Among organizations that experienced or suspected a deepfake attack, almost half reported total costs of $500,000 or more. Approximately 25% crossed the $1 million threshold.
Total cost of attack

What came next only added to the damage. 49% of affected organizations faced follow-on cyberattacks, like ransomware, a particularly troubling trend given the potential impact.
Consequences that followed

In May 2026, the FBI published an alert on The Silent Ransom Group (SRG), which targets companies, particularly law firms, using social engineering. In some cases, SRG impersonates an IT professional and manipulates an employee into granting remote desktop access. From there, the group exfiltrates data and extorts the organization.
The consequences can be severe: data exfiltration, network intrusion, ransom payouts, and operational disruption. After hackers impersonated an employee on a call with MGM’s IT helpdesk, they launched a ransomware attack that disrupted operations for days. MGM projected a $100 million hit to quarterly earnings.When costly attacks are hitting channels once considered protected, it becomes difficult to know where to focus.
No one wants to buy insurance to use it, but you want to have it at your disposal when the time comes.Doug Innocenti, CISO, MoonPay
In May 2026, Pindrop published a report based on findings from the CISO Deepfake Defense Council, a group of security executives from seven Fortune 500 enterprises and other leading organizations. The Council is focused on delivering strategic guidance to help enterprises understand, prepare for, and defend against deepfakes—one of the fastest-emerging threats to trust and identity.
Of the six AI attacks impacting real-time channels, council members mapped six based on reputational and financial risk. Three of those attacks (fake job candidates, IT helpdesk attacks, and executive impersonation) landed as catastrophic or critical threats, reflecting high risk to both finances and reputation.1
That’s why the missing detection layer matters. The financial and reputational exposure from a deepfake attack can compound if it goes undetected. If security leaders understand the problem and know that the implications can be severe, why is the adoption of purpose-built tools so low?
Text
1%
Text
Text
1%
Text
Text
1%
Text
Text
Lorem ipsum dolor sit amet consectetur. Sit convallis ullamcorper et varius venenatis blandit vitae hendrerit blandit. Hac aenean tellus consectetur elit orci aenean ipsum arcu. Turpis a laoreet sit rhoncus eros penatibus facilisis dolor tempus. Vitae gravida fames nunc dui scelerisque porta nulla ut. Sit mi volutpat ipsum odio nulla sociis.
Lorem Ipsum is simply dummy
Vitae eleifend mi lorem iaculis malesuada sit adipiscing vel. Sit massa ut etiam eu.
1. Compiled based on five anonymous mapping exercises with security leaders from the CISO Deepfake Defense Council.
The Pindrop Survey was conducted by Wakefield Research (www.wakefieldresearch.com) among 250 US Security Leaders at organizations with a minimum of 1,000 employees), between June 11th and June 22nd, 2026, using an email invitation and an online survey. Results of any sample are subject to sampling variation. The magnitude of the variation is measurable and is affected by the number of interviews and the level of the percentages expressing the results. For the interviews conducted in this particular study, the chances are 95 in 100 that a survey result does not vary, plus or minus, by more than 6.2 percentage points from the result that would be obtained if interviews had been conducted with all persons in the universe represented by the sample.




