{"id":3513,"date":"2024-05-10T08:00:00","date_gmt":"2024-05-10T13:00:00","guid":{"rendered":"https:\/\/www.darkreading.com\/threat-intelligence\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes"},"modified":"2024-05-10T08:00:00","modified_gmt":"2024-05-10T13:00:00","slug":"cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2024\/05\/10\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes\/","title":{"rendered":"Cybersecurity in a Race to Unmask a New Wave of AI-Borne Deepfakes"},"content":{"rendered":"<div class=\"media_block\"><a href=\"https:\/\/i0.wp.com\/eu-images.contentstack.com\/v3\/assets\/blt6d90778a997de1cd\/blt74912f8d97809c83\/64f15c25aee48ca35fc687f3\/deepfake_Alfonso_Fabio_Iozzino_Alamy.jpg?ssl=1\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes.jpg?w=640&#038;ssl=1\" class=\"media_thumbnail\"><\/a><\/div>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><span class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_bold\">RSA CONFERENCE 2024 \u2013 San Francisco \u2013<\/span><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> Everyone&#8217;s talking about deepfakes, but the majority of AI-generated synthetic media circulating today will seem quaint in comparison to the sophistication and volume of what&#8217;s about to come.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cyberattacks-data-breaches\/china-innovated-its-cyberattack-tradecraft-mandia-says\" rel=\"noopener\">Kevin Mandia<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">, CEO of Mandiant at Google Cloud, says it&#8217;s likely a matter of months before the next generation of more realistic and convincing deepfake audio and video become mass-produced with AI technology. &#8220;I don&#8217;t think it&#8217;s [deepfake content] been good enough yet,&#8221; Mandia said here in an interview with Dark Reading. &#8220;We are right before the storm of synthetic media hitting, where it&#8217;s really a mass manipulation of people&#8217;s hearts and minds.&#8221;<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">The election year is of course a factor in the <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cyber-risk\/defenders-buckle-up-future-detecting-deepfakes\" rel=\"noopener\">expected boom<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> in deepfakes. The relative good news is that to date, most audio and video deepfakes have been fairly simple to spot either by existing detection tools or savvy humans. Voice-identity security vendor Pindrop says it can ID and stop most phony audio clips, and many AI image-creation tools infamously fail to render realistic-looking human hands \u2014 some generating hands with nine fingers, for example \u2014 a dead giveaway of a phony image.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Security tools that detect synthetic media are just now hitting the industry, including that of Reality Defender, a startup that detects AI-generated media, which was named the Most Innovative Startup of 2024 here this week in the RSA Conference Innovation Sandbox competition.<\/span><\/p>\n<div readability=\"7\"><img data-recalc-dims=\"1\" decoding=\"async\" data-testid=\"content-image\" data-component=\"image\" class=\"ContentImage-Image ContentImage-Image_align_left\" data-src=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes.webp\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes.webp?w=640&#038;ssl=1\" loading=\"lazy\" alt=\"MandiaHeadshot1.webp\" title=\"MandiaHeadshot1.webp\"><\/p>\n<p class=\"ContentImage-Link\">Source: Mandiant\/Google Cloud<\/p>\n<\/div>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Mandia, who says he is an investor in a startup working on AI-generated content fraud detection called Real Factors, says the main way to stop deepfakes from fooling users and overshadowing real content is for content-makers to embed &#8220;watermarks.&#8221; Microsoft Teams and Google Meet clients, for example, would be watermarked, he says, with immutable metadata, signed files, and digital certificates.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;You&#8217;re going to see a huge uptick of this, at a time when privacy is being emphasized&#8221; as well, he notes. &#8220;Identity is going to get far better and provenance of sources will be far better,&#8221; he says, to guarantee authenticity on each end.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;My thought is this watermark could reflect policies and profiles of risk that each company that creates content has,&#8221; Mandia explains.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Mandia warns that the next wave of AI-generated audio and video will be especially tough to detect as phony. &#8220;What if you have a 10-minute video and two milliseconds of it are fake? Is the technology ever going to exist that&#8217;s so good to say, &#8216;That&#8217;s fake&#8217;? We&#8217;re going to have the infamous arms race, and defense loses in an arms race.&#8221;<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Making Cybercriminals Pay\">Making Cybercriminals Pay<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Cyberattacks overall have become more costly financially and reputation-wise for victim organizations, Mandia says, so it&#8217;s time to flip the equation and make it riskier for the threat actors themselves by doubling down on sharing attribution intel and naming names.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;We&#8217;ve actually gotten good at threat intelligence. But we&#8217;re not good at the attribution of the threat intelligence,&#8221; he says. The model of continuously putting the burden on organizations to build up their defenses is not working. &#8220;We&#8217;re imposing cost on the wrong side of the hose,&#8221; he says.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Mandia believes it&#8217;s time to revisit treaties with the safe harbors of cybercriminals and to double down on calling out the individuals behind the keyboard and sharing attribution data in attacks. Take the sanctions against and naming of the leader of the prolific <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/vulnerabilities-threats\/lockbit-honcho-sanctions-aussie-org-ramifications\" rel=\"noopener\">LockBit ransomware group<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> by international law enforcement this week, he says. Officials in Australia, Europe, and the US teamed up and slapped sanctions on Russian national Dmitry Yuryevich, 31, of Voronezh, Russia, for his alleged role as ringleader of the cybercrime organization. They offered a $10 million reward for information on him and released his photo, a move that Mandia applauds as the right strategy for raising the risk for the bad guys.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">&#8220;I think that does matter. If you&#8217;re a criminal and all of a sudden the whole world has your photo, that&#8217;s a problem for you. That&#8217;s a deterrent and a far bigger deterrent than &#8216;raising the cost&#8217; to an attacker,&#8221; Mandia maintains.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Law enforcement, governments, and private industry need to revisit how to start identifying the cybercriminals effectively, he says, noting that a big challenge with unmasking is privacy and civil liberty laws in different countries. &#8220;We&#8217;ve got to start addressing this without impacting civil liberties,&#8221; he says.<\/span><\/p>\n<p><a href=\"https:\/\/www.darkreading.com\/threat-intelligence\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>RSA CONFERENCE 2024 \u2013 San Francisco \u2013 Everyone&#8217;s talking about<\/p>\n","protected":false},"author":12,"featured_media":3514,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1],"tags":[809],"class_list":["post-3513","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-dark-reading"],"featured_image_urls":{"full":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?fit=2560%2C1707&ssl=1",2560,1707,false],"thumbnail":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?resize=150%2C150&ssl=1",150,150,true],"medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?fit=300%2C200&ssl=1",300,200,true],"medium_large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?fit=640%2C427&ssl=1",640,427,true],"large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?fit=640%2C427&ssl=1",640,427,true],"1536x1536":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?fit=1536%2C1024&ssl=1",1536,1024,true],"2048x2048":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?fit=2048%2C1365&ssl=1",2048,1365,true],"chromenews-featured":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?fit=1024%2C683&ssl=1",1024,683,true],"chromenews-large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?resize=825%2C575&ssl=1",825,575,true],"chromenews-medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?resize=590%2C410&ssl=1",590,410,true]},"author_info":{"display_name":"Dark Reading","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/darkreading\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/uncategorized\/\" rel=\"category tag\">Uncategorized<\/a>","tag_info":"Uncategorized","comment_count":"0","jetpack_featured_media_url":"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/05\/cybersecurity-in-a-race-to-unmask-a-new-wave-of-ai-borne-deepfakes-scaled.jpg?fit=2560%2C1707&ssl=1","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/3513","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=3513"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/3513\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media\/3514"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=3513"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=3513"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=3513"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}