CaraComp
CaraComp
Forensic-Grade AI Face Recognition for:
Get Started7-day refund guarantee**
Podcast

That "Live" Video of You? A Deepfake Can Blink on Command Now.

That "Live" Video of You? A Deepfake Can Blink on Command Now.

That "Live" Video of You? A Deepfake Can Blink on Command Now.

0:00-0:00

This episode is based on our article:

Read the full article →

That "Live" Video of You? A Deepfake Can Blink on Command Now.

Full Episode Transcript


That "live" video call where someone blinks, turns their head, and answers your questions in real time? A deepfake can do all of that now — on command. The old trick of asking someone to blink to prove they're real? Attackers already know that script. And they've taught their fake faces to follow it.


If you've ever unlocked your phone with your face,

If you've ever unlocked your phone with your face, or verified your identity for a bank with a quick selfie video, this touches you directly. Because the whole idea of "prove you're a real, live person" just got a lot shakier. According to a twenty twenty-six U.K. government update, about eight million deepfakes were shared worldwide in twenty twenty-five. Just two years earlier, that number was around five hundred thousand. That's a sixteen-fold jump in three years — and it broke the way we prove who's who. So how do you verify someone's real when a fake face can blink back at you?

Let's start with a real case. According to fraud researchers, people opened bank accounts using AI-generated passport photos. Then, during the live video check, they claimed their camera was glitching to hide the fakery. They stacked two deceptions on top of each other. And that tells you exactly why one safeguard isn't enough anymore.

For years, the standard approach was simple face matching. The system compares your selfie to your ID photo and asks one question — is this the same person? That works great, until the selfie itself is fake. Face matching has no way of knowing whether the image in front of it is a real human or an AI creation.

So engineers added a second layer — liveness detection. This asks a deeper question. Not "is this the same person," but "is this a person at all?" And here's where a lot of people get it wrong, understandably so. Most of us assume that if a system confirms you're live on camera, the deepfake problem is solved.


Trusted by Investigators Worldwide
Run Forensic-Grade Comparisons in Seconds
Court-ready facial comparison reports. Results in seconds.
Get Started
7-day refund guarantee**

That belief made sense — for a while

That belief made sense — for a while. Liveness was built to stop old-school tricks. Someone holding up a printed photo. A rubber mask. A recorded video played back to the camera. It catches all of those beautifully. But a modern deepfake isn't a static photo. It's dynamic — it blinks, it turns its head, it can even respond when the system says "please look left." The exact challenges designed to prove you're real became a predictable script the fake could just follow along with.

There's a technical wrinkle here that most buyers never think to ask about. Stopping someone holding a photo to a camera is one problem. Detecting an AI face injected straight into the video stream from a fake camera app is a completely different problem. Different attacks — different technology to stop them. For the rest of us, it means "we handle deepfakes" can quietly mean two very different things.

So the answer isn't a smarter single detector. It's stacking independent signals. Picture three layers. Face match asks — does this look like the ID? A deepfake can pass that. Liveness asks — is this moving like a real person? An animated deepfake can pass that too. Then context asks the question the fake can't easily answer — does it make sense that this person is on this device, at this time, requesting this exact action? That third layer is what breaks attacks designed to fool the first two.

The science backs this up. Government testing at N.I.S.T. ran across eighty-two different algorithms. Combining them beat any single algorithm working alone. Why? Because detectors that fail on their own tend to fail on different kinds of attacks. One catches what the other misses. And the rules already reflect this — U.S. identity standards now require both liveness checks and explicit checks for AI-generated content. Liveness alone is treated as a bare minimum, not a finish line.


The Bottom Line

Here's the shift that changes everything. The old question was "can I spot the fake?" The new question is "how do I prove someone's real when anything can be faked?" You stop chasing the perfect lie detector — and start building proof from several honest signals that a faker can't line up all at once.

So here's the whole thing in three sentences. A deepfake can now fake your face and fake being alive on camera. No single check can catch it anymore. So the real fix is stacking three questions — is it the same person, is it a real person, and does the whole situation add up? Whether you're guarding a company's front door or just protecting your own bank account, the way we prove "this is really me" has quietly been rewritten — and now you know how it works. The full breakdown's in the show notes if you want the deep dive.

Ready for forensic-grade facial comparison?

Full forensic reports with detailed similarity scoring. Results in seconds.

Run My First Search