
Arup Deepfake Fraud
AI-Generated CFO Steals $25.6 Million on Video Call
An employee at Arup, a multinational engineering firm, received an email requesting a confidential financial transaction.
- 01TRIGGERAn employee at Arup, a multinational engineering firm, received an email requesting a confidential financial…
- 02MACHINE ACTIONFraud enabler
- 03MISSING GATEIdentity verification and dual control
- 04IMPACTFinancial harm
The short version
An employee at Arup, a multinational engineering firm, received an email requesting a confidential financial transaction.
Case telemetry
- INCIDENT
- SS-IR-037
- DATE
- January 2024
- SYSTEM
- Arup Deepfake Fraud
- LOCATION / SCOPE
- Hong Kong
- EVIDENCE
- Reported
- AI ROLE
- Fraud enabler
- HARM
- Financial harm
- SOURCES
- 1 cited record
The event
An employee at Arup, a multinational engineering firm, received an email requesting a confidential financial transaction. Skeptical, the employee joined a video call to verify - and saw the company's CFO and several colleagues on screen, all confirming the transfer. Every person on the call was an AI-generated deepfake. The employee was the only real human in the meeting. Convinced by the realistic video and audio, the employee authorized 15 transactions totaling HK$200 million (US$25.6 million) to five Hong Kong bank accounts controlled by the attackers.
What the machine did
The attackers used publicly available video and audio of Arup executives to train AI deepfake models that replicated their appearance, voice, and mannerisms in real-time on a multi-person video call. The AI-generated personas responded to the employee's questions in real-time. The technology that was supposed to connect people became the weapon that impersonated them.
Where the failure landed
$25.6 million stolen. The fraud was only discovered when the employee later verified the transaction through internal channels. Hong Kong police arrested six people. The case became the highest-profile deepfake fraud in corporate history, demonstrating that AI can now defeat the most basic human verification - "I saw them on video."
Reported
Documented in the cited public record. Follow the sources for the precise evidentiary posture.
SOURCE RECORD UPDATED 2026-07-09
1 cited record
- 01Secondary / analysisSouth China Morning Post: HK$200 million deepfake scam (2024)
Identity verification and dual control
The failure pattern in this case: Unverified identity or synthetic media.
The moment the path could change
A named reviewer verifies identity through a separate trusted channel before money, access, or public claims can move.
Autonomy is a design choice.
See the operating model that keeps AI useful while preserving human authority at consequential moments.
Compare AgenticAI and AugmentedAI →