A journalist successfully bypassed Lloyds Bank's voice authentication system using an AI-generated synthetic voice clone created with ElevenLabs technology, demonstrating a security vulnerability in voice-based biometric banking systems.
A journalist conducted a security test on Lloyds Bank's Voice ID authentication system by creating a synthetic voice clone using ElevenLabs AI technology. The journalist recorded approximately five minutes of their own speech reading sections of Europe's data protection law and uploaded it to ElevenLabs' free voice generation service. After some adjustments to make the cadences sound more natural, the AI-generated voice successfully bypassed the bank's voice authentication system, which claims to analyze over 100 different voice characteristics. The journalist was able to access account information including balances and recent transactions after providing their date of birth and playing the synthetic voice saying 'my voice is my password.' The test was conducted on a Lloyds Bank account in the UK, though similar voice verification systems are used by major banks across the US and Europe including TD Bank, Chase, and Wells Fargo. Lloyds Bank acknowledged awareness of synthetic voice threats and stated they are deploying countermeasures, though they have not seen actual fraud cases using this method. The bank maintains that voice ID provides higher security than traditional authentication methods and has led to a significant reduction in phone banking fraud.
Domain classification, causal taxonomy, severity scores, and national security assessments were LLM-classified and may contain errors.
Using AI systems to gain a personal advantage over others such as through cheating, fraud, scams, blackmail or targeted manipulation of beliefs or behavior. Examples include AI-facilitated plagiarism for research or education, impersonating a trusted or fake individual for illegitimate financial benefit, or creating humiliating or sexual imagery.
AI system
Due to a decision or action made by an AI system
Intentional
Due to an expected outcome from pursuing a goal
Post-deployment
Occurring after the AI model has been trained and deployed