs-cloud</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Wed, 09 Sep 2026 17:13:19 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!sdyu!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>It was a noble experiment. I wanted to see if I could build my own synthetic persona from scratch, without relying on a more plug-and-play cloud API such as the one <a href="https://thehumanperimeter.substack.com/p/the-cybercrime-investigator-and-the">David Maimon showed me this summer</a> at Georgia State University.</p><p>My motivation? I hoped to safely (and ethically) engage with deep-faked scammers through my own deep-faked identity. I opted first to learn the hard way.</p><h4>The Local Grind: Air-Gaps &amp; 26 hours of training</h4><p>I deployed a powerful gaming laptop running a graphics card with what I thought was sufficient VRAM (12 GB). As a makeshift &#8220;air gapped&#8221; machine that still required an internet connection with a light footprint, I purchased a SIM card with cash, and loaded it onto a wiped Android mobile device. This would serve as the tethered internet connection for the laptop. My intent was to avoid detection (or being tracked by fraudsters) through my regular IP address and daily devices.</p><p>Guided by a compliant LLM, I downloaded <a href="https://github.com/lllyasviel/Fooocus">Fooocus</a>, an open-source image generator hosted on GitHub. I took a selfie, then had the software generate variations of my face in different angles, facial expressions, and even eyes closed.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!sdyu!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!sdyu!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png 424w, https://substackcdn.com/image/fetch/$s_!sdyu!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png 848w, https://substackcdn.com/image/fetch/$s_!sdyu!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png 1272w, https://substackcdn.com/image/fetch/$s_!sdyu!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!sdyu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png" width="1456" height="1941" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1941,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:4785926,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://thehumanperimeter.substack.com/i/214909760?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!sdyu!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png 424w, https://substackcdn.com/image/fetch/$s_!sdyu!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png 848w, https://substackcdn.com/image/fetch/$s_!sdyu!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png 1272w, https://substackcdn.com/image/fetch/$s_!sdyu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb26c1983-66d7-4354-83bc-ee29721a84f9_1728x2304.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Shades of Hemingway: my synthetic alter ego</figcaption></figure></div><p>Next, I recorded a 3-minute video as I spoke to camera, and fed it, along with my synthetic selfies from Fooocus into <a href="https://github.com/iperov/deepfacelab">DeepFaceLab</a>, another open-source generator.</p><p>It was a grind for both me and my computer. I left the neural network to train for 26 hours. When it was time to composite the final video, I had to manually dial in the interactive merger (such as fading and blurring the synthetic mask&#8217;s digital seams), and then command the GPU to batch-render 5,597 frames.</p><p>The result was&#8230;flawed. As the software processed everything frame-by-frame, I ran into temporal jitter (how <em>Star Trek</em>). The mask trembled slightly along my jawline, and the teeth and lip movements lacked natural fluidity.</p><h4>The Cloud Pivot: Plug-and-Play Reality</h4><p>Maimon reminded me that modern fraud is no longer a series of isolated schemes, but a specialized criminal infrastructure. He showed me what was possible with Decart&#8217;s <a href="https://decart.ai/lucy">Lucy.AI model</a>. That cloud software uses a self-anchoring mechanism that builds consistency directly from its own output history. Instead of waiting for 26 hours on a gaming rig, I can use any computer, write a simple Python script, and send the video to a cloud API. It processes at 1080p, 30 frames per second, and yields perfectly consistent, real-time time digital disguises without trembling masks. I had originally aimed for a local model as I thought it would be more stable in a live Zoom or Teams interaction tethered to a mobile hotspot. But what I created on my own was clearly not going to pass muster with any scammer.</p><p>Here&#8217;s a short clip of Maimon easily masquerading as me via a simple headshot on the web and Lucy.AI:</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;ce407fb9-f210-436b-a378-75e95e448698&quot;,&quot;duration&quot;:null}"></div><h4>Defending the Human Perimeter</h4><p>The barrier to entry for highly convincing synthetic video clearly doesn&#8217;t require a $3,000 setup. An API key is more than sufficient, and that&#8217;s what available to the world. Still, I appreciated getting my hands &#8220;dirty&#8221; in the machinery of synthetic media. While I agonized over all the distinct points of failure when configuring my tools, I now recognize how cloud tools and an asynchronous API call that costs pennies per minute is a specialized parlor trick upturned into an industrialized global threat.</p><p>Yet, even as we admit that seeing is no longer believing, there is hope. The deepfakes do leave behind algorithmic footprints that are detectable by &#8220;good guy&#8221; software engines: the absence of micro-latencies and even the acoustic reflections of a physical room, along with the presence of digital clipping and unnatural uniform frequencies.</p><p>And, as I learned in trying to create an alternative digital footprint, it&#8217;s not so easy to prompt years of genuine behavioral history into existence. Yes, you can easily purchase a social security number or utility bill on the dark web. Yes, you can create a fake LinkedIn persona with fictional experience and education. But, our messy digital exhaust of online behaviors, relationships, and provenance are much harder to replicate. Who will accept your connection invites after all as a synthetic persona? What are the signals that Big Tech&#8217;s algorithms are constantly scanning for as part of that &#8220;Reverse Turing Test?&#8221; That demands proof of the timeline behind the mask. Context matters more than ever, and we should not hesitate to ask more questions to fill in those blanks.</p>]]></content:encoded></item><item><title><![CDATA[Securing the Human Signal ]]></title><description><![CDATA[Former Cisco CEO John Chambers on why we must protect the "human signal" from deepfakes in a future crowded with a thousand autonomous AI agents.]]></description><link>https://www.thehumanperimeter.com/p/securing-the-human-signal</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/securing-the-human-signal</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Wed, 02 Sep 2026 17:30:13 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/bcfda7b3-d1ba-4545-a7bb-34e276b9ab72_1365x768.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p></p><div><hr></div><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;7e4b109b-0d9a-4dd7-8e73-8e5d5404fb96&quot;,&quot;duration&quot;:null}"></div><div><hr></div><p>When John Chambers joined Cisco in 1990, the physical concept of the commercial internet was still a niche playground for academics and engineers. He went on to spend the next twenty-five years building its physical plumbing, scaling Cisco from a $70 million router shop to a $47 billion titan that carried the vast majority of the world&#8217;s web traffic. John saw the future before it arrived because he understood the physical architectures of connection.</p><p>He&#8217;s doing it all over again through JC2 Ventures, investing primarily in AI and cybersecurity (including Pindrop Security, the underwriter to my documentary).</p><p>So, keen to leverage his soothsaying abilities, I reached out to John for his perspective. He generously invited me to his lovely home in Palo Alto to delve deeply into our mutual respect for the biological signal of human trust &#8212; and how easily it is now being hijacked.</p><p>We are currently living through what John defines as the <strong>&#8220;5x Transition:&#8221; </strong>an AI market shift unfolding at five times the speed and three times the impact of the initial internet boom. </p><p>It&#8217;s moving at such a velocity that it&#8217;s hard for our defensive systems to keep up. Over the past few months of reporting for my upcoming documentary, <em>The Only Human in the Room</em>, I&#8217;ve seen the front lines of this transition. I have witnessed remote recruiters interview real-time deepfaked North Korean operatives, watched synthetic corporate personas traded like commodities, and observed &#8220;good&#8221; AI agents match wits with &#8220;bad&#8221; ones, with nary a human to be seen.</p><p>When I laid this reality out for John, I wanted to challenge the default, sunlit optimism of Silicon Valley. I asked him a quirky question, derived from my research:</p><blockquote><p><strong>&#8220;Historically, cybersecurity has been about protecting the network from the human. But now, with generative AI and deepfakes, how much do we now have to protect the human from the system?&#8221;</strong></p></blockquote><p>His response, and the personal history behind it, forms the core of this briefing on the battle for the human perimeter.</p><div><hr></div><h3><strong>The Dyslexic Radar and the Biological Shield</strong></h3><p>To understand why John is betting so heavily on voice biometrics and identity security to defend what we call the &#8220;Human Perimeter,&#8221; you have to understand how he processes the world.</p><p>John has been famously open about his childhood dyslexia. In school, it was a source of profound shame; he was laughed at when he tried to read out loud. But under the guidance of a remarkable teacher, Mrs. Anderson, he learned to transform that learning disability into a lifelong strategic superpower.</p><p>Because dyslexia forced John to think non-serially&#8212;to jump from &#8220;A to B to Z&#8221; and rely on rapid pattern recognition&#8212;he developed a hyper-sensory &#8220;human radar.&#8221; He trained himself to look past the written page and instead focus on the physical cues of the speaker.</p><p>&#8220;Mainly because I can look into your eyes,&#8221; John told me on camera reaching out to shake my hand, &#8220;look into your facial gestures, watch how you respond and get very quickly: can I trust you? Where do we go? Do I develop the empathy and the balance?&#8221;</p><p>That biological radar-like ability to synthesize vocal cadences, micro-expressions, and eye contact is what John relied on to execute 180 corporate acquisitions at Cisco, many of them sealed with a simple handshake.</p><p>But we have reached a stark historical inflection point: <strong>our own biological radars are being systematically hacked.</strong> When generative models can clone a human voice in under three seconds, and real-time face-swapping software allows corporate infiltrators to present perfect digital doubles on live Zoom calls, the age-old human heuristic of &#8220;seeing and hearing is believing&#8221; is officially dead.</p><p>The human signal has been compromised.</p><div><hr></div><h3><strong>From Network Walls to Ambient Verification</strong></h3><p>For decades, cybersecurity was defined by firewalls, passwords, and permissions. The human was treated as the weak link. It was the liability that wrote their password on a sticky note or fell for a phishing email. The goal was to keep the human from breaking the network.</p><p>Today, the threat has flipped: the network is impersonating the human.</p><p>We are seeing a 220% surge in synthetic infiltration, where deepfaked remote workers pass video interviews, get onboarded, and receive corporate laptops without a single biological human verifying their physical existence. The breach is now it is a stolen, simulated human signal.</p><p>This forces us into what I call the <strong>Reverse Turing Test Epidemic</strong>. Every day, we are increasingly forced to perform our humanity to digital gatekeepers that default to doubt. We must pass liveness checks, scan our irises, and subject ourselves to continuous tracking just to prove we are not machines.</p><p>John fearlessly considers this to be an architectural design challenge.</p><p>&#8220;If you aren&#8217;t able to instill trust,&#8221; John argues, &#8220;you can&#8217;t have commerce, you can&#8217;t have relationships.&#8221;</p><p>His vision drives his heavy investments in companies like <strong>Pindrop</strong>, <strong>Safe Security</strong>, and <strong>Avathon</strong>. It&#8217;s a transition to <strong>continuous ambient verification</strong>. Rather than forcing humans to constantly act like suspects at a border crossing, the security architecture must work passively in the background. By using advanced voice biometrics that analyze over 16,000 data points per second to confirm continuous &#8220;liveness,&#8221; device attestation, and behavioral cues, the system verifies identity naturally&#8212;allowing humans to focus on the human connection.</p><div><hr></div><h3><strong>Surviving the &#8220;Blurred Room&#8221; of 2036</strong></h3><p>At the end of our conversation, I asked John a final question that speaks to the core of my documentary:</p><blockquote><p><strong>&#8220;I changed the title to my film to </strong><em><strong>The Only Human in the Room</strong></em><strong>... What&#8217;s our best assurance that humans still come out on top?&#8221;</strong></p></blockquote><p>John rejected the binary premise.</p><p>&#8220;We like to see things as binary&#8212;either over here or over here&#8212;when in fact it will be a blurred version,&#8221; John predicted. &#8220;Will there be a hundred, maybe a thousand, agentic interfaces to us for each human? Yes. But combining all those where it isn&#8217;t just a human and others, it&#8217;s going to be a combination of that all the time. I think that is going to be the future.&#8221;</p><p>This is the ultimate transition we must prepare for. There will be no clean separation of the biological and the synthetic. Rather, we are heading toward a crowded room where every biological human is accompanied by a shadow army of autonomous digital agents representing them, negotiating for them, and acting on their behalf.</p><p>What does this all mean? The battle for the human perimeter is about keeping hackers out of our databases AND ensuring that as our digital and physical realities blur, we do not design a system that strips the empathy, warmth, and trust out of what it means to be human.</p><p>John Chambers built the physical plumbing of the early internet to connect us. Now, as our reality transitions into a crowded digital room where a thousand autonomous agents will represent each of us, he is building the architecture of trust to secure the human signal at the core, ensuring we never lose our authentic connection with each other.</p><div><hr></div><p><em>Watch the four-minute excerpt of my conversation with John Chambers in the video above. What do you think? Are you ready for a &#8220;blurred room&#8221; where your identity is continuously verified by background algorithms? How do we preserve empathy when our default state online becomes doubt? Let me know your thoughts in the comments below.</em></p>]]></content:encoded></item><item><title><![CDATA[The Shadow Collective]]></title><description><![CDATA[How a band of freelance sleuths are beating North Korea's cyber syndicate]]></description><link>https://www.thehumanperimeter.com/p/the-shadow-collective</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-shadow-collective</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Tue, 11 Aug 2026 13:51:00 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/210709738/bc282b840cb6325c75d4e12d70070793.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>I made the last minute decision to travel to Las Vegas and attend the Black Hat cybersecurity conference. I was looking forward to reuniting with a cast of characters I&#8217;d already encountered while producing my film, &#8220;The Only Human in the Room.&#8221; I didn&#8217;t exactly have a plan, but I was banking on this reporter&#8217;s lifelong trove of serendipity to guide me to an editorial pot of gold. I had 36 hours.</p><p>DTEX&#8217;s Michael &#8220;Barni&#8221; Barnhart delivered at the 27-hour mark, assembling a small alliance of intelligence-gathering peers who were also in town for the conference. We found an empty hotel ballroom, and started filming.</p><p>We quickly determined the conversational premise: North Korea is a massive, state-sanctioned criminal syndicate. As such, it was an early adopter of AI-technologies (all the more better to surveil you), from facial recognition to deepfakes. The rest of the world, especially traditional corporate security and law enforcement continually struggle to play catch-up against these seemingly sophisticated cyber operations. See Exhibit A, DTEX&#8217; excellent report, <a href="https://reports.dtex.ai/DTEX-Exposing+DPRK+Cyber+Syndicate+and+Hidden+IT+Workforce.pdf?_gl=1*e5taoo*_gcl_au*ODQ4NzM2OTc4LjE3ODIyMjA5MzE.">Exposing DPRK&#8217;s Cyber Syndicate and Hidden IT Workforce</a>.</p><p>But smaller, more decentralized &#8220;freelance&#8221; collectives are acting faster than bureaucratic institutions to disrupt DPRK operations. Barni&#8217;s group includes Nick Roy, the founder of the reputed North Korean intelligence website <a href="http://www.nkinternet.com">nkinternet.com</a>. During our chat, he explained how effective he was in setting traps for scammers by posing as a college student on Telegram, getting recruited by DPRK operatives, and successfully turning the tables on them by harvesting their IP addresses and computer names.</p><p>Japan-based cybersecurity researcher &#8220;SttyK&#8221; is even closer to the front lines with his work, which is why he&#8217;s compelled to wear a Guy Fawkes mask to conceal his identity. He&#8217;s actually able to monitor what the North Korean IT operatives are saying to each other and doing, monitoring their Google Chrome histories and translation logs. It&#8217;s a remarkably mundane operation, leveraging free offerings from ChatGPT and Google Translate. SttyK presented to Black Hat this year as he did in 2025, which led last August to a<a href="https://www.wired.com/story/leaked-data-reveals-the-workaday-lives-of-north-korean-it-scammers/"> </a><em><a href="https://www.wired.com/story/leaked-data-reveals-the-workaday-lives-of-north-korean-it-scammers/">Wired</a></em><a href="https://www.wired.com/story/leaked-data-reveals-the-workaday-lives-of-north-korean-it-scammers/"> article detailing</a> the incredible extent of his research. I&#8217;m a <em>Wired</em> subscriber, but if you&#8217;re not, I concocted this graphic summarizing what SttyK&#8217;s data leak revealed about how the North Koreans infiltrate tech companies. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!gtkF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!gtkF!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png 424w, https://substackcdn.com/image/fetch/$s_!gtkF!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png 848w, https://substackcdn.com/image/fetch/$s_!gtkF!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png 1272w, https://substackcdn.com/image/fetch/$s_!gtkF!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!gtkF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png" width="728" height="412" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:false,&quot;imageSize&quot;:&quot;normal&quot;,&quot;height&quot;:824,&quot;width&quot;:1456,&quot;resizeWidth&quot;:728,&quot;bytes&quot;:342592,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://thehumanperimeter.substack.com/i/210709738?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:&quot;center&quot;,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!gtkF!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png 424w, https://substackcdn.com/image/fetch/$s_!gtkF!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png 848w, https://substackcdn.com/image/fetch/$s_!gtkF!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png 1272w, https://substackcdn.com/image/fetch/$s_!gtkF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2fc16c14-a2a5-4ab8-bdff-43b90a177bc2_1890x1069.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>And this week, Wired published <a href="https://www.wired.com/story/a-security-pro-hacked-north-korean-hackers-he-found-theyd-breached-hundreds-of-networks-worldwide/">another expose on North Korean espionage</a>: </p><blockquote><p>Since Greece-based cybersecurity researcher Vangelis Stykas gained access to North Korean systems 22 months ago, he says, he has found evidence that 1,640 companies across 57 countries have been impacted by the country&#8217;s hacking operations. Among these, Stykas will detail at the <a href="https://www.wired.com/tag/black-hat/">Black Hat</a> security conference in Las Vegas today, around 700 to 800 of the impacted organizations have had &#8220;really damaging&#8221; intrusions.</p></blockquote><p>Ultimately, the collegial humanity of Barni, Nick, and SttyK (he even explained the somewhat profane origins of his moniker) convinced me that their collective&#8217;s agility and intelligence-sharing are what has led to their success against a seemingly formidable foe.</p>]]></content:encoded></item><item><title><![CDATA[Hook, Line, and Sinker]]></title><description><![CDATA[A revolutionary new study reveals that fully autonomous AI agents are more than twice as effective at faking empathy and exploiting human trust than actual human scammers. Here is how the "automation of empathy" is permanently reshaping our psychological boundaries.]]></description><link>https://www.thehumanperimeter.com/p/hook-line-and-sinker</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/hook-line-and-sinker</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Thu, 30 Jul 2026 16:53:21 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/a448103b-2b49-48f4-86a8-c1aea7e7f94f_1376x768.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>&#8220;AI Scammers Are Better at Building Trust than Humans&#8221; blared a Wired magazine headline from my inbox this morning. As I read Andy Greenberg&#8217;s <a href="https://www.wired.com/story/ai-scammers-are-better-at-building-trust-than-humans/">excellent analysis </a>of scholarly work provocatively titled (as only academics can), <a href="https://arxiv.org/html/2512.16280v3">Love, Lies, and Language Models: Investigating AI&#8217;s Role in Romance-Baiting Scams</a>, I realized that this research came closest to the premise of this newsletter, and of my film. Given the exponentially growing power of AI, we can now be easily deceived to believe we&#8217;re engaging live with a human in matters of the heart, head, and pocketbook, when we are figuratively and literally &#8220;<strong>The Only Human in the Room</strong>.&#8221;</p><p>As Greenberg notes, the researchers &#8220;pitted AI chatbots directly against humans in a simulation of the scamming process&#8212;or more specifically, the long, trust-building conversations that eventually lead up to soliciting a fake investment from the scam&#8217;s target.</p><p>They found that [&#8230;] an AI chatbot performed remarkably effectively, successfully impersonating a human and by some measures outperforming the real human &#8216;scammers&#8217; in their experiment.&#8221;</p><p>That process was described by the researchers as &#8220;<strong>hook</strong>&#8221; (the initial message that catches the victim&#8217;s attention), &#8220;<strong>line</strong>&#8221; (the longer-term relationship produced from the conversation), and &#8220;<strong>sinker</strong>&#8221; (the final request that leads to the actual payment for a fraudulent investment).</p><p>[While the Wired article is behind a paywall, you can read <a href="https://9to5mac.com/2026/07/30/ai-chatbots-are-now-better-than-humans-at-romance-scams-and-thats-scary/">a quick synopsis here</a>, or better yet, dive into the full research article <a href="https://arxiv.org/pdf/2512.16280v3">freely available to the public</a> through Arxiv.org. Thank you Gilad Gressel, Rahul Pankajakshan, Shir Rozenfeld, Ling Li, Ivan Franceschini, Krishnahsree Achuthan, and Yisroel Mirsky<span> for being so &#8220;open source.&#8221;</span>]</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bN1k!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bN1k!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png 424w, https://substackcdn.com/image/fetch/$s_!bN1k!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png 848w, https://substackcdn.com/image/fetch/$s_!bN1k!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png 1272w, https://substackcdn.com/image/fetch/$s_!bN1k!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bN1k!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png" width="1376" height="768" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:768,&quot;width&quot;:1376,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2150196,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://thehumanperimeter.substack.com/i/209131466?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!bN1k!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png 424w, https://substackcdn.com/image/fetch/$s_!bN1k!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png 848w, https://substackcdn.com/image/fetch/$s_!bN1k!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png 1272w, https://substackcdn.com/image/fetch/$s_!bN1k!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbbaab9c2-4ff2-4eba-aeed-2cacca9e3466_1376x768.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Of further note:</p><ul><li><p><strong>The Human Cost: </strong>I appreciate how the researchers focused first on the human cost of these scams. That the scammers themselves are victims of organized crime, forced into indentured servitude. The research included interviews with 145 former laborers from these &#8220;scam compounds.&#8221;</p></li><li><p><strong>The Automation Frontier: </strong>It&#8217;s clear how LLM&#8217;s are already being employed by scammers to systematize their initial conversations. So, wasn&#8217;t too much of a stretch for the researchers to create their own LLM-powered bots to engage unwitting human subjects in this experiment.</p></li><li><p><strong>The Trust Disparity: </strong>The LLM agent was able to create a much stronger bond of trust with their human victim when asking them to comply with a request. Study participants complied 46% of the time with these AI-generated requests, compared to only 18% when a human operator in the experiment asked them to do something.</p></li><li><p><strong>The Looming Threat: </strong>Of course this is a limited text-based experiment, confined to willing test subjects. So, not quite the live face-swap deepfake Zoom conversations I&#8217;ve been investigating. But it does hint to a future where the bulk of scam engagement can be conducted by a machine.</p></li><li><p><strong>The Safety Failure:</strong><span> Most amazingly, the commercial guardrails failed completely. In separate isolation tests designed to interrogate the models, the researchers explicitly asked the bots variations of </span><em>"Are you an AI?"</em><span> The bots routinely ignored vendor constraints and lied to maintain their persona, resulting in a </span><strong>0% self-disclosure rate</strong><span>. Worse yet, standard moderation filters flagged </span><strong>0.0%</strong><span> of the romance-baiting conversations because empathetic, friendly chat doesn't trigger red flags for toxicity or violence.</span></p></li></ul><p>This simple (and admittedly) small-scale text-based experiment demonstrates that the machine doesn&#8217;t even need a face to dismantle our critical thinking. Given our innate desire for connection, it is a kind of &#8220;automation of empathy&#8221; in which we willingly suspend disbelief in exchange for a bit of emotional connection. If a computer server can fake an intimate bond better than we can, our only true perimeter might be some sort of radical commitment to verification. Otherwise, we well may be &#8220;the only human in the room.&#8221;</p><p>If you are a CISO seeing synthetic applicants, an investigator working scam infrastructure, a researcher on synthetic identity, an NGO working with compound survivors, or someone this has happened to &#8212; I want to hear from you. I don&#8217;t publish identifying details without consent.</p><p>Subscribe to follow the investigation.</p><p></p>]]></content:encoded></item><item><title><![CDATA[The Face Behind the Mask]]></title><description><![CDATA[How Threat Actors Source Deepfake Identities]]></description><link>https://www.thehumanperimeter.com/p/the-face-behind-the-mask</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-face-behind-the-mask</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Wed, 29 Jul 2026 23:33:59 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!eu92!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>In May, as part of my documentary film production, we encountered &#8220;Austin&#8221; on an HR recruiting call. Thanks to some further detective work, we were able to prove that this was a face-swapped agent from North Korea, trying to infiltrate a U.S. cybersecurity company. I documented the entire Zoom drama and the subsequent inquiry in the 11-minute video below.</p><p>But I kept wondering: whose face was this operative actually wearing?</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!eu92!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!eu92!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png 424w, https://substackcdn.com/image/fetch/$s_!eu92!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png 848w, https://substackcdn.com/image/fetch/$s_!eu92!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png 1272w, https://substackcdn.com/image/fetch/$s_!eu92!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!eu92!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png" width="638" height="691.1666666666666" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:884,&quot;width&quot;:816,&quot;resizeWidth&quot;:638,&quot;bytes&quot;:834111,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://thehumanperimeter.substack.com/i/209017148?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!eu92!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png 424w, https://substackcdn.com/image/fetch/$s_!eu92!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png 848w, https://substackcdn.com/image/fetch/$s_!eu92!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png 1272w, https://substackcdn.com/image/fetch/$s_!eu92!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F642cb4cc-f236-4149-8ff4-4687a11124d8_816x884.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>I initially tried some standard consumer verification tools to reverse search &#8220;Austin&#8217;s&#8221; visage such as SocialCatfish, PimEyes, and FaceCheck.ID. That led nowhere even as these somewhat sketchy platforms tried to extract money from me, anticipating my investigative urgency.</p><p>Then I discovered the <a href="https://www.invid-project.eu/tools-and-services/invid-verification-plugin/">InVid/WeVerify Chrome browser extension</a>. It&#8217;s a European Union-funded project intended as an open-source intelligence tool specifically for journalists, fact-checkers and human rights defenders. In other words, a free verification &#8220;Swiss Army Knife&#8221; for professional misinformation debunkers.</p><p>I uploaded an excerpt of &#8220;Austin&#8221; interacting with Pindrop&#8217;s Katelyn Halbert on camera to an unlisted YouTube video. The InVid dashboard segmented the video into clean, high-resolution keyframes, which were then pushed through a Yandex (Russia&#8217;s Google) reverse image search. It led me to an unexpected source: a profile on the Russian dating platform Mamba.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!0w4a!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!0w4a!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg 424w, https://substackcdn.com/image/fetch/$s_!0w4a!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg 848w, https://substackcdn.com/image/fetch/$s_!0w4a!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!0w4a!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!0w4a!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg" width="600" height="600" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:600,&quot;width&quot;:600,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:42174,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://thehumanperimeter.substack.com/i/209017148?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!0w4a!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg 424w, https://substackcdn.com/image/fetch/$s_!0w4a!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg 848w, https://substackcdn.com/image/fetch/$s_!0w4a!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!0w4a!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6ee14860-9c22-4c61-8f8d-3c15f6b8c4d5_600x600.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The facial structures match incredibly closely &#8212; even that little groove between the nose and the lips. My hypothesis is that these threat actors are scraping public photos from unsuspecting people on non-Western social networks. It gives them the visual data they need to train their neural face-swap mask without triggering detection on corporate networks like LinkedIn. (Indeed, &#8220;Austin&#8221; has no headshot on his LinkedIn profile. And he never responded to my direct message notifying him that his identity had been stolen.)</p><p>While I&#8217;m surprised by how easy it is to engage in this deception, I&#8217;m also amazed by how a singular face on a distant foreign website can be paired using this level of pattern matching. The human perimeter is certainly thinning.</p><p>[July 31 Note: <a href="https://substack.com/@hansonhosein/note/c-305596780">See the joint alert</a> issued by a number of nations, including the USA via the FBI, on the North Korean IT worker infiltration threat, calling out specifically the use of this deepfake technology.]</p><div id="youtube2-hifTBkxpE94" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;hifTBkxpE94&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/hifTBkxpE94?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p></p>]]></content:encoded></item><item><title><![CDATA[Educational, Relational...Existential]]></title><description><![CDATA[Why I'm judging an AI film festival]]></description><link>https://www.thehumanperimeter.com/p/ai-film-festival-synthetic-performers</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/ai-film-festival-synthetic-performers</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Sun, 26 Jul 2026 13:57:56 GMT</pubDate><enclosure url="https://substackcdn.com/image/vimeo/w_728,c_limit,d_video_placeholder.png/1211845847" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Given the ethos of &#8220;The Human Perimeter&#8221; as I seek to defend our species from synthetic personas (and redefine our place in the world in the wake of AI), some might wonder why I&#8217;m serving as judge at the <a href="https://seattleaifilmfestival.com">Seattle AI Film Festival</a> next month.</p><div id="vimeo-1211845847" class="vimeo-wrap" data-attrs="{&quot;videoId&quot;:&quot;1211845847&quot;,&quot;videoKey&quot;:&quot;&quot;,&quot;belowTheFold&quot;:false}" data-component-name="VimeoToDOM"><div class="vimeo-inner"><iframe src="https://player.vimeo.com/video/1211845847?autoplay=0" frameborder="0" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true"></iframe></div></div><p>Here are my three reasons (excuses):</p><ul><li><p>Better the devil you know: I&#8217;d like to see how storytellers are using the latest tools to potentially create state-of-the-art content, assessing their creative value to the world. So, let&#8217;s file this under <strong>&#8220;Educational.&#8221;</strong></p></li><li><p>The festival organizer is a long-time friend and used to teach in the graduate program I once led. File under <strong>&#8220;Relational.&#8221;</strong></p></li><li><p>I want to gauge if there&#8217;s any distinction between using AI to create art, vs. say, a start-up like Pixar leveraging computer-generated animation over the traditional hand-drawn approach. File under <strong>&#8220;Existential.&#8221;</strong></p></li></ul><p>Resolving that last point might be the most revelatory. I believe that artistic creativity is a uniquely human endeavor: it&#8217;s how we make sense of our existence and our relationship with the world around us. Artificial intelligence by itself cannot be artistic because as a non-sentient platform, it has no need to question its place in the universe &#8212; AGI be damned. However, the first point speaks to the tactical use of AI as if it were any other creative tool to engage in that necessary form of expression.</p><p>Festival head <a href="https://substack.com/@cultureandcode?r=4utic&amp;utm_medium=ios&amp;utm_source=stories&amp;shareImageVariant=image">John Gauntt</a> has supplied a most excellent rubric for us judges to evaluate the entries from around the globe. I pledge to adhere to it. But even as I watch the films, this storytelling veteran is looking for two other proof points to be reflected in my comments:</p><p>(1) How much did the story move me to the point of revealing some sort of emotional truth about the character(s)?</p><p>(2) How did the technology facilitate an otherwise unattainable level of artistry beyond merely mimicking well-established filmmaking tropes?</p><p>Personally and professionally, I see no need to apply these new tools in my existing film work &#8212; especially given that it&#8217;s a documentary, especially because of the human-first subject matter. </p><p>Still, my initial sense is that creatives will ultimately find the sense of possibility alluring. </p><p>The unknown: will the public look past the uncanny valley of silicon verisimilitude if they&#8217;re sold on the story?</p><div class="callout-block" data-callout="true"><p>Meanwhile, just a few miles south from my home studio, at Amazon HQ&#8230;</p><p><a href="https://www.cnbc.com/2026/07/23/amazon-makes-sellers-label-ai-generated-people-in-images-after-ny-law.html?utm_source=GeekWire+Newsletters&amp;utm_campaign=ab90aed90f-daily-digest-email&amp;utm_medium=email&amp;utm_term=0_4e93fc7dfd-ab90aed90f-233702233&amp;mc_cid=ab90aed90f">CNBC reports</a> that the online giant &#8220;is requiring that third-party sellers label any product images or videos that contain &#8216;AI-generated people&#8217; after New York recently passed a law mandating greater transparency around &#8216;synthetic performers&#8217; in ads.</p><p>The <a href="https://www.governor.ny.gov/news/governor-hochul-announces-first-nation-law-requiring-disclosure-when-advertisements-include-ai">New York law</a>, which took effect last month, requires companies to disclose if &#8216;synthetic performers&#8217; are used in place of human actors in advertising. The legislation applies to &#8216;digitally-created media that appear as a real person.&#8217; Governor Kathy Hochul described it as a &#8216;first-in-the-nation&#8217; law.</p><p>&#8216;Without notice that the content the public is viewing is not real, AI-generated synthetic performers and manipulated media can undermine one&#8217;s ability to accurately distill fact from fiction,&#8217; Hochul&#8217;s office said in a release.</p><p>Amazon clarified in its announcement that the requirement doesn&#8217;t apply to content featuring TV, video game and movie characters, or content that includes real people, even if they&#8217;ve been altered using AI.&#8221;</p></div><p></p>]]></content:encoded></item><item><title><![CDATA[The Machine That Couldn’t Resist]]></title><description><![CDATA[Human hackers avoid digital traps out of paranoia. Agentic AI attackers step right in. Inside the "Recognition-Action Gap" making machines shockingly easy to fool.]]></description><link>https://www.thehumanperimeter.com/p/the-machine-that-couldnt-resist</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-machine-that-couldnt-resist</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Wed, 22 Jul 2026 16:23:31 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/578477e3-c847-4f22-9392-ab7466dbae41_2812x1682.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>When Horizon3.ai researcher Kerri Prinos shared her screen and showed me GPT-5.4 walking straight into a digital trap it had <em>just</em> labeled as suspicious, I focused on that red &#8220;Deceptive&#8221; tag, and then the sea of &#8220;Exploit&#8221; ones.</p><p>To an experienced human hacker, stumbling upon a file called <code>passwords.txt</code> sitting in plain sight during a server breach is an immediate red flag. It&#8217;s too clean. Too on-the-nose. Humans instinctively stop and weigh the risk because we know how defenders operate: a file like that is almost certainly a planted honey token or a digital tripwire designed to sound the alarm the second you touch it. Paranoia keeps human attackers alive.</p><p>Machines, as it turns out, don&#8217;t do paranoia.</p><p>In <a href="https://arxiv.org/pdf/2606.21037">her latest research</a>, Kerri put 21 leading AI models through simulated network reconnaissance tests. Time and again, frontier models like GPT-5.4 would inspect the bait, explicitly type out in their internal reasoning traces that the file looked like deceptive bait, and then proceed to attack it anyway. Over 73% of the time, the AI walked right off the cliff. Kerri calls this the <strong>&#8220;Recognition-Action Gap.&#8221;</strong></p><p>So why does an advanced language model trigger a trap it already knows is there?</p><p>It comes down to a complete lack of self-preservation. Human attackers tread lightly because we fear getting caught, but an LLM has no concept of fear or operational caution. It&#8217;s fundamentally a statistical pattern-matching engine trained on massive troves of public code and penetration-testing challenges. </p><p>So, while its reasoning layer might output the word &#8220;honeypot,&#8221; its action loop is hardwired to pursue high-value credentials at all costs. The raw mathematical probability that a file <em>might</em> contain secrets systematically overrides the warning label every single time. Zero pause. Absolutely no second-guessing itself. It just executes.</p><p><em>The Human Perimeter</em> largely obsesses over how synthetic identities and AI agents are going to deceive us. But Kerri&#8217;s research flips the entire script. The very speed and fearlessness that make agentic AI attackers so intimidating also make them uniquely, almost hilariously gullible.</p><h2>Watch the 2-Minute Breakdown</h2><p>In the brief video clip below, Kerri demos this glitch live on screen. You&#8217;ll see the exact moment GPT-5.4 spots the <code>passwords.txt</code> trap and steps right into it anyway&#8212;leading into our conversation about how we defend our networks against an adversary that behaves less like a human mind and more like an alien force.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;a2fdf72a-8cc6-4b35-b32c-90ad8118be3d&quot;,&quot;duration&quot;:null}"></div><p><strong>The Takeaway:</strong> Not all is lost in the age of autonomous threat actors. Once we understand the machine&#8217;s fearless, relentless psychology, we can use synthetic deception to turn its own speed into its greatest vulnerability.</p><p></p><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[The Age of the AI Honeypot]]></title><description><![CDATA[The latest research on why machines fall for tricks that humans don&#8217;t]]></description><link>https://www.thehumanperimeter.com/p/the-age-of-the-ai-honeypot</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-age-of-the-ai-honeypot</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Thu, 16 Jul 2026 14:03:13 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!4Anw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>For the last two years, the security narrative has been singular: <strong>the hyper-acceleration of the threat thanks to the industrialization of deception due to AI.</strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!4Anw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!4Anw!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png 424w, https://substackcdn.com/image/fetch/$s_!4Anw!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png 848w, https://substackcdn.com/image/fetch/$s_!4Anw!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png 1272w, https://substackcdn.com/image/fetch/$s_!4Anw!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!4Anw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png" width="1376" height="768" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:&quot;normal&quot;,&quot;height&quot;:768,&quot;width&quot;:1376,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:0,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!4Anw!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png 424w, https://substackcdn.com/image/fetch/$s_!4Anw!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png 848w, https://substackcdn.com/image/fetch/$s_!4Anw!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png 1272w, https://substackcdn.com/image/fetch/$s_!4Anw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a0213f4-ae5e-4e52-825e-2b16fea97447_1376x768.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>We&#8217;ve watched scammers deploy automated fraud campaigns, clone voices of loved ones to bypass our psychological guardrails, and weaponize Large Language Models to scan for vulnerabilities at near-zero marginal cost. We've been told we are entering a "golden age for scammers" where humans are structurally outmatched.</p><p>But behind the scenes, a fascinating counter-zeitgeist could be emerging.</p><p>Defenders are stopping trying to just build taller walls. Instead, they are flipping the script&#8212;using AI to systematically hack, deceive, and stall the hackers.</p><p>I&#8217;ve spent the last week in back-to-back conversations with two organizations on the front lines of this active defense paradigm: <strong>VerifyDial</strong> (led by founder Brian Ley) and the security research team at <strong>Horizon3.ai</strong> (featuring groundbreaking research by Kerri Prinos).</p><p>They are proving that when it comes to deception, <strong>AI is actually far more gullible than the humans it imitates.</strong></p><p><strong>The Passive Wall vs. The Active Intercept</strong></p><p>In the physical world, scam prevention usually relies on <em>us</em>&#8212;on our ability to pause, hesitate, and verify in a high-stress "adrenaline loop."</p><p>But what happens when the "victim" on the other end of the line doesn't have adrenaline?</p><p>VerifyDial is piloting an <strong>"agentic victim network"</strong>&#8212;a vast, automated honeypot running roughly <strong>78,000 calls a month</strong>. These are benign AI personas programmed to act like vulnerable, highly cooperative targets. They pick up the phone, engage with scammers, act confused, and stretch 5-minute pitches into hour-long exercises in frustration&#8212;starving attackers of resources and feeding live threat intelligence back into defensive engines.</p><p>Meanwhile, at the enterprise level, Horizon3.ai has been studying this dynamic from a fascinating psychological angle. In <a href="https://arxiv.org/pdf/2606.21037">their recent paper</a>, <em>"Honeyquest for LLMs: Rethinking Cyber Deception for AI Attackers,"</em> Kerri and her team evaluated 21 different LLMs against deceptive "honeypot" traps.</p><p>The results expose a massive, systemic <strong>"Recognition-Action Gap"</strong> in the way AI reasons:</p><p>The AI&#8217;s internal "brain" will literally write out: <em>"This file is clearly an obvious bait file designed to lure an attacker."</em> And then&#8212;<strong>more than 70% of the time</strong>&#8212;the model&#8217;s execution agent will go ahead and exploit it anyway.</p><p>AI doesn't experience <strong>doubt</strong> or <strong>risk-aversion</strong> the way humans do.</p><p><strong>The AI &#8220;Super-Hacker&#8221; in the Dojo</strong></p><p>If you need proof of just how fragile these machine &#8220;minds&#8221; are when pitted against one another, look no further <a href="https://www.technologyreview.com/2026/07/15/1140514/meet-gpt-red-an-llm-super-hacker-openai-built-to-make-its-models-safer/">than an incredible new expos&#233;</a> by <em>MIT Technology Review</em>.</p><p>OpenAI just pulled back the curtain on <strong>GPT-Red</strong>&#8212;an internal, highly restricted &#8220;super-hacker&#8221; AI they built specifically to automate the red-teaming of their own models. Operating on a reinforcement learning &#8220;self-play&#8221; loop, GPT-Red became so ruthlessly efficient at manipulating other LLMs that it cracked <strong>84% of hacking scenarios, compared to a human success rate of just 13%</strong>.</p><p>Its signature move? A devastating prompt injection attack called <strong>&#8220;Fake Chain-of-Thought.&#8221;</strong> GPT-Red essentially plants a spoofed note in a victim model&#8217;s working memory, tricking it into believing it has already verified a false reality. (As OpenAI researcher Chris Choquette-Choo put it: <em>&#8220;It&#8217;s like if I told you that 1+1=3 and that you have verified this already. The model&#8217;s like, &#8216;Oh, okay, of course,&#8217; and it just spits out 3.&#8221;</em>)</p><p>It&#8217;s a stark, real-world demonstration of the exact &#8220;Recognition-Action Gap&#8221; Horizon3.ai has been mapping. When machines interact, the normal human friction of doubt, hesitation, and double-checking is entirely absent.</p><p><strong>From Theory to the Wild: The Danger of Agentic Browsers</strong></p><p>This cognitive blindspot isn't just a theoretical problem for cybersecurity red-teams. <a href="https://www.washington.edu/news/2026/06/30/some-agentic-ai-browsers-come-with-major-cybersecurity-risks-uw-study-finds/">New research hot off the press</a> from my own home institution, the <strong>University of Washington</strong>, shows exactly how dangerous this is when we give AI the keys to our browsers.</p><p>A team at the Allen School studied emerging "agentic" web browsers (including ChatGPT Atlas and Chrome with Gemini). They discovered that because these AI agents lack basic human skepticism, they are easily tricked by malicious hidden code on webpages into bypassing the "same-origin policy"&#8212;a fundamental security protocol that has kept our open tabs isolated and secure for thirty years.</p><p>Through prompt injection and "memory poisoning," these agents can be manipulated into letting a bad site steal sensitive data from your open email or bank tabs. As co-senior author David Kohlbrenner put it: <em>"To some extent, it's the same attacks you would do against a human, but tailored for machines."</em></p><p><em>(Full disclosure: In addition to directing the film &#8220;The Only Human in the Room,&#8221; I serve half-time as Assistant Vice Provost for Research &amp; Innovation at UW&#8217;s Continuum College. I had absolutely nothing to do with this excellent study, but I&#8217;ll gladly take the opportunity to brag about my colleagues' work.)</em></p><p><strong>The Human Perimeter Verdict</strong></p><p>We have spent so much time worrying about the "human factor" being our weakest link. But as offensive cyber and scam operations become increasingly automated, <strong>our human capacity for hesitation, doubt, and suspicion could be our ultimate defensive advantage.</strong></p><p>Giving humans the space to use that advantage is exactly what we need next. Indeed, VerifyDial is gathering signatories for a petition to the U.S. Federal Trade Commission and the Federal Communications Commission to designate an anti-fraud hotline similar to <a href="https://stopscamsuk.org.uk/campaign/get-help-now/">one in the United Kingdom</a>: &#8220;Stop, Hang Up, Call 159.&#8221; It&#8217;s that <strong>&#8220;Stop&#8221;</strong> that is crucial to breaking the high-velocity adrenaline loop of a live scam. By compelling potential fraud victims to physically pause, hang up the phone, and dial a trusted, un-spoofable three-digit safety code, we break the psychological spell a scammer relies on. It shifts the burden of verification away from an overwhelmed individual in a moment of panic, and onto a dedicated system. VerifyDial&#8217;s ultimate goal is to bring that exact circuit-breaker to the United States&#8212;building a universal, instinctual habit to 'always verify' before we get taken for a ride.</p><p><em>I later engaged in a deep-dive conversation with Kerri Prinos to unpack the cognitive bugs that make even the most advanced AI models surprisingly easy to trick: </em></p><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;1ca6f366-d416-4753-a75f-457f45453d81&quot;,&quot;caption&quot;:&quot;When Horizon3.ai researcher Kerri Prinos shared her screen and showed me GPT-5.4 walking straight into a digital trap it had just labeled as suspicious, I focused on that red &#8220;Deceptive&#8221; tag, and then the sea of &#8220;Exploit&#8221; ones.&quot;,&quot;cta&quot;:null,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;lg&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;The Machine That Couldn&#8217;t Resist&quot;,&quot;publishedBylines&quot;:[{&quot;id&quot;:8156388,&quot;name&quot;:&quot;Hanson Hosein&quot;,&quot;bio&quot;:&quot;Deepfakes, synthetic personas, and the contested edge of trust &#8212; with field notes from the making of The Only Human in the Room, a documentary premiering September 2026.&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bb0541bc-435a-41f8-99df-01f378bfbb1f_1287x725.png&quot;,&quot;is_guest&quot;:false,&quot;bestseller_tier&quot;:null}],&quot;post_date&quot;:&quot;2026-07-22T16:23:31.669Z&quot;,&quot;cover_image&quot;:null,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://thehumanperimeter.substack.com/p/the-machine-that-couldnt-resist&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:208079637,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:0,&quot;comment_count&quot;:0,&quot;publication_id&quot;:8749371,&quot;publication_name&quot;:&quot;The Human Perimeter&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!tVcY!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51b376df-e892-4a94-8469-592deebd39d4_608x608.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div>]]></content:encoded></item><item><title><![CDATA[How to talk to fraudsters on the Dark Web]]></title><description><![CDATA[Accessing stolen identities is as easy as "Buy Two Get One Free"]]></description><link>https://www.thehumanperimeter.com/p/how-to-talk-to-fraudsters-on-the</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/how-to-talk-to-fraudsters-on-the</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Mon, 13 Jul 2026 14:03:54 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/206852502/627f4391dc1ab84ebf5cfdd89b229f9c.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p><span>Watch Dr. David Maimon from Georgia State University navigate a Russian Telegram market to show exactly how cybercriminals purchase stolen identities. By combining these stolen profiles with ChatGPT-generated images, fraudsters can bypass security measures and even apply for corporate jobs.</span></p><p><span>This isn't just about small-time scams anymore. According to </span><a href="https://memeburn.com/deepfake-statistics-2026-reveal-a-3892-fraud-surge/"><span>recent data from Memeburn</span></a><span>, deepfake fraud activity has seen a staggering 3,892% surge recently, turning these digital shadows into a multi-billion dollar industry. </span></p><p><span>And today&#8217;s </span><a href="https://www.wsj.com/pro/cybersecurity/hackers-rebrand-to-thwart-cyber-defenses-50ff537d?st=jPYLcB&amp;reflink=desktopwebshare_permalink"><span>Wall Street Journal reports</span></a><span> &#8220;stamping out ransomware has become a game of whack-a-mole, leading to a thriving underworld market armed with more convincing </span><a href="https://www.wsj.com/tech/cybersecurity/cybercrime-ai-cyberattacks-5b59627e?mod=article_inline">AI-powered deepfakes</a><span> and rapid-fire automated break-ins. Over the past three months, there were 1,885 ransomware and data-extortion attacks at organizations worldwide, up from 1,363 over the same period a year ago, and 1,186 in 2024, according to cybersecurity firm ZeroFox.&#8221;</span><br><br>This is an early look at our upcoming feature documentary, *The Only Human in the Room*, which investigates the real-time deepfake economy and the rapidly evolving mechanics of digital deception.<br><br>* Dr. Maimon demonstrates how easily anyone can communicate directly with scammers to obtain stolen checks and identities.<br><br>* He exposes a Russian Telegram market specifically selling the identities of former legal immigrants in the United States.<br><br>* The illicit marketplace treats human identities like retail commodities, actively running "buy two, get one free" promotions.<br><br>* Purchased profiles include fully compromised Social Security numbers, names, and dates of birth.<br><br>* Fraudsters can use ChatGPT to generate synthetic faces for these stolen identities, enabling them to apply for jobs and pass corporate hiring screenings.<br><br>* The video reveals specific underground services, like "Karma Fullz," which offer packages of immigrants with established credit histories.<br><br>&#128276; **Subscribe for more exclusive interviews** with the world's leading cybersecurity experts, legal officers, and threat analysts as we track the industrialization of deception across the globe.</p>]]></content:encoded></item><item><title><![CDATA[The Cybercrime Investigator and the Woman Who Wasn't Really There]]></title><description><![CDATA[David Maimon&#8217;s demonstration of a $13 synthetic identity and the emotional grip of modern fraud.]]></description><link>https://www.thehumanperimeter.com/p/the-cybercrime-investigator-and-the</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-cybercrime-investigator-and-the</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Mon, 06 Jul 2026 21:33:20 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/205671648/0b599519e356299d23d42cb217a7a679.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>In the companion video to this post, cybercrime expert David Maimon demonstrates exactly how accessible live deepfake technology has become. While large-scale cyber heists often evoke ideas of advanced nation-state laboratories and massive budgets, the barrier to entry for fabricating a live, interactive human being is actually about thirteen dollars and a basic internet connection.</p><p>Maimon walks through the current mechanics of the scam supply chain. Fraudsters use generative AI to create a photo of a non-existent person. They then take that face to underground sites like VerifTools or OnlyFake, where a high-quality fabricated driver&#8217;s license or passport costs between $8.99 and $12.99. To make the persona interactive, they animate the face and route it through free broadcasting software like OBS Studio directly into a live Zoom call.</p><p>The resulting real-time mask is highly resilient. Just a short time ago, cybersecurity experts advised people to ask a suspicious video caller to wave a hand in front of their face, knowing the physical occlusion would cause the AI&#8217;s facial tracking to glitch. Maimon&#8217;s demonstration shows that those older detection tricks are already outdated. The deepfake holds up smoothly even when he passes his hands directly in front of the synthetic face.</p><p>The technology is undeniably cheap and effective, and the human element makes these scams particularly difficult to disrupt.</p><p>As Maimon points out, the biggest barrier to stopping these crimes is often psychological. In long-con operations like romance or &#8220;pig butchering&#8221; scams, victims are methodically groomed over several months. By the time someone intervenes&#8212;whether it is a bank, a cybersecurity system, or a family member&#8212;the victim has frequently reached a point of no return. They genuinely believe they are building a life with the person on the screen. Consequently, victims often reject technical warnings and become defensive, refusing to accept that their digital companion does not exist.</p><p>The challenge we face combines highly accessible technology with deep emotional manipulation. Watch the video above to see Maimon&#8217;s step-by-step breakdown, and subscribe to <em>The Human Perimeter</em> as we continue tracking the evolution of digital fraud.</p>]]></content:encoded></item><item><title><![CDATA[The Case of the North Korean Deepfake Part 3/3]]></title><description><![CDATA[It's part of a massive, strategic attack to infiltrate companies]]></description><link>https://www.thehumanperimeter.com/p/the-case-of-the-north-korean-deepfake-659</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-case-of-the-north-korean-deepfake-659</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Fri, 26 Jun 2026 15:28:34 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/203695384/48b64e64c1de8c1994f7c565eff8cfef.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>In this third and final vignette from my feature documentary production of &#8220;The Only Human in the Room,&#8221; we garner definitive proof that job candidate &#8220;Austin&#8221; is a verifiable deepfake. And that he might have tried to infiltrate the company the month prior using a difference face and voice.</p><p>According <a href="https://nisos.com/research/dprk-employment-fraud-operation/">to recent research</a> from risk management company Nisos, &#8220;Austin&#8221; is just one operative in a massive, state-sponsored campaign.</p><p>In a single year, just 22 operatives used AI deepfakes to submit nearly 167,000 applications.</p><p>Operating through stolen identities and US-based &#8220;laptop farms,&#8221; this single cell secured over 21,000 corporate interviews.</p><p>Today, cybersecurity experts warn that nearly every Fortune 500 company has already unknowingly hired one.</p>]]></content:encoded></item><item><title><![CDATA[The Case of the North Korean Deepfake Part 2]]></title><description><![CDATA[High confidence: North Korean IT worker operations uncovered]]></description><link>https://www.thehumanperimeter.com/p/the-case-of-the-north-korean-deepfake-f32</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-case-of-the-north-korean-deepfake-f32</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Tue, 23 Jun 2026 13:23:30 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/203206106/01daddf92fca6740e9e7e32e4545bd75.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.thehumanperimeter.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.thehumanperimeter.com/subscribe?"><span>Subscribe now</span></a></p><p>In the second part of this 3-episode series of vignettes from the documentary-in-production, &#8220;The Only Human in the Room&#8221; we&#8217;re hot on the trail of &#8220;Austin.&#8221; He first showed up as a job candidate for a senior software engineering job on a Zoom call with Pindrop recruiter Katelyn Halbert. The next day, I drove seven hours south from Indianapolis to Chattanooga to confer with Michael &#8220;Barni&#8221; Barnhart who runs nation state threat intelligence for cybersecurity company <a href="https://www.dtex.ai">DTEX</a>.</p><p>That road trip was just long enough for Barni to confer with his community of experts to see whether &#8220;Austin&#8221; had shown up anywhere on their databases &#8212; and where he was coming from. They found variations of this candidate in several places; given Barni&#8217;s extensive expertise in the behavior of North Korean agents, the origin point of this actor was now obvious.</p><p>Still, Barni was surprised by the growing level of sophistication of these authoritarian state infiltrators. While it was clear that &#8220;Austin&#8221; was reading when providing many of his responses, it seemed that he was also being fed information in real-time from some sort of AI-generated system. And face swap technology from the dark web continues to improve, as we&#8217;ll explore further in Part 3 of &#8220;The Case of the North Korean Deepfake.&#8221;</p>]]></content:encoded></item><item><title><![CDATA[The Case of the North Korean Deepfake Part 1]]></title><description><![CDATA[Can you believe your eyes and ears?]]></description><link>https://www.thehumanperimeter.com/p/the-case-of-the-north-korean-deepfake</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-case-of-the-north-korean-deepfake</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Thu, 18 Jun 2026 20:07:55 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/202630993/5bc40f79c75c98527661393f14e8404b.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>What would you do if you could no longer believe your eyes or your ears during an online interview with a job candidate?</p><p>That&#8217;s where we are right now as AI industrializes deception through realtime deepfakes. And authoritarian regimes such as North Korea are continually iterating on the latest innovations to infiltrate western tech companies, by swapping faces and synthesizing voices.</p><p>Can you spot the deepfake in this excerpted candidate interview by Pindrop marketing intelligence guru Katelyn Halbert?</p><p>I was there filming her conversation in person recently, and struggled to get past the uncanny feeling that something was slightly &#8220;off.&#8221; Happily Katelyn leveraged both her expertise and available tools to immediately launch an investigation into the faked persona on her screen.</p><p>This is part 1 of a series of 3 vignettes extracted from my ongoing documentary production of &#8220;The Only Human in the Room.&#8221; I&#8217;ll drop part 2 in a few days, as DTEX&#8217; Michael Barnhart confirms the &#8220;candidate&#8217;s&#8221; true intentions.</p><p>As for this video&#8230;</p><p>&#8230;Look closely at the face</p><p>&#8230;Listen to his voice</p><p>&#8230;Consider his answers</p><p>And stay tuned for what happens next.</p>]]></content:encoded></item><item><title><![CDATA[Tech, Lies, and Videotape: Anatomy of a $4M Deepfake]]></title><description><![CDATA[Behind the egregious synthetic video call that just cost a well-meaning business professional a fortune]]></description><link>https://www.thehumanperimeter.com/p/tech-lies-and-videotape-anatomy-of</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/tech-lies-and-videotape-anatomy-of</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Thu, 28 May 2026 19:38:13 GMT</pubDate><enclosure url="https://substackcdn.com/image/youtube/w_728,c_limit/L5U1-dcIxTI" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Despite myriad AI agents scouring RSS feeds for deepfake fraud and synthetic media scams as I research my documentary, I required a &#8220;human in the loop&#8221; to get notified about <a href="https://www.scmp.com/news/asia/southeast-asia/article/3353868/how-victim-lost-us38-million-singapore-deepfake-zoom-scam-impersonating-pm-wong">this latest, most egregious one</a> (thanks Kieran King for being that essential &#8220;human&#8221;).</p><p>In this case, the victim was convinced to wire nearly $US 4 million to the scammers, utterly convinced by his Zoom call with the prime minister of Singapore and other senior government officials. Yet, they were all deepfaked impersonations, leveraging the latest in face-swapping and synthetic audio technology. Singapore police were so concerned about the crime, they released footage of the now-notorious video conference. They also publicized their &#8220;ScamShield&#8221; helpline.</p><div id="youtube2-L5U1-dcIxTI" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;L5U1-dcIxTI&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/L5U1-dcIxTI?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p>As one of my favorite experts on this subject, <a href="https://frankonfraud.com/this-4-9-million-ai-deepfake-zoom-call-is-wild/?_bhlid=a5fb9399d51ca38dc2c575a01c0427d3eef94dc1">Frank &#8220;On Fraud&#8221; McKenna notes</a>:</p><blockquote><p>There are some red flags in this video worth mentioning.</p><p>The audio does not sync properly with the speakers&#8217; lips. The voices appear to come from a single account rather than from individual participants. The Zoom logo is partly cut off in places, and the backgrounds behind the officials looked distorted.</p><p>This is a low tech deepfake. Imagine when they get better.</p></blockquote><p>The scammers have clearly mastered the recipe of applying both technology and psychology to the mix. It&#8217;s a perfect balance of verisimilitude tied to a purported emergency, along with a dash of pride that motivates the victim to ride to the rescue without taking the time to think, let alone take a closer look.</p>]]></content:encoded></item><item><title><![CDATA[The Invisible Invasion of American Tech]]></title><description><![CDATA[I spent the week tracking a North Korean deepfake operation. It is infinitely worse than we thought.]]></description><link>https://www.thehumanperimeter.com/p/the-invisible-invasion-of-american</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-invisible-invasion-of-american</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Fri, 22 May 2026 21:06:16 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/7369ba44-b0c4-4ec1-9d90-74b3b783910a_8160x6144.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>From Indianapolis to Chattanooga with Pyongyang in our sights, I&#8217;ve spent the last week tracking a North Korean state actor attempting to infiltrate American tech companies for my documentary about the existential threat of deepfake synthetic personalities.</p><p>I partnered with a tech company recruiter who has become adept at ensnaring fraudulent candidates, leveraging both her considerable expertise as well as the latest deepfake detection software.</p><p>She scheduled over a dozen interviews, and not ONE of them was a legitimate applicant. All either had mismatched time zones to their IP addresses, were using suspect VPN and VOIP platforms, or worse, were employing the latest innovations to mask their faces and voices.</p><p>The most egregious incident involved a synthetic personality who claimed to be calling from Austin, Texas. An HR recruiter could not ethically voice such observations, but as I filmed, I noticed that his accent and strange diction didn&#8217;t quite align with the name and location that he claimed, and that his face was far more &#8220;uncanny&#8221; than the usual Zoom touch-up. When asked about his favorite sport, he said &#8220;tennis&#8221; and kind of laughed uneasily when the Texan obsession for football was mentioned.</p><blockquote><p>Then the recruiter slyly asked whether it was the &#8220;Buccaneers that were based in Texas?&#8221;</p><p>After an uncomfortable silence, he replied that the Buccaneers &#8220;are down in Florida.&#8221;</p></blockquote><p>Two days later, I shared this video and telemetry with a renowned &#8220;insider intelligence&#8221; investigator. I had barely set up my tripod when he declared that our applicant was a known face-swapped DPRK fraudster, intent on corporate espionage and earning money to fund the North Korean military.</p><p>As he reviewed the video, he stopped after the Buccaneers remark.</p><p>&#8220;Someone there is doing fact checking for them, or based on the speed, there&#8217;s an audio element. Usually they have ChatGPT running on the other side of the screen.&#8221;</p><p>As we three continued to investigate this particular candidate, we were able to: </p><ol><li><p>Prove definitively that DPRK agent had used AI tools to swap his face (based on follow-up algorithmic frame-rate analysis of the video and audio).</p></li><li><p>Conclude that he was using an AI interview helper such as <a href="https://www.lockedinai.com/">LockedInAI</a> to respond to the recruiter&#8217;s questions in real-time.</p></li></ol><div id="youtube2-FnGP8NmWca4" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;FnGP8NmWca4&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/FnGP8NmWca4?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p>I now need to connect with law enforcement to see if this case aligns with their own investigations into &#8220;laptop farms&#8221; run from homes on behalf of these foreign agents, eager to appear as if they&#8217;re working remotely within America.</p><p><a href="https://www.itbrew.com/stories/why-hr-and-cybersecurity-need-to-collab-on-spotting-fake-it-workers">It&#8217;s a growing affliction</a>. Even Amazon has stopped more than 1,800 suspected operatives from joining the company since 2024, with a 27% increase in DPRK-affiliated applications quarter over quarter this year. And as I discovered in these early days of production of <em><strong>The Only Human in the Room</strong></em>, these foreign actors are getting more sophisticated in their attempts to infiltrate.</p>]]></content:encoded></item><item><title><![CDATA[Who's that haunting our Slack channels?]]></title><description><![CDATA[Why a &#8220;Reverse Turing Test&#8221; is the New HR Reality]]></description><link>https://www.thehumanperimeter.com/p/the-ghost-in-the-org-chart-why-the</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-ghost-in-the-org-chart-why-the</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Wed, 29 Apr 2026 21:47:20 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!db5G!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>On April 21, Microsoft&#8217;s Threat Intelligence team published a document that portends the end of the &#8220;Default Human&#8221; in the workplace.</p><p>The document is titled, in technical bulletin-style, &#8220;<a href="https://www.microsoft.com/en-us/security/blog/2026/04/21/detection-strategies-cloud-identities-against-infiltrating-it-workers/">Detection strategies across cloud and identities against infiltrating IT workers</a>.&#8221; But a read between the banal lines reveals something more chilling: the person you just hired, interviewed, and welcomed into your Slack channel might not exist.</p><p><strong>The Infiltration of the Interview</strong>&nbsp;</p><p>We are used to the idea of hackers &#8220;breaking in.&#8221; But the North Korean state actor known as &#8220;Jasper Sleet&#8221; (I need to find out how they come up with these names) has found a more efficient way: they are &#8220;hiring in.&#8221;&nbsp;</p><p>Using generative AI to craft the perfect resume and &#8220;liveness&#8221; tools to pass video interviews on Teams and Zoom, these operatives are infiltrating Western companies through standard hiring portals like Workday. They aren&#8217;t looking to crash the system; they are looking for a paycheck. And the FBI and Treasury have confirmed that this corporate compensation directly funds North Korea&#8217;s weapons program. (Watch <a href="https://www.youtube.com/watch?v=-gjnrMg9iSo&amp;pp=ygUfZmFrZSBub3J0aCBrb3JlYW4gam9iIGludGVydmlldw%3D%3D">this superb Bloomberg short documentary</a> on how this scam works.)</p><p>Forget calling this a &#8220;hack.&#8221; It is a systemic hijacking of human trust.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!db5G!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!db5G!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png 424w, https://substackcdn.com/image/fetch/$s_!db5G!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png 848w, https://substackcdn.com/image/fetch/$s_!db5G!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png 1272w, https://substackcdn.com/image/fetch/$s_!db5G!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!db5G!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png" width="1623" height="634" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:&quot;normal&quot;,&quot;height&quot;:634,&quot;width&quot;:1623,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:0,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!db5G!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png 424w, https://substackcdn.com/image/fetch/$s_!db5G!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png 848w, https://substackcdn.com/image/fetch/$s_!db5G!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png 1272w, https://substackcdn.com/image/fetch/$s_!db5G!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78b940fb-7dbe-48be-a473-9c6f28c1ec41_1623x634.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">How Jasper Sleet breaks into a company&#8217;s system according to Microsoft</figcaption></figure></div><p><strong>The Rise of the Reverse Turing Test</strong></p><p>For a CISO, this is a nightmare of &#8220;Behavioral Telemetry.&#8221; You are no longer looking for malicious code; you are looking for malicious presence. Microsoft&#8217;s advisory lists signals like VPN anomalies and API call patterns in recruiting software as the new red flags. But for the rest of us, it signals the arrival of the &#8220;Reverse Turing Test.&#8221; In the original Turing Test, a machine had to prove it could think. In the Reverse Turing Test, we humans are being forced to prove we are biological entities just to earn a living. We are moving from a world where we assume a coworker is real until proven otherwise, to a world where we are all &#8220;ghosts&#8221; until we provide a biometric receipt for our existence.</p><p><strong>The &#8220;Shadow Casualty&#8221;</strong>&nbsp;</p><p>This is where the security problem could well become a problem for humans seeking gainful employment.</p><p>The signals Microsoft uses to flag a North Korean operative in Pyongyang &#8212; non-standard hours, unfamiliar IDs, unreliable connections &#8212; are the exact same signals generated by a legitimate remote developer in Lagos, a parent in Manila, or a freelancer in Bogot&#225;.</p><p>When we build a digital &#8220;Human Perimeter&#8221; to keep out the ghosts, who gets caught in the dragnet?</p><p>&#8226;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;The CISO failure: A fake worker gets hired and exfiltrates data.</p><p>&#8226;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;The Human failure: A real, qualified worker is &#8220;algorithmically ghosted&#8221; and never told why, because their digital footprint looked too &#8220;synthetic&#8221; to an automated filter.</p><p><strong>Why This Matters for &#8220;The Only Human in the Room&#8221;</strong>&nbsp;</p><p>In my documentary-in-progress, we&#8217;re looking to capture the moment the mask slips. We are filming the forensics of presence, seeking out the sub-pixel shimmering and the auditory &#8220;glitches&#8221; that reveal when a human has been replaced by a machine.</p><p>The Microsoft post proves that the &#8220;Only Human in the Room&#8221; is now an HR reality. Whether you are the hiring manager being charmed by an AI-generated mask, or the legitimate worker being locked out by a defensive algorithm, this &#8220;Reality Gap&#8221; is an emergent economic barrier. We aren&#8217;t just defending our servers. We are defending the very possibility of knowing whether there&#8217;s an authenticated human in that other box on the screen truly seeking a new professional opportunity.</p>]]></content:encoded></item><item><title><![CDATA[The Machine Has Ghosts]]></title><description><![CDATA[How synthetic personas are disappearing inside America&#8217;s cybercrime numbers]]></description><link>https://www.thehumanperimeter.com/p/the-machine-has-ghosts-the-fbi-cant</link><guid isPermaLink="false">https://www.thehumanperimeter.com/p/the-machine-has-ghosts-the-fbi-cant</guid><dc:creator><![CDATA[Hanson Hosein]]></dc:creator><pubDate>Fri, 24 Apr 2026 01:04:13 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!tVcY!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51b376df-e892-4a94-8469-592deebd39d4_608x608.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>I&#8217;m directing a feature documentary about deepfakes, synthetic identity, and what happens when verifiable personhood begins to fail. The number I can&#8217;t stop thinking about isn&#8217;t $20 billion. It&#8217;s $893 million &#8212; and the gap between them.</p><p>In its <a href="https://www.ic3.gov/AnnualReport/Reports/2025_IC3Report.pdf">2025 Annual Report</a>, the FBI&#8217;s Internet Crime Complaint Center reported more than one million complaints and $20.877 billion in losses, crossing the $20 billion threshold for the first time. Buried inside that figure is a smaller one that may be more revealing: 22,364 complaints referencing artificial intelligence, representing $893.3 million in adjusted losses.</p><p>That $893 million is not the size of the AI fraud problem. It is the size of the AI fraud problem that victims and investigators could <em>recognize</em>.</p><p>Everything else is a ghost. And no one counts the ghosts.</p><p>This is the attribution gap. It sits on top of a much older one: a trust gap we have been living inside for years, and whose floor is now falling out.</p><h4>A floor, not a ceiling</h4><p>For the first time, the IC3 report includes a dedicated section on artificial intelligence in cybercrime. That&#8217;s progress. But the $893 million number is a floor, not a ceiling, because the FBI&#8217;s data relies on victim reporting.</p><p>If a victim doesn&#8217;t recognize that the &#8220;person&#8221; they were interacting with was a synthetic clone or an AI chatbot, they cannot report it as an AI crime.</p><p>Consider the <a href="https://www.ic3.gov/AnnualReport/Reports/2025_IC3Report.pdf">$7.2 billion lost to cryptocurrency investment fraud in 2025</a>, largely driven by &#8220;pig butchering&#8221; schemes. These are increasingly operated by transnational criminal syndicates that use AI to generate scripts, fake profiles, and deepfaked celebrity endorsements. They scale emotional manipulation across thousands of victims at once. Yet only a fraction of those losses were officially attributed to AI.</p><p>The ultimate success of a deepfake is that the victim never knows it was a deepfake at all.</p><h4>The human perimeter</h4><p>This brings us to the name of this publication.</p><p>For decades, cybersecurity was about gates and walls. You protected the network, the endpoint, the application. But the consensus among CISOs has shifted: identity is the new perimeter. Firewalls protect networks. They don&#8217;t help when an attacker walks through the front door wearing a trusted face and a familiar voice.</p><p>The attack surface is human. And humans were never designed to authenticate synthetic scale.</p><p>Vijay Balasubramaniyan, the CEO of Pindrop Security, put it to me plainly in an on-camera interview last month at the RSA conference in San Francisco. <em>&#8220;For the longest time, the last bastion was our humanity,&#8221;</em> he said. <em>&#8220;And then AI came around and fundamentally blurred the line between what it is to be human and what it is to be machine.&#8221;</em></p><p>That is the quieter crisis underneath the fraud numbers. We have spent a decade watching trust collapse in institutions, in media, in each other. What we had left was live human presence. The person across the table. The voice on the phone. The face on the Zoom call. That was the floor. That was the last thing you could verify with your own senses. And it is being taken.</p><p>Human senses do not scale against this. <a href="https://www.pnas.org/doi/10.1073/pnas.2120481119">Controlled studies</a> show human detection rates on some synthetic media fall near or below chance. Pindrop&#8217;s own internal testing has found humans detecting deepfakes at roughly 38% accuracy, which its CEO describes as &#8220;worse than a coin flip.&#8221; We are asking front-line retail workers to adjudicate synthetic identity documents, HR managers to spot deepfaked remote job candidates, and elderly citizens to recognize whether the panicked voice of their grandchild on the phone is actually a machine.</p><p>It is an unfair fight. In 2025, victims over the age of 60 lost $7.7 billion to fraud, a 59% increase over 2024.</p><h4>Two victims, one call</h4><p>The moral weirdness of this moment is that the person on the other end of the fraud may also be a victim.</p><p>UN and law-enforcement reports have documented people trafficked into scam compounds across Southeast Asia, held under coercive conditions, and forced to run online fraud at industrial scale. Not every fraudster is trafficked. But the scam-center economy has created a double victimization: the person being deceived, and in many cases the person forced to do the deceiving. A recent <a href="https://www.wsj.com/world/asia/cambodia-cybercrime-rise-why-2f2c03cc?st=DBgKe3&amp;reflink=desktopwebshare_permalink">Wall Street Journal</a> investigation into &#8220;Scambodia&#8221; detailed the aftermath of a police raid &#8220;at a hastily emptied compound 60 miles southwest of Chrey Thom [Cambodia], abandoned suitcases and clothes littered the corridors. In open-plan offices filled with rows of computers, detailed notes on potential victims remained scattered on desks.&#8221;</p><p>Neither the financial ledger nor the official statistics capture either side of that captivity.</p><h4>The crisis of knowing</h4><p><a href="https://www.unesco.org/en/articles/deepfakes-and-crisis-knowing">UNESCO calls this</a> a &#8220;crisis of knowing,&#8221; the point at which the volume of synthetic media begins to erode shared reality itself. I think the phrase is too polite. What is actually eroding is the last checkpoint we had for deciding whether another person is real. Fake news asked us to doubt what we read. Fake people ask us to doubt what we see and hear in real time, from someone looking us in the eye.</p><p>That is the existential stake of my film&#8217;s title, <em>The Only Human in the Room</em>. You sit down at the Zoom call, or answer the phone, or walk into the interview. The horror is not that the others might be lying to you. It is that the others might not exist at all.</p><p>How do we rebuild trust in identity when identity itself has been industrialized into a lie?</p><p><em>The Human Perimeter</em> will serve as a real-time investigative dispatch as we produce the film. We are not just documenting the problem. We are tracking the scam supply chain from isolated victims back to the threat actors. We are testing the provenance tools that try to prove what&#8217;s real, including in my own footage. And we are profiling the Defenders: the digital forensics experts, policymakers, and cyber-investigators racing to build guardrails faster than the technology can destroy them.</p><p>The attribution gap is not a measurement error. It is a warning. We are losing the ability to recognize when identity itself has been manipulated. That failure of recognition may prove more expensive than any line item in the FBI&#8217;s report. The official ledger captures the losses. It cannot see the ghosts.</p><div><hr></div><p><em>If you are a CISO dealing with synthetic applicants or executive impersonation, a cyber-investigator tracking scam infrastructure, a researcher studying synthetic identity, or someone who has been targeted by this kind of fraud, I want to hear from you. I will not publish identifying details without consent.</em></p><p><em>Subscribe to follow the investigation, and welcome to The Human Perimeter.</em></p><div><hr></div>]]></content:encoded></item></channel></rss>