Free security tool
How Vulnerable Is Your Business to Deepfakes?
10 questions that reveal your exposure to AI-generated identity fraud. Takes 2 minutes. No signup required.
8,000,000
deepfakes detected in 2025
$25M
stolen in a single deepfake attack
24.5%
human detection accuracy
Assess your vulnerability
Answer all 10 questions honestly. Your score is calculated instantly — no data leaves your browser.
Do you verify identity via video calls (e.g. remote hiring, client onboarding)?
Do your employees handle financial transactions or approvals on video calls?
Do you use WhatsApp or informal channels for identity verification photos?
Can a single person authorise payments above £10,000 without in-person verification?
Do you have remote workers who have never been verified in person?
Do you use voice-only calls for authorisation (e.g. phone banking, callback verification)?
Is your CEO or CFO’s face/voice publicly available (conferences, YouTube, podcasts)?
Do you operate across multiple time zones where real-time human verification is impractical?
Do you have a deepfake detection or identity challenge protocol?
Have your staff received training on deepfake awareness in the last 12 months?
Case study
The Arup Attack: $25M Lost in One Video Call
In January 2024, a finance worker at Arup — one of the world's largest engineering consultancies — joined a video call with what appeared to be the company's Chief Financial Officer and several senior colleagues.
The CFO instructed the worker to process an urgent series of transactions. The worker complied, authorising 15 transfers totalling $25 million to five Hong Kong bank accounts.
Every single participant on that call — except the victim — was a deepfake. The attackers had used publicly available footage of the real executives to create real-time AI-generated avatars convincing enough to pass scrutiny on a live video call.
The fraud was only discovered days later when the worker raised the transaction through normal channels.
What went wrong
- No multi-factor identity challenge on the video call
- Single person authorised a $25M transfer without in-person verification
- Executive footage was freely available from public conferences
- No deepfake detection technology was in place
- Staff had not been trained on deepfake awareness
Frequently asked questions
A deepfake is an AI-generated video, image, or audio clip that convincingly impersonates a real person. Businesses should care because deepfakes are now used in fraud, impersonation attacks on video calls, and social engineering. In 2024, engineering firm Arup lost $25 million to a single deepfake video call. The technology is cheap, fast, and improving every month.
This assessment identifies structural vulnerabilities in your identity verification and authorisation processes. It is based on real-world attack patterns and published research. It is not a penetration test or technical audit — it highlights process gaps that deepfake attackers exploit.
The EU AI Act comes into force in August 2026. It requires any entity deploying AI-generated content (including deepfakes) to disclose that fact. It also creates obligations for businesses to detect and label synthetic media. Non-compliance fines are up to 6% of global annual revenue. If you trade with or employ people in the EU, it likely applies to you.
Yes. A 2024 study by University College London found that humans correctly identified deepfake videos only 24.5% of the time in controlled lab conditions. In real-world settings — poor lighting, compressed video, time pressure — detection rates drop even further. This is why automated detection tools are essential.
Certifyd Sentinel uses multi-layered liveness detection, biometric verification, and AI-powered deepfake analysis to verify identity in real time. It works during video calls, remote onboarding, and identity checks — catching synthetic media that human eyes miss.
No. All calculations happen in your browser. No answers or scores are sent to our servers. If you choose to email yourself the report, only the email address, name, and company you provide are stored.
Don't wait for a $25M lesson
Certifyd Sentinel detects deepfakes in real time — protecting your video calls, onboarding, and identity verification from AI-generated fraud.
Book a demo