In partnership with

The AI Work Handbook That Cuts Your Workday in Half

The 8-hour workday is becoming a 4-hour workday for people who know how to use AI.

Everyone else is still catching up.

This AI work playbook shows you exactly how to cut your work hours in half using AI.

Sign up for Superhuman AI and get:

  • 50+ step-by-step AI tutorials to cut your workload in half — covering every part of your workday, from emails to strategy, used by 1M+ professionals at Google, Microsoft, and NASA

  • Superhuman AI newsletter (4 min daily) so you keep discovering new AI tools and skills to stay ahead in your career — the playbook is just the start

THE DEAD DROP // ISSUE NO. 109 // 07.14.2026 EYES ONLY
 
The Dead Drop
FRAUD · POWER · PSYOPS
 
Your bank can freeze the account. Your card issuer can send a new number. Nobody, anywhere, can send you a new face (The Fraudfather would have tried to replace his already.)
GM, WELCOME BACK TO THE DEAD DROP.

A webpage opens on a smartphone in Jakarta. It says money is waiting. 1 million rupiah, roughly 60 U.S. dollars, sent by someone named WILDAN, held at the gate until the recipient completes a quick security step. The page wears the blue and white of a card network. It uses the right words. Verifikasi Visa Secure. It asks, politely, for permission to turn on the camera. Face and location, it explains, are used for identity verification to keep the transaction safe.

The person taps allow. They are watching for the money. They never see the camera turn on, because the page hides its own video feed. Behind the frozen loading screen, the front camera is already running. Every 2 seconds it grabs a still and ships it to a Telegram bot. Then it asks for the microphone. Then it takes 20 more photographs and records 10 short videos, 5 seconds each, and uploads every one to the Telegram bot.

There was never any money. There was never a WILDAN. The security step was the robbery, and what it took cannot be canceled, reissued, or reset. Let me introduce you to camera-first phishing. Some may show you how the machine works. They will not tell you how to survive it. That part is ours.

 

The Playbook Has Changed Its Target

For 30 years, phishing wanted one thing: a string you typed. A password, a card number, a one-time code. The whole defensive industry grew up around that assumption. We built password managers, we forced resets, we bolted on multi-factor authentication, we taught people to hover over hyperlinks. All of it rests on a single quiet premise. Whatever the criminal steals, you can change. A leaked password gets rotated. A cloned card gets a new number in three business days. The stolen credential has a shelf life, and the reset button is the escape hatch.

Camera-first phishing throws that premise out. It does not ask you to type anything. It asks for a browser permission, and it uses the same legitimate features that power your video calls and your map apps: getUserMedia for the camera and microphone, the Geolocation API for your position. There is no exploit here, no vulnerability to patch. The attacker is not breaking the browser. The attacker is asking, and you are consenting, because the request is dressed as the last step between you and your money.

What it harvests is a different class of thing. A live capture of your face, from several angles, under a background that flips between white and grey to sharpen the image, a trick the code itself labels a strobe flash. Short videos with sound. Your GPS location. Your IP address. Your device and browser fingerprint. Why does a criminal wants that bundle instead of a card number? A stolen password can be reset, a stolen card can be canceled, but a collection of facial images, short videos, location data, and device information is far harder for a victim to recover from. You cannot rotate your face.

And there is a buyer for it. FinCEN has already warned banks that criminals are using deepfake photos and videos to defeat identity checks. We routinely watch underground markets trade in exactly this material, faces and clips sold to bypass the selfie and liveness gates that banks, exchanges, and payment apps now treat as "proof" of a human being. Your face is not being stolen to log in as you today. It is being stockpiled to become you later, at the account-recovery screen, at the new-account gate, in a video call to your own daughter.

◆ THE OPERATIVE'S OBSERVATION

Across twenty years of interviews, the most reliable confession was often the one a subject believed proved his innocence. People reveal the most when they think they are cooperating with police, not surrendering to it. Put a badge in front of them. Hand them a form. Ask them to complete one final verification step. The guard comes down because the ritual feels official.

Being examined feels like the opposite of being robbed. That instinct is not confined to the careless or gullible. It has been trained into all of us.

We were taught that more verification means more safety. The entire con hides inside that sentence.

Call it the Authentication Illusion: the belief that a security step protects the person performing it simply because it resembles security.

It does not.

A verification process protects the party that controls the process. When a criminal controls the page, the camera prompt is not a safeguard. The face scan is not a safeguard. The request to hold an identity document beside your head is not a safeguard. Each is a collection mechanism dressed in the uniform of protection.

The distinction is simple: legitimate security asks you to prove who you are to an institution you already intended to trust. The con asks you to prove who you are to the stranger who manufactured the need for proof.

   

Why This Reaches Your Build, and Your Family

If you build products, read this next part as a threat model, because your own defenses are the reason the face is worth stealing. The last five or six years of fraud engineering pushed the industry toward biometric proof. Selfie onboarding. Liveness detection. Match the photo to the ID. We told users this was the strong gate, the one a password thief could not walk through. Camera-first phishing is the market's answer to that gate. It is a supply line. Every face it farms is raw material aimed at defeating exactly the liveness check you just shipped. When your verification rests on something the user cannot change, a breach of that something is permanent, and you have quietly converted your customers' bodies into single-factor credentials with no reset path. Build accordingly. Assume the selfie is spoofable, layer device and behavioral signals underneath it, and never let a face be the only thing standing between an attacker and an account recovery.

If you do not build anything, read it as a family problem, because that is where it lands. The bundle harvested from one tap, your face, your voice, your location, is the exact starter kit for a synthetic video call. The FBI logged more than 3,100 complaints referencing AI-powered scams from older Americans alone last year, with losses above $352 million dollars. The grandparent scam used to need a panicked voice on a phone. Now it can wear your face. The person most likely to be fooled by a deepfake of you is not you. It is someone who loves you and will not pause to doubt the image. Their safety depends on a credential the criminal cannot fake, and you have to set it up before you need it. We will get to that in the Field Manual.

◆ TRADECRAFT · NEW FREE TOOL IN THE KIT

If the collection side of this problem is your face going out, the detection side is fake faces coming in. There is now free defensive gear for the second half, and it costs nothing but a bookmark.

OpenAI Verify (openai.com/verify). Upload an image and it checks for two provenance signals: C2PA Content Credentials, the open-standard metadata that records how a file was made, and SynthID, an invisible watermark baked into the pixels of anything OpenAI's tools generate. Metadata can be stripped by a screenshot. The watermark is harder to kill and survives cropping, filters, and compression. Free, no account.

Content Credentials Verify (contentcredentials.org/verify). The industry version, run by the C2PA coalition behind Adobe, Microsoft, and the major camera makers. It reads the provenance trail on any file that carries one, not just OpenAI's, and shows you the chain of custody.

Browser add-ons. Extensions now let you right-click any image or video and check its Content Credentials in one second, turning verification into a habit instead of a chore.

Know the limit, because it matters. A clean result means the file lacks a detectable signal, not that it is real. Absence of a watermark proves nothing. These tools confirm origin when a signal is present. They do not certify truth. Treat a positive hit as a strong lead and a blank as an open question, never an all-clear.

Meanwhile, the System Reached for the Same Answer

While the camera-first kits spread, Washington moved on the other end of the same problem, and it is worth watching because the legislators landed on the exact primitive this letter has preached for 109 issues. On June 25 the House passed the Financial Exploitation Prevention Act by a vote of 414 to 2. It amends the Investment Company Act of 1940 to let mutual funds and ETFs pause a suspicious redemption when they reasonably believe an older or impaired investor is being exploited. The hold runs up to 15 business days, and up to 25 if investigators confirm it. The whole mechanism is one idea: introduce a delay, and let the delay break the urgency the scammer manufactured.

The numbers behind the bill explain the 414 votes. The FTC put losses among Americans 60 and older at 2.4 billion dollars in 2024, a 300 percent jump from 600 million in 2020. The FBI's 2025 tally is worse: 201,266 complaints from that age group, 7.7 billion dollars gone, a 59 percent surge in a single year, an average loss of 38,500 dollars, and more than 12,400 seniors who each lost over 100,000. Jeff Carpenter, who runs a credit union in Oklahoma City, gave the defense in one line. Whenever there is a sense of urgency, you have to pause. Pausing is the most important thing.

Hold that next to the Jakarta page. Money is waiting. Verify now to release it. That is engineered urgency, the same accelerant the bill is built to counter, aimed at a single person with no compliance department to slam the brake. The lawmakers can legislate a pause for a mutual fund. Nobody can legislate one for the tap in your hand. That one you install yourself, and it is the whole game.

Field Manual

Six controls for the camera-first age. The answers the teardown left out.

01 Treat the permission prompt as the attack, not the gate. Burn one rule into muscle memory: no legitimate transaction on earth needs your live camera to release money to you. Receiving funds requires no selfie. A real payment clears inside your bank or wallet app, never through a link that opens your lens. The instant a payment page asks for camera, microphone, or location, you are not being verified. You are being harvested. Deny, and close the tab.
02 Revoke standing camera and mic grants now, before the moment. Open your browser's site settings and set camera, microphone, and location to ask every time, then clear the sites already allowed. On iOS and Android, do the same in the app permission list. This turns every future request into a deliberate prompt you have to answer, instead of a silent yes a page inherited months ago. A physical camera cover on the laptop costs a dollar and ends the debate.
03 Verify the destination out of band, on the URL, before anything loads. The page cannot fake the address bar. Before you engage a payment or verification flow, read the actual domain, not the logo, not the design. A card network does not release funds from a random domain in a language you did not choose. If a message pushed you here, stop and reach the institution through a number or app you already had, never the link you were sent. The link is the crime scene.
04 Install your own pause. Urgency is the confession. Every version of this scam runs on speed. Money is waiting, verify now, act before it is gone. Congress just wrote a 15-day brake into federal law because the pause is the single most reliable defense there is. You do not get 15 days. You get 60 seconds. Any screen that pairs a reward with a countdown and a camera request has told you what it is. Close it, breathe, and confirm through a channel it does not control.
05 If you already granted it, assume the face is gone and lock the recovery door. You cannot un-capture a selfie, so change what you still control. Move account recovery off SMS and selfie checks and onto passkeys or a hardware key. Freeze your credit. Tell your bank you may be targeted for an identity-verification bypass so a human flags new-account and recovery attempts. The harvested face has value only at the gate it can walk through. Close the gates while it is still just a photograph in a Telegram channel.
06 Set a family code word tonight. It is the one credential a deepfake cannot steal. Your harvested face and voice are ammunition for a synthetic call to the people who love you. Defeat it with a shared secret that was never uploaded anywhere: a word or question only your family knows, required before any request for money or any emergency claim is believed, no matter how real the voice or video looks. Pair it with the free provenance tools above for suspect images. A face can be faked. A word you agreed on in your kitchen cannot.
◆ THE FRAUDFATHER BOTTOM LINE

The camera prompt inside a payment is not the last step before your money. It is the robbery, filmed by you, at their request.

Everything the old playbook stole had a reset button. This does not. A face, a voice, a location captured in one tap becomes a permanent credential in someone else's hands, aimed at the exact biometric gates we were told to trust. So carry one rule out of this letter and let it override every clever screen: legitimate money never needs to see your face through a link. When a page pairs a reward with a countdown and a request for your camera, you already have your answer. Deny. Close. Verify in the real app, on your own clock. The Authentication Illusion tells you that being checked is being kept safe. Break it. Ask who controls the check. If it is not someone you already trust, the check is the theft, and the only winning move is the pause you install yourself.

QUICK REFERENCE · THE CAMERA-FIRST FLARES
When you see it, the page is the predator:
  A payment or refund page asks to turn on your camera.
  "Verify your face to release the funds."
  Money is waiting, and a timer is running.
  Camera, microphone, and location asked for at once.
  The domain is unfamiliar, or the language is not yours.
  A link you were sent, not an app you opened.
 
The protocol:
  Deny camera, mic, and location on any payment page.
  Set browser permissions to ask, and clear old grants.
  Read the domain. Reach the institution your own way.
  Set a family code word. Pause before you ever tap allow.
◆ SPREAD THE SIGNAL

The person who taps allow for the waiting money is not reading this. You are.

A face can be harvested in one tap and never given back. The people you love will not pause when a screen wearing your face asks them to move fast. You are the one who can set the code word and teach the pause tonight, before a payment page turns their trust into someone else's raw material. Forward this. Then have the five-minute talk.

SEND THEM THE DEAD DROP
EYES ONLY.
FORWARD WITH CARE.

Disclaimer

The material contained in these newsletters examines techniques developed for high-stakes environments, including intelligence operations, law enforcement, investigations, negotiation, and human-source engagement. Such methods do not exist outside the law. Their legitimate use is constrained by professional ethics, established safeguards, human rights protections, and the legal authorities governing the person who employs them.

Knowledge is not authorization.

Nothing contained here should be interpreted as permission to manipulate, coerce, deceive, intimidate, exploit, or harm another person. Psychological influence techniques can produce consequences far beyond the intention of the person who applies them. Misuse may result in civil liability, criminal exposure, professional sanction, reputational ruin, or consequences that cannot be reversed once set in motion.

This material is provided solely for education, ethical analysis, professional awareness, and baseline reference. The author and publisher accept no responsibility for actions taken, omitted, improvised, or rationalized by the reader.

Some doors are described so that you may recognize them.

That does not mean you should open them.