Daniel Mwangi
Evidence of possible AI-altered video. Proceed with caution.
AI-powered social engineering attacks reach people faster than training prepares them. Diopter detects manipulation and policy breaches live, stopping security threats before they land.
How Diopter defends the call
More than just a deepfake check, Diopter analyzes who's asking, what they're pushing for, whether the voice and video are real, and whether the request breaks your rules. Your team is notified as soon as a threat is detected.
Checks each participant and flags impersonators.
Catches urgency, authority plays, and escalating requests as the call unfolds.
Spots AI-generated voice and video across the whole call.
Flags policy violations for corporate, security, and finance processes in real time.
In 30 minutes, we'll replay a real social engineering attack and show you the exact moment Diopter would have alerted your team.
Threat categories
AI makes it cheap to show up as someone your team already trusts, right when a wire gets approved, a password gets reset, or a new hire gets onboarded.
A fake executive or vendor gets on a call and pushes through a wire, an invoice, or a bank detail change before anyone checks. One call can move millions.
$25.6M lost on a single staged deepfake video call
Read more
An attacker calls IT posing as an employee, sounds convincing, and leaves with an MFA reset or new credentials. After that, they're inside.
One help desk call led to a ~$100M hit at MGM
Read more
Stand-in or synthetic candidates pass remote interviews to get a paycheck, a laptop, and access to your systems.
220% YoY rise
Read more
The attack playbook
Attackers employ escalating tactics like authority, urgency, isolation, and pressure. Diopter spots the pattern and warns your team in time.
T-7d → T-1h
The attacker takes on a believable role: an executive, a title agent, a hiring manager, a known vendor. Sometimes it's a cloned voice, sometimes just a good story.
T-00:00
A deadline appears. The deal closes today, payroll runs in an hour, and there's no time to double-check.
T+02:00
The attacker cuts out anyone who might push back by moving to a private call, a DM, or a personal email.
T+06:00
The pressure rises. Threats, secrecy, “keep this between us.”
T+11:48
The real request lands: a wire, an MFA reset, a credential, a hire, a vendor change.
Operational proof
A wire-fraud call, replayed at the speed it happened. Every alert is the card Diopter puts on the screen. Every line is what the caller said.
Live call
Deal-team sync
Daniel Mwangi joined · external domain
Live alert · wire-fraud scenario
00:12
Authority · An outside caller joins the deal-team call
Urgency · A deadline appears
“If the deposit isn't out within the hour, we lose it to the other bidder.”
Isolation · The team gets cut out
“Release the deposit now. I'll read you the receiving account.”
Escalation · Trust gets played
“You know this deal is real. I'm asking you to trust me.”
Ask · The wire request lands
“Release the deposit now. I'll read you the receiving account.”
Response · Case opened for your security team
Four detections, the evidence, and a recommended action reach your security team one second after the ask.
Real incidents
2024 · Deepfake video conference
A finance employee joined a video call with a deepfaked CFO and colleagues, then made 15 transfers to 5 accounts.
Read more
2023 · Help desk impersonation
Attackers reportedly called IT posing as an employee and got the access that led to a company-wide ransomware attack.
Read more
2024 · Cloned executive voicemail, then a call
A branch manager approved $35M after a call from a company director whose voice he knew. The voice was cloned, and the lawyer's confirmation emails were fake.
Read more
2024 · Deepfake video interviews
North Korean operatives got hired at 320+ companies in 12 months, using AI-written resumes and deepfakes in video interviews.
Read more
Integrations
Diopter joins calls as a meeting bot or runs through a desktop app. Every alert goes to your security team.
Runs natively in Zoom, Microsoft Teams, Google Meet, and Webex.
Works inline at the carrier or on the employee's device, across Dialpad, RingCentral, and any carrier via API.
Push to every device through Intune, Jamf, Kandji, or Workspace ONE.
Cases land in the Diopter console or flow into your own tools through our API and MCP server.
Specs