The call sounds exactly like your daughter. She is crying, she has been in an accident, and she needs money right now. The voice is hers, down to the way she says your name. It is also fake, generated by software that learned her voice from a few seconds of audio.
AI voice cloning has turned a decades-old scam into something far harder to catch. The FBI's 2025 Internet Crime Report, the first year the bureau tracked AI as its own category, logged $893,346,472 in reported losses from AI-related scams, with older adults hit hardest at $352 million across more than 3,100 victims aged 60 and up (Malwarebytes). Those are only the losses people reported.
How the scam works
A scammer needs a sample of the target's voice. Researchers have found that as little as three seconds of recorded speech can be enough to produce a convincing clone, and samples are easy to pull from social media videos, voicemail greetings, or podcasts (CNN).
From there the playbook is old, and it works because it hijacks your instinct to help someone you love:
- Manufacture urgency. The cloned voice claims to be in trouble, an accident, an arrest, a medical emergency, and says there is no time to think.
- Isolate you. The caller insists you tell no one, so you do not stop to verify.
- Demand an untraceable payment. Wire transfer, gift cards, payment apps, or cryptocurrency, because those are hard to claw back.
The same technique shows up in scams that impersonate your bank, a government agency, or a company you do business with. The voice is just the delivery method. What makes it land is that the caller often already knows details about you.
How to protect yourself and your family
- Shrink what a stranger can find about you. Data broker and people-search sites are where scammers buy the details that make a cloned voice believable. Papaya Privacy scans 350+ of those sites for your exposed personal information and files removal requests to take it down, and it monitors the dark web so you know when your details surface in a breach. The less that is out there about you, the harder it is for a caller to sound like they belong in your life.
- Set a family safe word. Agree on a word or phrase only your household knows, something random like "purple tractor" rather than anything tied to your life or findable online. If a caller in distress cannot give it, hang up. The FTC and security researchers point to this as the single most effective low-tech defense (SolidAITech).
- Hang up and call back. If you get an alarming call, contact the person directly on a number you already have. If you cannot reach them, try another family member or friend. Do not use any number the caller gives you (FTC).
- Report it. File with the FTC at ReportFraud.ftc.gov.
