Fraudsters built a fake WhatsApp profile of WPP CEO Mark Read and staged a Microsoft Teams call using an AI voice clone and repurposed YouTube footage of a second executive to try to trick a WPP agency leader into setting up a "new business" for money and personal details; the target grew suspicious and the attempt failed.
Reviewed by the Social Engineering Examples team.
WPP CEO Mark Read disclosed in an internal email to company leadership, reported publicly on 10 May 2024 by the Financial Times and The Guardian, that fraudsters had attempted an elaborate AI-enabled impersonation scam against the company. The attackers created a fake WhatsApp account using a publicly available photograph of Read and used it to arrange what appeared to be a Microsoft Teams meeting involving Read and a second senior WPP executive. During the call, the fraudsters used an AI voice clone together with repurposed YouTube footage to simulate that second executive's live presence, while separately impersonating Read off-camera through the meeting's text-chat window. The pretext was that the actual target, an unnamed WPP "agency leader," was being asked to help set up a new business, with the ultimate goal of extracting money and personal details. The target became suspicious and did not comply, and the attempt failed with no funds or data lost. WPP confirmed the incident via a spokesperson statement, and Read used the episode to warn staff about increasingly sophisticated, individually tailored AI attacks on senior leaders.
The operation chained a fake profile, a spoofed video meeting, and synthetic media rather than a single deepfake artifact. First, fraudsters built a fake WhatsApp account using a publicly available photograph of CEO Mark Read, giving them a plausible identity to initiate contact. They used that account to arrange a Microsoft Teams meeting that appeared to include Read and a second, unnamed senior WPP executive. During the live call, the attackers deployed an AI voice clone plus repurposed YouTube footage of that second executive to simulate their real-time presence and voice. The deepfake "performance" was aimed at the second executive's persona, not a live clone of Read's voice. Read himself was impersonated only off-camera, via the meeting's text-chat window, rather than through a live voice clone, likely because sustaining two convincing simultaneous AI personas in one call is harder than one. With an apparently legitimate two-executive meeting underway, the fraudsters pressed the actual target, a WPP "agency leader," with the pretext that they were being asked to help set up a new business, a rationale intended to justify a later request for money and personal/financial details. Note: several secondary write-ups (e.g., insurance/vendor case studies) simplify this as "scammers cloned Mark Read's voice," but the original reporting, sourced from Read's internal email, indicates the live audio/video deepfake targeted the second executive's identity while Read was impersonated via photo and text only; WPP never named that second executive or the targeted agency leader.
The lure was a seemingly legitimate two-person executive video call: a familiar CEO photo/identity plus a voice-and-video-deepfaked colleague appearing to speak live, used to manufacture instant credibility for an unusual internal ask: help "set up a new business." That combination of recognized faces, a live-sounding voice, and an internally plausible corporate rationale was designed to short-circuit the target's normal skepticism about wire-transfer or data requests. The tell that broke the scam was not a specific technical glitch WPP disclosed publicly. The company only credited "the vigilance of our people, including the executive concerned," suggesting the targeted leader simply found the request itself, or some aspect of the interaction, suspicious enough to not comply, rather than the deepfake being visually or audibly detected as fake.
The attempt failed: no money was transferred and no personal data was disclosed. WPP characterized the incident as "prevented" thanks to the target's own vigilance, not a technical detection system. Read disclosed the episode in an internal leadership email (reported publicly on 2024-05-10) as a proactive staff-awareness warning rather than as a breach notification. WPP did not disclose the exact attack date, the identity of the targeted "agency leader," or the identity of the second impersonated executive, and there is no public report of any arrest, named threat actor, or law-enforcement case tied to this specific attempt.
This is one of the earliest and most widely cited named-company examples of a deepfake attack aimed specifically at a senior executive's own organization (rather than an external victim), surfacing in the same period as the successful HK$200m/$25M Arup deepfake video-conference fraud (Hong Kong, Feb 2024). It shows deepfake social engineering evolving from single-person voice-clone phone calls into layered, multi-persona video-meeting impersonation that blends a spoofed messaging profile, a live voice clone, and repurposed public video, raising the perceived credibility of the con. It also demonstrates that any public figure's existing media footprint (interviews, YouTube appearances, press photos) is now viable raw material for impersonation, and that attackers are consciously targeting internal, senior staff with psychologically tailored pretexts ("help me set up a new business") rather than the generic financial lures used against consumers. Finally, it is a rare publicized case where human suspicion, not a technical deepfake-detection tool, is credited with stopping a technically sophisticated AI-enabled attack, reinforcing that verification culture remains the primary defense even as synthetic media improves.
WPP's response was a proactive internal-awareness email from CEO Mark Read to leadership, explicitly telling staff "just because the account has my photo doesn't mean it's me" and warning that attackers now "go beyond emails to take advantage of virtual meetings, AI and deepfakes." Read also flagged that senior leaders face more tailored, "psychological" attacks than the scams that target the general public, implying a need for leadership-specific training rather than generic phishing awareness. WPP's spokesperson credited "the vigilance of our people, including the executive concerned" as the actual control that stopped the fraud: the targeted individual's own skepticism, not a technical control, defeated the attack. Industry write-ups of the case (Eftsure, Wells Insurance) draw the broader lesson of mandatory out-of-band verification for any unusual request to move money or "set up a new business," regardless of how convincing the accompanying video/voice appears, and treating meeting invites arriving via personal messaging apps (rather than corporate channels/calendars) as a red flag.
A Ukrainian-language "shared document" phishing wave used a fake reCAPTCHA "verify you are human" ClickFix page to trick victims into…
Vidoc Security Lab, a Polish-founded, US-headquartered cybersecurity startup, caught two separate job candidates using real-time AI deepfake video filters to…
Russian GRU-linked Forest Blizzard (APT28/Fancy Bear) used OpenAI's GPT-4-family LLM services to research satellite communication protocols and radar imaging technology…