The Most Common AI Scams Targeting Americans in 2026


AI scams are becoming more sophisticated, using deepfakes, voice cloning and convincing fake messages to trick Americans. Learn about the most common AI scams in 2026 and how to avoid becoming a victim.

Insights


The Most Common AI Scams Targeting Americans in 2026

01


AI Voice Cloning and Family Impersonation Scams

Learn how criminals use AI-generated voices to impersonate loved ones, creating convincing emergency calls designed to pressure victims into sending money quickly.

02


Deepfake Videos and Fake Government Messages

Discover how realistic AI-generated videos and fake messages are being used to impersonate public officials, celebrities and trusted organisations to steal personal information.

03


AI Powered Phishing and Online Fraud

Explore how AI is making phishing emails, text messages and fake websites more convincing than ever, helping scammers bypass traditional warning signs and target victims at scale.

Top AI Scams Americans Need to Watch for in 2026

What are the most common AI scams targeting Americans right now? According to the FBI’s Internet Crime Complaint Center, Americans lost $893.3 million to AI-enabled scams in 2025 alone. When you factor in unreported fraud, broader industry estimates from the Consumer Federation of America push that figure to $6.3 billion. These aren’t statistics from some distant future, they’re the results of attacks that happened last year, to real people, using technology now widely accessible through consumer web services and low-cost tools that require no technical background to operate.

AI scams are no longer a niche threat that only affects corporations or the extremely wealthy. They’re showing up in grandparents’ phone calls, small business inboxes, and customer service chats. Reported AI-related fraud incidents rose sharply year over year through 2025, and the scammers behind them are getting harder to spot with every passing month.

At The Digital Resistance , our mission is to make sure everyday Americans have the same information that security professionals do, in plain language they can actually use. This article is that kind of resource. By the time you finish reading, you’ll know which AI scams are most active right now, what to watch for in the moment, and exactly what to do if one finds you.

What Are the Most Common AI Scams Targeting Americans?

How deepfake impersonation calls actually work

Scammers harvest audio and video of real people from publicly available sources: social media posts, YouTube interviews, company websites, and even TikToks. That material gets fed into cloning software that learns the person’s voice and generates entirely new speech. Real-time AI video tools have advanced far enough that a scammer can now produce a convincing live video feed of a fabricated person during an active call, a form of synthetic media fraud that security researchers have documented extensively in recent years.

The impersonation targets are usually someone you trust immediately: a company executive, a government official, or a family member. That instant trust is the entire point. The technology doesn’t need to be perfect; it only needs to be convincing enough that you don’t stop to question it before you act.

Voice cloning fraud and the “family emergency” setup

The most common consumer-facing version of voice cloning fraud is the grandparent scam. A scammer pulls a few seconds of audio from a relative’s social media account, clones the voice using publicly available platforms, and calls a parent or grandparent claiming the relative has been arrested. The request that follows is always urgent: wire money, buy gift cards, or send crypto before the situation gets worse. The person on the line sounds exactly like someone they love.

This same technique scales up for corporate targets. Instead of a grandchild, the cloned voice belongs to a CEO or CFO. Instead of $6,500, the requested transfer runs into the tens of millions. The emotional mechanics are identical: familiarity, urgency, and pressure to act before anyone else finds out.

AI-generated phishing emails and why they’re harder to ignore

Traditional phishing emails were relatively easy to spot. Bad grammar, generic greetings like “Dear Customer,” and mismatched sender addresses were common giveaways. Generative AI has eliminated most of those tells. A 2024 security industry study found that AI-written phishing achieves a 54% click-through rate compared to 12% for traditional phishing, because these messages are grammatically clean, contextually relevant, and tailored to the individual recipient.

Spear-phishing takes this further. Attackers scrape your name, employer, recent activity, and professional relationships from public sources, then craft an email that references your actual context. It might look like a message from your accountant about a document you actually discussed, or a follow-up from a vendor you just started working with. That specificity is what makes the modern version so effective.

Fake AI customer service bots and tech support fraud

Fraudulent chatbots and voice-response systems now convincingly impersonate legitimate brands: banks, Amazon, Microsoft, Medicare, and other organizations Americans interact with regularly. These systems are designed to harvest login credentials, payment card numbers, or remote access to your device. What makes this scam particularly effective is that many victims initiate the contact themselves by clicking a fake ad or calling a spoofed number that appeared in a search result.

By the time the person realizes something is wrong, they’ve already handed over sensitive information to a system built from the start to collect it. Before engaging any customer service chatbot for a sensitive issue, confirm you reached it through the company’s official website, not through an ad or a search result link.

What the financial damage data actually shows

Investment fraud leads at $632 million in losses

The FBI’s Internet Crime Complaint Center (IC3) reported $893.3 million in AI-scam losses for 2025, and investment fraud alone accounted for $632 million of that total. Scammers use AI-generated content to build fake trading platforms, fabricate glowing testimonials, and produce deepfake video endorsements featuring celebrities or financial advisors who never agreed to appear. The platforms look professional, the returns look real, and victims often don’t discover the fraud until they try to withdraw funds.

That $632 million also reflects only what was formally reported to the IC3. Investment fraud is widely underreported, researchers note that victims frequently avoid filing complaints out of embarrassment or uncertainty about where to report, which means the actual losses are almost certainly higher than official figures suggest.

Who else is paying the price: BEC, romance scams, and tech support

According to the same IC3 data, business email compromise accounted for $30.3 million in AI-related losses, with tech and customer support fraud at $19.5 million, confidence and romance scams at $19 million, and personal data breaches at $18.8 million. These numbers represent thousands of individual incidents, not a handful of large-scale corporate heists.

IC3 data shows that seniors and small business owners appear disproportionately in these figures. Older adults are frequently targeted because they’re less likely to be familiar with voice cloning technology. Small business owners are targeted because they often lack formal fraud verification procedures, which means a convincing impersonation call or email is more likely to result in an unauthorized transaction.

Red flags that reveal an AI scam before you act

What to listen and watch for on calls and video

On audio calls, listen for flat or robotic delivery that lacks normal human variation. Cloned voices often have unnatural pacing: pauses in the wrong places, sentences that rush or drag slightly, and missing filler words like “um,” “you know,” or a natural exhale before a difficult sentence. Mispronunciation of names, looped background noise, and an oddly polished quality to every word are also common signals.

On video calls, watch for lip-sync that doesn’t quite match the audio, limited or stiff facial movement, and lighting or shadows that look inconsistent with the stated environment. No single indicator is definitive, but when two or three appear together, something is worth investigating.

The pressure tactics scammers rely on

Across every AI scam type, the behavioral red flags follow the same pattern. Extreme urgency is the most reliable one: “don’t hang up,” “you need to do this before anyone else finds out,” “this has to happen in the next hour.” That urgency exists because scammers need to stop you from pausing long enough to verify anything.

Other consistent red flags worth memorizing include:

  • Requests for secrecy (“don’t tell anyone about this”)
  • Insistence on irreversible payment methods, wire transfers, gift cards, or crypto
  • Resistance when you try to call back through a number you already know
  • Contact through unexpected channels, like a personal WhatsApp message or an unfamiliar email address

The single most reliable test: a legitimate person or organization will nearly always tolerate a pause and a verification call. Scammers, in contrast, will push hard against that pause almost every time, because the moment you verify, the scheme collapses.

Real cases that show exactly how these attacks play out

Corporate deepfake heists: when your CFO isn’t your CFO

In early 2024, an employee at the engineering firm Arup’s Hong Kong office joined what appeared to be a legitimate video conference with the company’s CFO and several senior colleagues. According to reporting by the BBC and subsequent Hong Kong police statements, every person on that call was an AI-generated deepfake. The employee authorized 15 wire transfers totaling approximately $25.6 million (HK$200 million) before contacting headquarters and discovering the meeting had never happened. This case is the clearest documented example of how far real-time synthetic media fraud has already advanced.

An earlier case from the UK showed the same pattern at the audio level: a senior executive transferred approximately €220,000 after a phone call from what sounded exactly like the CEO of the parent company. Investigators later identified AI voice synthesis as the method used. These aren’t isolated incidents, they’re documented proof that the technology works well enough to deceive experienced business professionals.

Everyday Americans targeted with cloned family voices

In one documented case, a grandmother received a call from what sounded exactly like her grandson. He claimed he had been arrested and needed $6,500 immediately. She sent the money. Her real grandson was fine. The scammer had built the voice clone from a few seconds of audio scraped from the grandson’s social media account.

IC3 complaint data indicates this type of scenario occurs many thousands of times each year and hits older adults hardest, because many don’t know this technology exists at all. The emotional impact of hearing a family member’s voice in distress overrides the skepticism that might otherwise catch the deception. Awareness is the primary defense here, and sharing what you know with the people you care about is one of the most concrete things you can do.

What to do immediately if you’ve been targeted or already fell for it

Stop the bleed first: bank, cards, and payment apps

Stop all contact with the scammer immediately. Don’t respond, don’t click anything else, and don’t try to engage them further. Your next call is to your bank or payment provider, and it needs to happen as fast as possible. Ask them to freeze, hold, dispute, or attempt to reverse any transactions. For card payments, request a chargeback; for wire transfers, ask whether a recall is still possible. The window for reversal is narrow and closes fast.

For cryptocurrency, notify the exchange immediately and save every wallet address involved. Crypto recovery is rare, but the documentation matters for law enforcement and for any dispute you pursue. The faster you contact your financial institution, the better your odds of recovering anything.

Protecting your identity in the aftermath

Once you’ve contained the financial damage, change passwords for your email, banking, and any accounts the scammer may have accessed. Enable two-factor authentication on everything. If you think your phone number was compromised, call your mobile carrier and ask about SIM protection.

If you shared a Social Security number, ID documents, or sensitive personal data, place a fraud alert or credit freeze with Equifax, Experian, and TransUnion right away. Save everything: screenshots, emails, transaction IDs, call logs, and bank records. That documentation supports every step that follows, from bank disputes to law enforcement reports.

How to report AI fraud to the FTC and FBI IC3

File a complaint at reportfraud.ftc.gov with the FTC and submit a separate report to the FBI’s Internet Crime Complaint Center at ic3.gov. Both platforms walk you through the process with prompts; you’ll need dates, amounts, contact information for the scammer, and any supporting documentation you saved. If money was lost or identity theft occurred, file a local police report as well.

Reporting serves two purposes: it helps law enforcement identify patterns and build cases, and it creates an official record that can support fraud reversal requests with your financial institution. If the scam came through a specific platform, report it there too. Every report makes the next person a little harder to target.

Staying ahead as AI scam tactics keep evolving

Daily habits that make you a harder target

Set up a verbal safe word with your family right now. It’s a simple phrase only you and your close contacts know, and it’s what you ask for when something feels off on a call claiming to be a loved one. Verify any unexpected financial request through a known callback number, never the one provided by the caller. Treat unsolicited urgency as a red flag by default, regardless of who seems to be calling.

Use multi-factor authentication across all financial accounts, and be intentional about how much voice and video content you share publicly. Every audio clip you post is potential raw material for a cloning attempt. That’s not a reason to disappear from the internet; it’s a reason to be thoughtful about what you put out and where.

Where to stay current as these tactics keep shifting

The Digital Resistance exists precisely for this moment. It’s a people-first movement built for everyday Americans, small business owners, seniors, parents, and community organizations, who want plain-language updates on AI scam tactics without needing a cybersecurity background to understand them. These tactics are shifting faster than most people expect, and staying current is no longer optional.

Follow The Digital Resistance for real-time alerts on emerging scam patterns, free protective guidance, and a community that shares warnings as threats evolve. The goal is to keep you ahead of the next scam, not catching up after it’s already hit someone you know.

The bottom line

Understanding what are the most common AI scams targeting Americans comes down to recognizing one consistent pattern: impersonation, urgency, and pressure to skip verification. That pattern holds across all four scam types covered here, deepfake video calls, cloned voices on the phone, precision-crafted phishing emails, and fake customer service bots designed to harvest your credentials.

If something feels wrong, pause. Call back through a number you already trust. Give the other person the chance to tolerate that verification, because a scammer won’t. And if money has already moved, call your bank before you do anything else. Time is the variable that determines how much is recoverable.

That’s what this site is for. Bookmark it, share this article with someone who could use it, and take five minutes today to set up that family safe word. Those small steps are what the resistance is built on.

FAQ: What Are the Most Common AI Scams Targeting Americans in 2026?

What are the most common AI scams targeting Americans today?

The four most active types are deepfake video impersonation, voice cloning fraud (including the grandparent scam), AI-generated phishing emails, and fake customer service chatbots. Each exploits trust and urgency in different ways, but all share the same behavioral warning signs described above.

How much money have Americans lost to AI scams?

The FBI’s IC3 reported $893.3 million in verified AI-related scam losses for 2025. When accounting for underreporting, the Consumer Federation of America estimates the true figure is closer to $6.3 billion.

How can I tell if I’m talking to a deepfake or a cloned voice?

Listen for unnatural pacing, robotic delivery, and missing conversational filler. On video calls, watch for lip-sync mismatches and inconsistent lighting. Most importantly, ask for a pause to verify through a number you already have, a legitimate contact will accommodate that request without resistance.

Where should I report an AI scam?

Report to the FTC at reportfraud.ftc.gov and to the FBI at ic3.gov. File a local police report if money was lost. Report through the platform where the scam occurred as well.

Headquarter

12 Belmont, BathUnited Kingdom

Telephone

+447707329924





    Privacy Preference Center