
Rachel Tobac
@RachelTobac • 111,868 subscribers
Friendly Hacker & CEO @SocialProofSec security awareness/social engineering prevention Training, Videos, Talks | 3X @DEFCON🥈| Ex CISA gov Tech Advisory Council
Videos

WHOA Google let me know they saw my tweet below last year & built a tool to defend against this exact call spoofing + AI voice clone attack! As of today, fake call detection on Android alerts when someone is impersonating your contact. Demo & thread of how it catches attackers:
Rachel Tobac61,229 Aufrufe • vor 6 Tagen

Let’s talk about risks w/ Apple’s new camera button & Visual Intelligence AI tools + integrations -- the potential ability to learn a stranger’s identity by simply taking a picture. Without big 3rd party integration guardrails, this new camera button + AI could invade privacy.
Rachel Tobac127,451 Aufrufe • vor 1 Jahr

*CNN Zoom Call Deepfake Demo* An engineering org sent $25 Million to scammers who deepfaked the finance team in a live video call. Are your colleagues, family & friends ready to catch this AI attack? I demo'd a live Zoom deepfake to CNN's Clare Duffy to help you spot the signs.
Rachel Tobac56,698 Aufrufe • vor 8 Monaten

*New live hack demo - stealing security question answers with AI voice clones* At DEF CON I went on Pierogi podcast and hacked Daniel Payback by calling his friends & stealing answers to his bank's password reset identity questions using a voice clone within 10 seconds.
Rachel Tobac65,266 Aufrufe • vor 9 Monaten

AI voice clones have hit the White House AGAIN, now impersonating the Secretary of State to other Gov officials to try to steal secrets/access. Here is a video of me live demoing how quick and easy it is to clone a voice to hack and how to catch AI voice clone attacks in action!
Rachel Tobac51,692 Aufrufe • vor 11 Monaten

I just live hacked Arlene Dickinson (Dragons' Den star - Canada's Shark Tank) by using her breached passwords, social media posts, an AI voice clone, & *just 1 picture* for a deepfake live video call. Thank you Elevate Mastercard for asking me to demo these attacks live!
Rachel Tobac74,321 Aufrufe • vor 1 Jahr

2nd Tea App breach?! 1 million messages w/ sensitive cheating stories, details of ending pregnancies, contact details, real names — it could not be more serious. Here are actions to protect yourself and what to do next. I’ll be on NBC News Now at 7 pm ET tomorrow discussing this.
Rachel Tobac39,939 Aufrufe • vor 10 Monaten

In the past quarter, I've had 6 orgs I work with mention to me that they're dealing with a live Zoom/Teams call deepfake impersonating an Executive to staff asking for a wire transfer or a password. This attack method is growing right now. Make sure your team knows to catch it.
Rachel Tobac28,093 Aufrufe • vor 6 Monaten

Heard of Apple’s lockdown mode? Now WhatsApp is launching its own anti-spyware prevention mode called Strict Account Settings. If you’re someone who might be a target of sophisticated spyware, this could be a match. Thanks WhatsApp for the partnership to keep folks safe.
Rachel Tobac17,123 Aufrufe • vor 4 Monaten

How would I hack YOU during the holidays? By messaging you about the packages, deals and giveaways you care about! Share these scam types with your fam so they know exactly which emails, texts, calls, and posts to be wary of this December. Stay politely paranoid, folks ☃️🤖🤘
Rachel Tobac46,973 Aufrufe • vor 1 Jahr

AI voice clones have hit the White House! If your team isn’t prepared to catch and stop these voice clone attacks, now’s a good time to get them educated and set up. Use a 2nd method of communication to verify identity before sending money, docs, data, etc. Be politely paranoid.
Rachel Tobac17,161 Aufrufe • vor 1 Jahr

*How do I hack executives in 2025 & how can you protect yourself and team!?* Thanks Picnic for partnering w/ me to demo how contact details on data brokerage sites can lead to a deepfake impersonation attack in a live video call (with the brilliant Robert M. Lee as my target)!
Rachel Tobac18,044 Aufrufe • vor 1 Jahr

How would I hack you this Valentine's Day?! Well we know how scammers do...they build trust then ask for money for a dire situation OR an investment opp! They even use deepfakes to trick in live video calls. Show your fam so they can spot romance scammer texts, chats, & calls 💝
Rachel Tobac12,644 Aufrufe • vor 1 Jahr

From Infosec Sea Shanty to a whole library of Security Music Videos. Got more positive client feedback today🥹: "Great response from our team on the videos. People keep saying: Music video is catchy, I can't get it out of my head!" - Head of Eng, Seattle, Financial Services org
Rachel Tobac11,783 Aufrufe • vor 3 Jahren
Keine weiteren Inhalte verfügbar