Refund Attacks 1
Deepfake Customer-Service
The Threat AI voice bots impersonate customers and request refunds or credits, armed with accurate order numbers and partial PII. Why It’s Escalating Bots run 24/7, probing call centers for agents most likely to approve a refund without full verification.
Business Impact Direct refund loss, polluted order data, and account takeovers.
What You Can Do Require mandatory multi-factor verification for all refund requests (order number + at least one dynamic factor). Train staff on AI-bot red flags: latency, monotone cadence, refusal to follow conversational detours. Route suspicious calls through a secondary authentication workflow with no override capability.
I
Threat-Level Meter
Made with FlippingBook - PDF hosting