Google is launching fake call detection on Android to help stop scam calls that use caller ID spoofing and AI voice cloning to impersonate trusted contacts. The feature is rolling out globally this month for devices running Android 12 and later, starting with Pixel phones, and works through Phone by Google with supported RCS services. It is designed to warn users when a caller claims to be someone in their contacts but the call cannot be verified as coming from that person’s device.
The protection uses a silent background verification process in which the caller’s phone sends an encrypted confirmation signal during the call. If that signal is missing, the recipient’s device checks whether the real contact’s phone is actually placing the call and displays an impersonation warning if not. Google said the feature is enabled by default where supported, though users can turn it off in settings, and framed the rollout as a response to growing impersonation fraud that has expanded from consumer scams into business-focused social engineering and caused billions in reported losses.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Google said the fake call detection capability will roll out globally this month for Android 12 and later devices, starting with Pixel phones. The protection works when both parties use Phone by Google and compatible RCS-based verification is available.
Google announced a new Android security feature called fake call detection to identify impersonation scam calls using caller ID spoofing and AI voice cloning. The feature uses a silent encrypted verification process between devices and is enabled by default when supported Google apps and RCS are in use.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcehelpnetsecurity.com
Open sourcebleepingcomputer.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.