Loading...

The Rise of AI Deepfake Scams and How Creators Fight Back

Key takeaways

  • Content creators like Kitboga are disrupting AI scam bots through prompt injection, forcing them to malfunction with nonsensical repetitions like 'kooga-ooga-amen, Albuquerque, New Mexico.'
  • Deepfake video scams represent an escalating threat, using synthetic video to conduct social engineering attacks that fool less tech-savvy users.
  • The barrier to entry for creating AI scams has virtually disappeared, enabling fraudsters to produce and deploy attacks at unprecedented scale and speed.
  • Sharing educational videos from scam-exposure creators with family members is an effective way to inoculate less tech-savvy populations against these attacks.

The proliferation of AI-powered scam calls represents a significant and escalating security threat in 2024, with increasingly sophisticated fraudsters deploying voice cloning and deepfake technology to target unsuspecting victims across multiple continents. The technology has become accessible enough that individuals without advanced technical expertise can now weaponize these systems at meaningful scale, creating a new avenue for financial fraud and identity theft.

The personal trigger for deeper investigation into this phenomenon came when a family member received an incoming call purporting to originate from a worker at the United Kingdom’s Royal Mail service, with the caller’s voice generated entirely through artificial intelligence. That incident sparked a comprehensive research effort into how endemic these schemes have become across the population—and inadvertently recalibrated my content algorithm to serve me daily doses of creators who have made elaborate sport of breaking these systems and documenting their failures.

The Art of Disrupting AI Scammers

Prompt Injection as a Weapon

YouTube content creator Kitboga has discovered and documented a method to force AI-powered scam callers into cascading failures through deceptively simple prompt injection techniques. By introducing specific verbal commands into the conversational flow, Kitboga can trigger the bot to enter infinite loops, endlessly repeating nonsensical phrases like “kooga-ooga-amen, Albuquerque, New Mexico” with increasing desperation. The underlying systems prove vulnerable to even basic linguistic manipulation.

The AI scammers also exhibit specific and exploitable linguistic weaknesses in their training. The acronym WWE, for instance, consistently produces pronunciation failures and system errors when introduced into the conversation.

The Entertainment Value of Machine Failure

These moments of artificial system failure have developed a substantial and engaged following across streaming platforms. Watching artificially intelligent systems designed specifically to deceive and defraud users instead malfunction in real-time, become confused, and produce absurd repetitions has become, by my own admission, genuinely entertaining. The recursive breakdowns serve a dual purpose: they are simultaneously funny and instructive, graphically demonstrating where the technology fails and how brittle the underlying systems actually are.

Deepfake Video Scams: A More Dangerous Variant

Jim Browning, another prominent and respected scam-exposure creator, has shifted investigative focus toward a more ominous and dangerous category of fraud: deepfake video-based scams. These implementations trade voice cloning and audio synthesis for full-body synthetic video generation, deploying AI-generated footage of entirely fabricated individuals to conduct elaborate and convincing social engineering attacks.

The Uncanny Valley of Synthetic Panic

The most darkly comedic aspect of these deepfake schemes is watching the synthetic subject struggle with simple cognitive and physical tasks. In one documented case, the deepfaked individual—visibly distressed and displaying behavioral patterns suggesting extreme intoxication—repeatedly attempts to provide justification for why executing a basic physical action (placing three fingers directly in front of their face) remains impossible or impractical. The repetitive deflection of the request (“aw c’mon, man, that’s too much”) comes again and again, creating something resembling an inadvertent comedy routine. The synthetic performance becomes increasingly absurd with each refusal and each new attempt by the fraudster to rationalize the inexplicable inability.

Documentation and Exposure

These deepfake scam attempts are being systematically documented and exposed by creators like Browning, creating an archive of synthetic fraud attempts that can be studied and understood. This documentation serves the dual purpose of entertaining audiences familiar with AI and deepfake technology while simultaneously educating less tech-savvy viewers about what these attacks look like and how they function.

The Scale and Accessibility Problem

The AI Incident Database project tracks these emerging threats with rigorous documentation and systematic analysis. According to Simon Mylius, a researcher at MIT who has collaborated with the project and discussed the topic extensively with The Guardian, the core vulnerability lies in technology that has become trivially easy to weaponize and deploy: “Capabilities have suddenly reached that level where fake content can be produced by pretty much anybody… It’s become very accessible to a point where there is really effectively no barrier to entry.”

That democratization of dangerous technology represents the central problem. A decade ago, producing convincing deepfake video or voice synthesis required specialized knowledge, expensive software, and meaningful computational resources. Those barriers have largely evaporated.

Production Speed and Volume Increases

The danger accelerates dramatically when considering production velocity and the consequent increase in attack volume. Bobby Ford, who holds the position of chief strategy and experience officer at the cybersecurity defense firm Doppel, offered detailed analysis to CNET that extends Mylius’ assessment considerably: previously, generating convincing deepfakes required substantial time investment and highly specialized resources that acted as natural gatekeepers. That constraint no longer applies. “Whereas before, it would take a threat actor a certain amount of time, as well as resources, in order to create that deepfake…it doesn’t take that same amount of time anymore—it’s done at much faster clips, so the volume increases.”

This efficiency gain means scammers can now field more attempts across more targets in significantly shorter timeframes. The technology’s democratization has removed most gatekeeping mechanisms, allowing anyone with basic technical familiarity to deploy these schemes.

Targeting Vulnerability and the Most At-Risk Populations

The scammer profiles tend to concentrate on populations demonstrating lower technical literacy and reduced familiarity with deepfake and synthetic media. Older demographics and individuals less immersed in digital media typically represent the primary targets, as the techniques—while sometimes detectable to digitally-native observers—prove remarkably effective against populations less accustomed to identifying and analyzing synthetic content.

Practical Defense Strategies and Information Sharing

For readers already deeply embedded in digital culture and technology communities, distinguishing artificial voices and synthetic video from authentic human communication has become relatively straightforward through a combination of behavioral cues, technical artifacts, and contextual analysis. For less tech-savvy populations, however, these systems can appear entirely convincing.

The more effective defense strategy operates at the social level rather than the technical level: sharing documentation of these scams with less tech-savvy family members and friends creates awareness and inoculation against these specific attack vectors.

Direct Action Through Existing Social Networks

The mechanics are straightforward and actionable:

  • Share links to Kitboga or Jim Browning videos documenting these attacks with family members who may lack exposure to these techniques and demonstrations
  • Use existing communication channels—family group chats, direct phone calls, email—to distribute this educational content to relevant individuals
  • Specifically target individuals most likely to fall victim: older relatives, less digitally-engaged friends, those who frequently encounter AI-generated content unknowingly

The self-interested motivation runs clear: educating your family circle against falling victim to these scams protects both them and you from financial and identity consequences. The financial consequences of family members becoming scam victims do not stop at direct losses to that individual; they cascade across broader family finances and resources.

Frequently Asked Questions

How are content creators disrupting AI scam bots?

By using simple prompt injection techniques to introduce specific commands that trigger AI scammers into infinite loops, forcing them to repeatedly output nonsensical phrases like 'kooga-ooga-amen, Albuquerque, New Mexico.'

What makes deepfake scams more dangerous than voice-only AI scams?

Deepfakes use synthetic video to make fraudulent attacks more visually convincing, creating a more believable illusion for audiences less familiar with detecting synthetic media.

What is the most effective way to protect family members from AI scams?

Share videos from scam-exposure creators like Kitboga and Jim Browning through family communication channels like group chats and emails to educate them about what these attacks look like.

Written by
Sam Nakamura

Sam Nakamura covers gaming culture, esports, and the indie scene. With a background in competitive gaming and a deep love for JRPGs and retro consoles, Sam brings a player-first perspective to every story. If it involves a great narrative or a tournament worth watching, Sam has already written about it.