A New Book by Aaron Painter

DEEPFAKED

Restoring Trust in the Age of AI Impersonation

What happens when the voice on the phone, the face on the video call, and the identity behind the login can all be faked?

Nametag CEO and deepfake expert Aaron Painter pulls back the curtain on the fastest-growing threat in cybersecurity — AI-powered impersonation — and lays out what individuals, enterprises, and institutions must do to close the trust gap before it closes in on them.

On sale October 13, 2026  
Fast Company Press
"Defending real people at scale taught me that recognition isn't security; proof is. Painter captures that shift exactly, and lays out the layered, practical defenses that actually hold up against AI. This is the playbook I wish every security team had five years ago." — Latha Maripuri, former CISO at Uber
Deepfaked: Restoring Trust in the Age of AI Impersonation, by Aaron Painter — book cover
AI Fraud Has Entered a Dangerous New Phase

Now AI can fake anyone. Billions are at stake.

The institutions we trust were built for a world where people were real.

About the Book

Can we still prove what's real?

For years, the deepfake conversation has been about catching fakes — the doctored celebrity video, the politician who never said it. We've gotten better at spotting them. But according to AI impersonation expert Aaron Painter, watching for fakes means you're looking in the wrong direction. Those high-profile examples are distracting us from a quieter, far more dangerous shift: one that changes the question from can we spot what's false? to can we still prove what's real?

In Deepfaked: Restoring Trust in the Age of AI Impersonation (Fast Company Press), Painter argues that AI-powered fraud has evolved from isolated scams into a threat capable of deceiving major institutions at scale and putting billions of dollars at risk. The problem isn't that we've gotten worse at detection — it's that in the AI era, the things we've always used to prove a person is real (a face, a voice, an ID) can now be manufactured. When any output can be forged, the only thing left worth verifying is the singular human behind it.

His warning comes as online fraud reaches record levels. The FBI reported more than $20 billion in cybercrime losses in 2025, including nearly $900 million tied to AI-enabled scams. Recent cases include an employee at global engineering firm Arup who transferred $25.6 million after joining a video call populated entirely by deepfake executives.

Criminals now use AI-generated voices, faces, and identities to impersonate employees, customers, contractors, applicants, and even family members. Their goal is no longer just to breach computer systems, but to manipulate people into granting access, bypassing security, disrupting the hiring process with fake applicants, and transferring multimillion-dollar sums of money. Help desks, HR departments, customer service teams, and identity verification systems have become the new front lines of cybersecurity — where organizations still have to answer one question: is this a real person?

But as AI capabilities advance at a rapid-fire pace, organizations still rely on trust systems built for yesterday's analog world. This book updates their tools and empowers them to fight back — not by chasing the fakes, but by proving what's real.

Painter opens with a personal story that illustrates how quickly this shift has arrived. His grandparents nearly wired money after receiving a call from someone who convincingly impersonated their grandson. They realized it was a scam only because the caller used the wrong family nickname — the one detail no AI could fake, because it belonged to a real relationship. That close call changed Painter's understanding of trust and ultimately inspired his mission to help restore it in the AI era.

Although Deepfaked presents a serious account of today's growing deepfake identity crisis, it's ultimately a practical handbook for dealing with it. Based on years of experience leading global technology organizations and developing identity verification systems, Painter explains how businesses, governments, and individuals can modernize how they establish trust, update their security practices, adopt more rigorous verification standards, and restore trust before AI-powered impersonation becomes the new norm.

"The main currency of our AI era is not intelligence — it's identity. What's at stake is human trust."

— Aaron Painter
$20B+
Cybercrime losses reported by the FBI in 2025
$900M
Of those losses tied to AI-enabled scams
$25.6M
Wired after a single deepfaked video call (Arup)
Talking Points

What you'll walk away understanding

01

The stakes are already realA single deceptive phone call led to a $100M+ breach at MGM Resorts; a deepfaked video conference convinced a Hong Kong employee to wire $25.6 million.

02

It's personal, not just corporatePainter's own grandmother was nearly scammed by an AI clone of his voice — the story that opens the book.

03

Old proof no longer worksPassports, passwords, caller ID, even a face on a video call no longer reliably prove who's on the other end.

04

Concrete solutionsA "human directory" concept for verifying real identity online, plus a code of conduct for AI-saturated organizations.

05

More than money is at stakeThe erosion of trust threatens dignity and people's basic ability to be believed as who they say they are.

06

The rules haven't caught upCourtrooms, hiring, politics, entertainment — society still has no shared agreement on what counts as acceptable AI use, or who's accountable when identity is faked.

Read an Excerpt

Chapter One

"Thank goodness you're okay."

From the opening of Deepfaked

Those were the words my grandmother greeted me with when I arrived for Thanksgiving in 2017. Clearly, right up until she saw my face, she had feared for my safety. The strange thing was that I didn't understand why.

Thanksgiving has always been a special time for my family, a time to come together, share food, and strengthen the bonds between us. My grandparents lived in Florida, and I traveled far and wide, residing and working in locations as far afield as China and Brazil. I made a big effort to call them and check in every week or so, but between those conversations, they often couldn't pinpoint where I was at any given moment. Inevitably, we sometimes didn't have time to share all that was going on in our lives, but we knew that, come what may, we'd have a chance to catch up in person in November.

Whatever else I was doing, wherever else I was, Thanksgiving was sacred. Everything else was put on hold while I flew into Florida and celebrated with them. My grandfather loved his food, and the traditional Thanksgiving menu was his absolute favorite, which added to the sense of occasion. Shortly after he passed, as we sorted through his belongings, we discovered that the only tangible mementos from his time serving in the Korean War were menus from Thanksgiving and other notable dinners they'd served in the canteen. Even when the dangers of bombs and bullets were ever present, he found comfort, normalcy, and satisfaction in a good meal.

I was used to being greeted enthusiastically when I stepped over the threshold of my grandparents' home. On this occasion, however, my grandma's welcoming hug was tinged with anxiety. She looked me in the face, as if to check that I was really there, really okay, and seemed distinctly relieved to register that I was. Naturally, I was happy to reunite with her and my grandfather after several months, but I was also confused. I didn't know why she seemed so concerned.

It was only after my grandparents ushered me inside and I had the chance to ask them what was happening that my grandmother's reaction made sense to me. As it turned out, they had good reason to fear that something had happened to me. This is the story they told me.

A couple of months earlier, they had received a phone call from someone who sounded exactly like me. They knew that I had been traveling a lot that week but couldn't be sure exactly where I was or what I was doing, so when the person on the other end of the phone, in a voice that sounded broken and scared, said they were far from home, in trouble, and in need of help, it sounded plausible. Okay, the number wasn't familiar, but I often called from unfamiliar overseas numbers. That wasn't enough to dismiss the call. The speaker, talking to my grandmother while my grandfather listened in on speaker, went on to explain that I was in Asia. Something had gone wrong, said the voice, and I needed my grandma to wire me some money immediately. Horrified, and willing to do almost anything to protect her grandson, she almost fell for it.

As you've probably guessed, the voice on the other end of the line didn't belong to me. It was a synthetic impersonation, probably built from publicly available audio clips. The imitation wasn't perfect — the line was crackly and the quality mediocre — but that, too, made sense in context. According to the story woven by the fraudsters, I was stuck in a dangerous backwater, struggling to make contact. If all of that had been true, I might well have been calling from a poor-quality line.

The hoaxer had collected enough personal information to make a passable attempt at convincing my grandma that they were really me. By factoring in an appeal to her empathy and creating a sense of urgency, they almost did enough to override her skepticism and persuade her to wire them money. If not for one crucial error, this might be a very different story: With my grandfather listening in, they referred to him as "grandfather," not by the nickname I habitually used for him.

That was enough to trigger his well-honed instincts and convince my grandfather to pump the brakes. Without interrupting the conversation, he began signaling to my grandmother that he suspected a scam and encouraged her to tell the voice on the other end of the phone that she would call them back rather than taking any irreversible action. Naturally, the scammer fought hard against this turn of events, emphasizing the urgency of the situation and trying to give my grandparents details of where to send money, but they stood firm. Between them, they agreed to get off the phone, step back from the high-pressure tactics, and discuss their course of action calmly.

Inevitably, my grandma was quite shaken by the intrusion. She feared that she was letting me down in my hour of greatest need and couldn't bear the thought of later finding out that it really had been me on the phone, and she had refused to help. The rational part of her mind told her that she had done the right thing, but a small, doubtful voice gnawed at her, telling her that she had made a mistake and should have done as the voice on the phone requested.

The aftershocks of that call rumbled on for some time, affecting her emotional equilibrium. The next time I called, she was happy to hear from me, and doubtless relieved that I seemed fine, but too embarrassed to talk to me directly about the experience. It wasn't until I walked through the door on Thanksgiving, clearly in good health, that she completely allowed herself to believe that the call had been a scam. That's when we discussed what had happened and she admitted how much it still troubled her.

I'm grateful that my grandparents had the presence of mind to resist the pull of the scammers and refuse to part with what would have been a significant amount of money for them. I'm grateful that I saw them soon after and had the opportunity to reassure them. Nonetheless, they lost something important that day. Their sense of trust and their confidence in the world around them took a significant hit. They felt less safe, less able to distinguish truth from lies. They discovered a gap in their map of reality.

This is a book about that gap and how it's affecting us all. It's also a book about how we close the gap and restore a sense of trust in a world where it's increasingly difficult to tell the difference between what's real and what isn't.

A Technology with Infinite Potential

With the possible exception of a few uncontacted tribes deep in the Peruvian Amazon, it seems as though everyone is talking about artificial intelligence (AI). That's probably not surprising. The technology is advancing so rapidly that by the time this book is published, parts of it may already be out of date.

As with any technological revolution, the development of AI is reshaping our understanding of what's possible. Large language models (LLMs), sounding disarmingly human, are capable of responding to almost any query we can throw at them. Image generators can create lifelike facsimiles of almost any scenario the human mind can conceive of. Coding AIs can generate websites in seconds. Many tasks that previously would have taken days, weeks, or even months can be ticked off over a coffee break.

This is exciting. I'm a devout technologist, and I'm fascinated by both what we can already do with AI tools and what we will soon be able to do. It's also alarming. As with any new technology, AI reveals new vulnerabilities. My grandma's confusion over whether she was genuinely talking to me is one example, but it would be a mistake to imagine that only older generations or those less comfortable with emerging trends risk being misled.

AI is blurring the line between what is real and unreal for us all, and I'd be willing to bet that, however smart you are, you've had moments of not knowing for certain whether an image, video, or voice was a faithful recording of something that really happened or whether it was artificially generated. There's no shame in that. As the sci-fi author Arthur C. Clarke famously wrote, "Any sufficiently advanced technology is indistinguishable from magic." As I write these words in 2026, AI is rocketing forward so quickly that some of the things it can accomplish do indeed seem like magic.

As you'll see, this affects us on many levels. In a personal context, scams like the one that almost trapped my grandparents are becoming both more widespread and more sophisticated. Even if you're so well attuned that you can avoid falling victim to them, there are likely people in your life who may be at risk. And it would be a grave error to become complacent. Many operations don't rely on persuading you, the end user, to send them money. They harvest publicly available information, which they then use to target customer support agents, convincing them to reset your password or transfer security measures to a phone number they control. By traditional security standards, you could be hit without ever putting a foot wrong.

This leads us to the impact of fraudulent uses of AI in the enterprise. If you're reading this book, I'm guessing there's a high chance you're a business leader and that at least some component of your organization is online or operates remotely across traditional, physical boundaries — all of which means you probably have sensitive client information you need to protect. Failing to do so would be a disaster, both for customer trust and for your bottom line. Yet can you really be confident that your systems are safe from AI-powered fraud? Over the course of the book, we'll discuss several high-profile incidents, many of which took place at high-profile organizations with cutting-edge security protocols but which nonetheless found themselves vulnerable.

Finally, we'll address the societal implications of AI's influence. While we all need to engage with the changing world that we find ourselves in on both a personal and a professional level, we will ultimately need a shared agreement on how we regulate the use of this new technology. What constitutes acceptable use? Who owns an AI representation of your face? How do we navigate public arenas such as courtrooms, politics, and entertainment? We'll examine crucial edge cases and ask what they tell us, as well as examine existing efforts to regulate AI technologies and assess which ones show us a likely way forward.

Ultimately, the biggest problem posed by AI is not a problem of technology; it's a problem of trust. AI makes it shockingly easy to convincingly imitate someone else, and that has ripple effects for almost every aspect of who and how we trust. If I can call a customer service line and pretend to be you, or North Korean agents can successfully impersonate legitimate job applicants or employees, the certainties on which we build our reality begin to wobble. When we don't know how to establish trust, our organizations and institutions start to degrade and become dysfunctional. Solving the problem of how to restore trust, therefore, must be a priority for us all.

An Epidemic of Deepfakes

Without really noticing it, we've become used to seeing deepfakes pop up in our social media feeds. Maybe you remember the picture of the pope in a puffer jacket or Taylor Swift apparently stealing an ice cream from an African child. These images are uncannily realistic but don't pose any obvious dangers. You've probably also been caught out by deepfake images or videos, at least momentarily. That's not surprising — many are so hard to distinguish from reality that they require a double take.

Many deepfakes seem like harmless pranks. In June 2025, influencer Mia Zelu posted images of herself enjoying the Wimbledon tennis tournament, apparently hobnobbing with a selection of high-status celebrities. Zelu, however, doesn't exist. The images — and her entire account — were generated by AI.

Others have the potential to manipulate public opinion, posing risks for democracy. You've probably seen warped deepfakes of politicians: A video of Nancy Pelosi was famously altered to make her appear intoxicated, and — on the other side of the aisle — a deepfake of Marco Rubio was used to call and text people, purportedly in his official capacity as secretary of state. As of 2026, the office of the president was routinely posting synthetic media without disclosing it as such.

This public deception is the context in which most people think of deepfakes: images and videos designed to present a reality that doesn't exist, for the purposes of swaying opinion or simply giving people on the internet a good laugh.

The distortion of reality can create significant issues, but most of us have incorporated a degree of skepticism about images and videos that seem unlikely. We're learning to take a step back and think about whether what we're seeing and hearing is real. We understand that the internet is a relatively low-trust environment and adjust our expectations accordingly.

We'll discuss several examples of public deepfakes in this book, some benign, some questionable. They represent test cases as we collectively figure out how to relate to a new reality in which reality itself is malleable.

We'll also discuss another type of deepfake, one that gets much less publicity and yet which poses a much greater danger. I'm talking here about private impersonation. This type of deepfake is used not to impersonate or mock public figures but to target companies and individuals, usually for financial gain. They are designed with the explicit intention of gaining access to systems or people, and their creators are as organized and entrepreneurial as any small business owner. For most of us, they represent a far more credible threat than public deception, yet they are far more poorly understood. They are the primary subject of this book.

We all understand that identity can be faked and that identity theft exists. Most of us, however, are still catching up to how easy it is to pretend to be someone else, how damaging these incidents are both materially and to our sense of trust, and how large the holes are in our existing security systems. Unless you've had to respond to the impersonation of someone on your team, or you've supported a loved one attacked by a scammer, the concept can feel largely abstract. If you have, you'll know how devastating it can be.

In a world where technology is so good that it can outwit our safeguards and even convince the people we love, identity can become a weapon. This is a book about understanding the various fronts on which we're already being attacked and how to fight back.

Want the rest of the chapter — and the rest of the book — the moment it's out?

Get Notified at Launch
Aaron Painter
Aaron Painter
About the Author

Aaron Painter

Cybersecurity CEO, Nametag Gartner® Visionary 2026 📍 Seattle, WA

Aaron Painter is the CEO of Nametag, the identity verification company helping organizations restore trust in an era of AI-generated impersonation. Nametag pioneered a new category of identity verification that protects organizations from impersonators and AI-generated deepfakes, helping leading enterprises prevent fraud, reduce support costs, and securely verify customers during high-risk interactions. Named a Visionary in the 2026 Gartner® Magic Quadrant™ for Identity Verification, Nametag is helping redefine how trust is established online.

Aaron has spent his career helping people earn trust in a world transformed by technology. That journey has taken him across six countries and four continents. Aaron has lived and worked in the United Kingdom, France, Brazil, Hong Kong, mainland China, and the United States, and has visited more than 100 countries. Those experiences shaped his belief that while technology continues to change how people live, work, and connect, trust remains the foundation of every successful relationship, organization, and society — and that it must be earned differently across cultures.

Aaron spent nearly fourteen years at Microsoft in leadership roles spanning product management, sales, marketing, partnerships, and general management, culminating as Vice President and General Manager for Greater China. He later served as CEO of Cloudreach, a Blackstone portfolio company, where he helped many of the world's largest enterprises modernize their technology platforms and accelerate their adoption of cloud computing. During his tenure, Cloudreach was recognized as an AWS Consulting Partner of the Year.

His first best-selling book, LOYAL, explored how leaders build high-performing organizations by creating cultures of listening and trust. Today, Aaron is focused on what he believes is the defining trust challenge of the AI era. As deepfakes and digital impersonation reshape how people interact online, organizations can no longer rely on traditional methods of establishing identity. Under his leadership, Nametag is helping redefine how trust is established online by verifying the human behind every digital interaction.

Aaron's forthcoming book, Deepfaked: Restoring Trust in the Age of AI Impersonation, examines how society can preserve trust when seeing and hearing are no longer believing. Across two books, a global leadership career, and the companies he has led, Aaron's work has centered on one enduring question: How do people earn trust in a world transformed by technology? As technology continues to reshape society, Aaron believes earning trust will remain humanity's most enduring competitive advantage.

Timeline

Aaron's career at a glance

Oct 2026Forthcoming
Author, Deepfaked
Restoring Trust in the Age of AI Impersonation
Mar 2020 – PresentCurrent
CEO
Nametag
Jul 2018 – Dec 2019
CEO
Cloudreach
Sep 2017
Author, LOYAL
A Leader's Guide to Winning Customer and Employee Loyalty
Jun 2004 – Mar 2018
VP & General Manager, Microsoft Business Solutions & Dynamics 365, Greater China Region
Microsoft China
As Seen On

Aaron on proving the real you

Forbes logo
Forbes Business Council

The Integrity Crisis In Enterprise Hiring

"This is the integrity crisis in enterprise hiring, and it's quickly become the biggest identity risk in enterprise cybersecurity." — Aaron Painter

Read More →
Security Boulevard logo
Security Boulevard

Nametag Adds Ability to Thwart Deep Fakes to Identity Verification Platform

"Nametag today extended its identity verification platform to add an ability to detect and block deep fake attacks created using generative AI technologies."

Read More →
CIO.com logo
CIO.com

Is Your Coworker a North Korean Hacker? How AI Impersonation Is Compromising the Workforce

"Threat actors are infiltrating companies by combining sophisticated deepfakes with stolen identities of real American citizens."

Read More →
Forbes logo
Forbes

Combating Threat Actors In The U.S. Healthcare Sector

"Healthcare companies have severely underestimated the risk of cyberattacks and are woefully unprepared to defend against social engineering schemes."

Read More →
CIO.com logo
CIO.com

The Cyber Pandemic: AI Deepfakes and the Future of Security and Identity Verification

"Gartner estimates that by 2026, nearly one-third of enterprises will consider identity verification unreliable due to AI-generated deepfakes."

Read More →
CFO Dive logo
CFO Dive

Fraud Attacks Expected to Ramp Up in AI 'Perfect Storm'

"It's a perfect storm that leads us to really sense that 2026 will be the year of impersonation attacks." — Aaron Painter, CEO of Nametag

Read More →
Biometric Update logo
Biometric Update

Biometric IDV Helps Secure Enterprise Identity Workflow

"Generative AI is making impersonation dramatically easier. Organizations can no longer assume that someone who appears to be an employee actually is one."

Read More →
Cybernews logo
Cybernews

Voice Messages May Be a New Frontier for Cybercriminals

"Taking over someone's account lets you control whatever that account has access to... Deepfakes make it easier. They are superpowers for bad actors."

Read More →
Media Appearances

Watch & listen to Aaron

Watch

Interview #54 Aaron Painter, CEO of Nametag

Artificial Intelligence Podcast

Interview with Aaron Painter, CEO of Nametag

AI Quick Bits with Scot Pansing

Combatting Digital Identity Threats: Insights from Nametag's CEO Aaron Painter

The CTO Show With Mehmet

S2E4 – Chief Executive Officer of Nametag

PEAK IDV

Listen

You're on the list

Thanks — we'll email you the moment Deepfaked is available on October 13, 2026.