World Congress 2026 Europe Jul 9, 2026 Session details

Synthetic Insiders: The New AI Risk to Your Org

George Proorocu

Cybercriminals are bypassing security not by hacking, but by getting hired. Discover how deepfakes enable synthetic insiders to infiltrate teams and what leadership must do to stop them.

Pause
Mute Enter Fullscreen
#1 about 2 min

Understanding the threat of full remote inside scammers

Scammers use remote hiring processes to successfully breach corporate environments under the guise of legitimate newly hired employees.

#2 about 2 min

Establishing access through laptop farms and unwitting facilitators

Bad actors route corporate hardware to naive local facilitators who connect the devices to structured remote compromise networks.

#3 about 2 min

Bypassing HR checks with stolen identities and authentic CVs

Integrating real credentials and employment histories makes it incredibly difficult for human resources to identify fabricated applicants during background checks.

#4 about 2 min

Automating compromised roles through AI agents and backup scammers

Threat actors deploy large language model agents for routine tasks while human backups step in for live video communications.

#5 about 2 min

Selling corporate hiring intelligence on the dark web

Attackers map out hiring constraints such as required on-site visits and sell this collected intelligence to other criminal entities.

#6 about 2 min

Passing technical interviews using active video and audio deepfakes

Fraudsters utilize face-swapping capabilities and focus-assist tools to present a seamless visual facade during live technical assessments.

#7 about 2 min

Hijacking corporate hardware with hidden enterprise KVM switches

Attackers gain full keyboard, mouse, and video access without installing detectable malware directly onto the target corporate device.

#8 about 3 min

Monetizing initial system access through ransomware and corporate extortion

Once basic access is secured, specialized underground groups purchase the connection to deploy ransomware or extract sensitive intellectual property.

#9 about 2 min

Scaling fraudulent operations with accessible generative AI tools

Single individuals now replace entire scamming groups by fully automating job application parsing, identity crafting, and interview preparations.

#10 about 3 min

Demonstrating real-time face manipulation on standard consumer hardware

Performing high-quality live face-swapping on a basic laptop illustrates how easily accessible these deceptive visual capabilities have become.

#11 about 3 min

Extracting MFA access using voice-cloned social engineering calls

Replicating a manager's voice during an artificial high-stress scenario successfully forces well-trained IT staff to hand over crucial authentication codes.

#12 about 1 min

Tracing the exponential growth of AI-assisted corporate fraud

The mass adoption of generative AI tools has led to massive consecutive yearly increases in successful deepfake scams and corresponding financial losses.

#13 about 4 min

Implementing HR and technical defenses against synthetic insiders

Defending against this emerging threat requires deploying identity verification platforms and continuously monitoring internal systems for non-human behavioral patterns.

#14 about 2 min

Exploring real-world impact and upcoming platform-level deepfake detections

The software industry prepares for an ongoing security arms race by relying on upcoming operating system-level audio manipulation detection logic.

Matching moments

1:16 min

Executing targeted corporate attacks using deepfake interviews

George Proorocu George Proorocu +1 · WWC 2024

2:17 min

Exploiting deepfakes in live video conferencing

Martin Förtsch Martin Förtsch +1 · WWC 2024

2:16 min

Speed, scale, and sophistication of modern cybersecurity threats

Chris Wysopal Chris Wysopal +2 · WWC 2024

6:05 min

Simulating a complex c-level deepfake impersonation attack

George Proorocu George Proorocu +1 · WWC 2024

58 sec

Future realities of AI in social engineering

Wolfgang Ettlinger +1 · WWC 2023

1:44 min

Addressing the authenticity of AI translated video content

Chris Heilmann +2 · LIVE

Upcoming sessions on this topic

Open session

World Congress 2026 North America

The Things Your AI Isn't Telling You

Desmond Lamptey

Lead Software Engineer @ Capital One

Desmond Lamptey
Open session

World Congress 2026 North America

Securing AI Agent Infrastructure: Identity, Attestation, and Trust at Scale

Abdel Fane

Founder of OpenA2A

Abdel Fane
Open session

World Congress 2026 North America

When Agents Became Users: Rearchitecting Identity and Permissions for AI at Scale

Yoav Gal, Dor Cohen

Yoav Gal
Dor Cohen
Open session

World Congress 2026 North America

Zero-Trust Architecture for Agentic AI: Securing Multi-User Access and Third-Party Integrations

Borko Djurkovic

Member of Technical Staff at Cohere

Borko Djurkovic
Open session

World Congress 2026 North America

Responsible AI Architecture with Zero Trust Agents

Ashok Prakash

Staff ML Engineer at Apple

Ashok Prakash
Open session

World Congress 2026 North America

SecurePrompt: Building a Pre-Flight Security Layer for Agentic AI

Ravi Sastry Kadali

AI/ML Engineer at General Motors

Ravi Sastry Kadali