TechForge

July 21, 2026

Share this story:

Tags:

Categories:

AI’s increasing sophistication and accessibility isn’t only driving up enterprise productivity. It’s also fueling more powerful phishing attacks. Deepfake phishing, which uses convincing replicas of a person’s voice, face, and sometimes their entire body, is becoming dangerously commonplace. In 2025, some 12% of successful scams used deepfakes, or other AI-generated content, as lures. 

Organisations are looking for ways to protect themselves. Periodic training can teach employees what to look for to identify a deepfake, but it’s not very effective at getting them to recognise one in real time. Highly realistic deepfake phishing simulations are the best way to expose employees to authentic-seeming phishing attacks under similarly stressful conditions, revealing gaps in employee responses and building strong security habits. 

There are many vendors that offer phishing simulations, but not all of them serve up convincing deepfake lures. Generally, simulations tend to focus on email-driven phishing, effectively sidelining other channels and formats. However, multimedia impersonations are just as likely to be sent by SMS, social media, phone calls, or even QR codes as over email. 

That’s why we’re reviewing five platforms that cover this important security issue. 

Here’s a summary of what this article will discuss:

  • The key capabilities offered by Hoxhunt, Jericho Security, Doppel, Brightside, and Breacher.
  • Which use cases are most relevant for each deepfake phishing simulation platform.
  • What makes Hoxhunt and Jericho stand out in the market.

Hoxhunt 

Hoxhunt is a complete security awareness solution that aims to reduce human risk and drive behavior change across the entire organisation by mimicking real-world attack patterns. It includes security awareness training, phishing simulations, and automated reporting. Hoxhunt delivers powerful AI-generated deepfake lures that simulate multi-stage attacks, mimicking real world tactics. 

The platform’s AI Spear Phishing Agent automatically creates personalised phishing simulations that are adapted to each trainee. An employee might receive a phishing email that takes them to a fake video call over Teams, Meet, or Zoom, where they’ll interact with a dynamic AI-generated “executive” that responds to their questions and authorises them to click a link or approve a payment.

Key differentiators:

  • Adaptive training personalised to each employee.
  • Immediate in-context micro-training after an employee fails a phishing simulation.
  • Multi-channel deepfake simulations across email, video conferencing, SMS, and voice calls.

Best for: Large enterprises that prioritise continuous behaviour change and realistic AI/deepfake phishing training.

Jericho Security

Jericho Security is a next-generation AI security awareness platform that’s entirely built around AI-powered social engineering attacks. It uses generative AI to produce strong phishing emails, SMS messages, and multi-channel business communications that are tailored to each employee. 

Deepfake lures are among Jericho’s core capabilities. It runs voice phishing (vishing) and video simulations using AI avatars that conduct an interactive conversation instead of just sending static phishing messages. 

Key differentiators:

  • Purpose-built around AI threats rather than evolving from traditional phishing awareness training.
  • Multi-channel attacks across email, SMS, voice calls, and video.
  • Conversational simulations using dynamic AI personas.

Best for: Organisations specifically preparing for AI-driven phishing and executive impersonation attacks.

Doppel 

Doppel began as a digital risk company but leveraged its expertise in detecting deepfake impersonations to offer authentic simulations. It’s good at increasing employee awareness, but it’s not a substitute for a full security awareness training solution, as the platform doesn’t address phishing emails and chained multi-stage phishing attacks.  

Its focus is on providing compelling deepfake impersonations using voice and video channels. The goal is to teach employees to rely on trusted processes even under stress, instead of believing in their ability to detect a fake. 

Key differentiators:

  • Specialist expertise in brand and executive impersonation.
  • Trains employees to trust the process instead of trying to determine on their own when a voice or video call is a deepfake.
  • Closely mirrors real executive fraud attacks.

Best for: Organisations worried about executive impersonation, business email compromise (BEC), and financial fraud.

Brightside 

Brightside AI focuses primarily on voice phishing (vishing) simulations, although it also offers a wider security awareness platform. The company uses AI to generate genuine-sounding phone calls that adapt to the employee’s responses and carry out a realistic conversation. 

Brightside’s tech clones executives’ voices to use in deepfake vishing lures, with the goal of testing whether employees can make decisions under pressure, rather than teaching them to spot phishing attempts of many types. 

Key differentiators:

  • Interactive AI-powered phishing conversations.
  • Live social engineering practice for employees.
  • Voice phishing (vishing) is a significant strength. 

Best for: Organisations where phone-based fraud and help desk impersonation are major risks.

Breacher AI 

Breacher.ai is an offense-oriented security platform that runs red team-style deepfake social engineering simulations. Its goal is to test operational resilience against AI-powered attacks. 

Breacher’s strength is in its realism. The solution uses AI to deliver voice and video phishing impersonations that are tailored to the organisation’s context and risk factors, designed to mirror today’s sophisticated attack patterns. 

Key differentiators:

  • Red-team style phishing simulations.
  • Focus on measuring organisational resilience against AI-enabled attacks.
  • Combines phishing with broader social engineering scenarios.

Best for: Security-mature organisations looking for advanced adversary emulation.

Comparison chart

When comparing different security awareness platforms that offer deepfake phishing simulations, bear in mind that each one has different strengths and is best suited for different use cases. 

CapabilityHoxhuntJerichoDoppelBrightsideBreacher.ai
AI-generated phishing emailsStrongStrongWeakWeak Strong
Deepfake phishing simulations (voice/video)StrongStrongStrongVoice onlyStrong
Multi-channel attack simulationsStrongStrongModerateVoice-focusedStrong
Adaptive/personalised simulationsStrongStrongWeak Weak Moderate
Primary deepfake training focusEnterprise workforceAI-powered phishingExecutive impersonationVoice phishing (vishing)Adversary simulation

Among the products we reviewed, Hoxhunt is the closest to a complete all-in-one security awareness platform. Jericho is the best fit for organisations preparing for AI phishing specifically, while Doppel suits companies with high-profile executives. Brightside is a good choice for teams that regularly receive external calls, like IT help desks and financial institutions, and Breacher matches companies that want to validate resilience. 

Conclusion

Malicious actors are taking advantage of the rapid rise in accessibility for AI-powered deepfakes. The only way to keep ahead of them is to integrate convincing simulations into your security awareness training, either by adding a platform that specialises in deepfake lures, or by choosing a complete security awareness solution that already includes deepfake phishing simulations. 

FAQ

What are the best security awareness training options available?

That depends on what you are looking for. Hoxhunt is an excellent all-round security awareness training solution built on behavioural science that combines realistic phishing simulations with micro-training. Jericho Security and Doppel specialise in convincing deepfake phishing simulations; Brightside is best for vishing awareness; and Breacher is the best bet for testing resilience. 

Why is it so important to include deepfake lures in my company’s security awareness training program?

Phishing attacks increasingly use convincing deepfakes that impersonate the voice and video presence of trusted individuals. Realistic simulations are the only way to train employees to recognise and respond safely to such attacks. 

What companies offer security awareness training that includes AI-generated simulations?

Many vendors offer AI-powered phishing simulations. Hoxhunt incorporates them into its security awareness training solution; others like Jericho Security, Doppel, Brightside, and Breacher.ai are standalone simulation platforms that integrate easily with other training solutions. 

How do the leading security awareness training vendors approach deepfake phishing training differently?

Every security awareness training solution vendor has a different focus in deepfake phishing training. Hoxhunt emphasises behavioural change for enterprise employees, while Jericho specialises in AI-native phishing. Doppel focuses on executive impersonation, Brightside on AI-powered vishing, and Breacher.ai on red-team-style adversary simulations.

About the Author

AI News

Related

September 4, 2026

September 4, 2026

September 3, 2026

September 3, 2026

Join our Community

Subscribe now to get all our premium content and latest tech news delivered straight to your inbox

Popular

9634 view(s)
9056 view(s)
8227 view(s)
8084 view(s)

Subscribe

All our premium content and latest tech news delivered straight to your inbox

This field is for validation purposes and should be left unchanged.