Deepfake Simulation Platform | OSES™ - Breacher.ai

Every security training program.
One platform.

Awareness training, red teaming, deepfake simulation, tabletop exercises, and full orchestrated campaigns. Built on OSES™, run from a single console, and generated on demand by your team.

OSES™ is our Orchestrated Social Engineering Simulation framework: synthetic voice, video, and messaging coordinated into one campaign that follows the request into the process behind it: the callback, the approval, the transfer. Describe the scenario in plain language and the platform drafts the playbook, assigns a persona, clones the voice, places the call, handles the callback, and reports the outcome against your sector baseline. Run it with us, or run it yourself.

On-Demand Training Live Avatars Conversational Voice Editable Prompts Agent Personas OSINT Research Peer Benchmarking API & CLI Entra ID Sync

"Kudos to your entire team. We haven't even seen the report and the whole company is talking about the risks of voice cloning. It's been a huge win for us already."

CISO, Large Financial Enterprise
Deepfake attack simulation platform building a CEO helpdesk MFA reset playbook from a plain-language prompt, with persona, goal, and phone step.
Trusted by security teams in
Fortune 500 Financial Services Global Law Private Equity Regional Banking Technology Enterprise SaaS Fintech Infrastructure Energy Manufacturing Transportation & Logistics Public Sector

Results from real OSES™ engagements

56%
Clicked the link after a deepfake voicemail from the CEO
North American financial services, company-owned mobile
21.6%
Called the number back and spoke to the voice agent unprompted
Multinational financial services, approx. 500 employees
16%
Entered credentials on the landing page, in both engagements
Passwords are never captured

Five programs most teams buy separately

Awareness training from one vendor, red teaming from another, deepfake testing from a third, tabletops from a consultancy, and nothing that connects them. OSES™ runs all five off the same engine, the same personas, and the same reporting.

Awareness Training, On Demand

You generate it yourself, in minutes, whenever you need it. Point the builder at the playbook someone just fell for and it drafts the remediation module. Drop in a policy and it drafts the slides and the quiz. No content request, no vendor ticket, no waiting on a release cycle.

Self-GeneratedMinutes, Not WeeksSCORM Export
Red Teaming

Adversarial engagements scoped to an objective rather than a click rate. Agents run the full chain autonomously, crossing control boundaries the way a real operator would, with the CLI and API for teams who script their engagements.

Objective-ScopedAgenticScriptable
Deepfake Simulation

Cloned executive voice and likeness delivered where your people expect it, including live avatars that join a meeting and hold the pretext under questioning. Consent and scoping agreed before any likeness is built.

Voice CloningLive AvatarsDeepfake Video
Orchestrated Simulations

The full OSES™ campaign. A voicemail lands, a text references it, a video call confirms it, and the chain runs through to the consequential action. This is the part a single-channel phishing test cannot reach.

Multi-ChannelSequencedProcess-Level
Tabletop Exercises

Facilitated sessions on your incident process, with live avatar demonstrations for boards and executives and opt-in voice cloning so leaders hear themselves. People argue with the deepfake instead of watching a slide about one.

Board-LevelFacilitatedIncident Process
Penetration Testing

Where the target is the verification stack rather than the person. Synthetic faces, documents, and voiceprints submitted through liveness, document checks, video KYC, and voice biometrics. See deepfake penetration testing.

Liveness & PADVideo KYCStream Injection
One engine, one persona library, one benchmark. A finding from a red team engagement becomes the training module, and the tabletop runs on the same scenario the campaign just proved. That continuity is the thing five separate vendors structurally cannot give you.

What OSES™ is

An Orchestrated Social Engineering Simulation is a controlled, authorized exercise in which synthetic voice, video, and messaging are coordinated into a single campaign, and the full response is observed from first contact through to the consequential action. The consequential action is the point. Not the click.

01
Exposure
What an attacker would want, who holds the authority to give it, and how much public source material already exists
02
Consequential Action
The specific outcome being tested. The success condition, with everything else built backward from it
03
Layer Map
Which control should see it, which process should catch it, which role should challenge it. If nobody can answer, that is a finding
04
Orchestration
Two channels minimum, three is better, each artifact referencing the last and crossing a different control boundary
05
Execution
Unannounced, in a real working window, fully external. No software installed, no integration required
06
Reporting
Chain survival map, peer vertical benchmark, and remediation sequenced by layer

OSES™ never asks whether someone noticed. It asks whether the process held. Verification does not require distinguishing real from fake, which is exactly why it is durable: a callback placed to a number from your own directory works identically whether the caller was synthetic, a human impostor, or entirely legitimate. Read the full OSES™ framework.

Three layers that make an OSES™ campaign real

Everything else on this page runs on these. Take one away and you are back to sending mail and counting clicks.

Contextual

Built around your organization

The engine works from who your executives actually are, which approval chains carry real money or access, and which pretexts would survive scrutiny inside your company. A generic lure tests whether people are suspicious of strangers. That is not the question worth answering.

Orchestrated

Channels that hand off to each other

A voicemail lands, a text references it, a video call confirms it. Each step borrows credibility from the last. Testing one channel at a time misses the thing that makes modern social engineering work, which is the sequence itself.

Autonomous

Agents that hold the conversation

Voice and avatar agents run live. They place the call, converse if answered, leave a callback voicemail if not, and handle the inbound callback on their own. No operator waits on the line, which is what lets one campaign reach an entire population.

What the team running it actually sees

Every part of a campaign is editable, repeatable, and scriptable, starting with the training your team generates itself. Nothing is a black box you have to file a ticket to change.

Training Builder
You generate the training. On demand, in minutes.

This is the part worth pausing on. Every other vendor makes you file a request and wait for a content team to build a module, then ship it a quarter later against a threat that has moved on. Here your own team opens the builder, picks a starting point, and has a finished course with a knowledge check the same afternoon. No content request, no professional services line item, no release cycle.

  • Generate from a playbook: someone acted on a simulation, and the module writes itself around what they missed
  • Create from a document: drop in a policy, AUP, or code of conduct and get slides and a quiz back
  • Start from scratch on a blank canvas, or open a template and edit it
  • Role-specific content for finance, HR, IT, and executives, built by whoever knows those teams
  • SCORM export straight into your existing LMS, branded to your organization

Your findings, your policies, your executives, your brand. Built by your team, not requested from ours.

Deepfake awareness training module builder generating a remediation course from a simulation playbook, a policy document, or a blank canvas.
Deepfake Simulation
Clone the voice, assign the avatar, reuse the caller

This is where a deepfake stops being a demo and becomes a repeatable test. A persona carries identity, role, personality, appearance, and voice as one object: a live video avatar for meetings and a cloned voice for the phone. Build the executive once, then run them across every campaign, channel, and tenant without rebuilding anything.

  • Named personas with role, backstory, and authority level
  • Avatar selection for live Teams, Zoom, and Meet sessions
  • Voice cloning from short public samples, or a synthetic voice from the library
  • Accent, delivery pace, and objection handling defined per persona
  • Saved library, reusable across campaigns and tenants

Consent and scoping are agreed before any likeness is built.

Voice cloning and deepfake video avatar assigned to a simulation persona, with a cloned voiceprint preview for live deepfake sessions.
OSINT Research
The contextual layer, assembled before anything runs

Dispatch research against a person or a company, anchored on ground truth so a namesake never becomes a finding. The output feeds scenario design directly, and every source is recorded so each pretext is traceable back to public material.

  • Organization, executive, and reporting-line mapping
  • Identity anchoring on legal name, domain, and industry to prevent wrong-entity matches
  • Public voice and video source material discovery
  • Vendor, tooling, and process signals pulled from public content
  • Per-target enrichment, dispatched live or queued for the periodic sweep
AI social engineering platform dispatching OSINT research to map a company's public footprint and spear-phishing exposure, anchored on legal name, domain, and industry.
Risk Reporting
Per vector, against your sector baseline

A click rate on its own means nothing until you know what comparable organizations produce under comparable pressure. Reporting breaks results out by channel and compares each one to your industry baseline, so an outlier that needs attention this quarter is distinguishable from a median that is itself unacceptable.

  • Delivery, open, click, reply, submit, and susceptibility measured per vector
  • Comparison against your own vertical rather than a global average
  • Filter by sub-customer, vector, playbook, and date range, with saved views
  • OSINT exposure, susceptibility, trends, and scheduled report tabs
  • Export to CSV, plus board and executive briefing formats

Reporting is organizational. No named individuals, no department leaderboards.

Human risk management reporting dashboard comparing per-vector delivery, click, reply, and susceptibility rates against an industry baseline.

Every channel an attacker uses, one campaign

The email gateway is the one channel with mature defenses. Modern campaigns arrive somewhere else, which is why a simulation that only sends mail tells you very little.

New
Live Avatars

A synthetic executive who joins the meeting and responds in real time. Not a recording. It answers questions, handles pushback, and holds the pretext when a target tries to verify mid-call.

TeamsZoomMeet
New
Conversational Voice

An autonomous agent that runs the whole call cycle. It dials, converses if answered, leaves a callback voicemail if not, and answers the inbound callback itself, adapting to objections rather than reading a script. In one engagement 21.6% of the population called back and spoke to the agent unprompted.

OutboundInbound CallbackFull Transcripts
Cloned Voice & Video

Executive likeness built from short public samples and delivered where your people expect it, including ringless voicemail, with caller ID and sender domain under our control rather than a spoof filter's.

Voice CloningDeepfake VideoRingless Voicemail
Email, SMS & Chat

Written lures generated per target rather than per campaign, across email with sender infrastructure we control, Teams and Slack messages, SMS sequences, and social impersonation. Agents reply when the target writes back.

EmailTeams & SlackSMS
Meeting-Based Scenarios

The invite is the lure and the meeting is where compliance happens. Calendar invitations from a spoofed organizer, multi-participant scenarios with a supporting cast, and meeting-to-payment or meeting-to-access sequences.

Spoofed OrganizerSupporting CastRecorded Evidence
Voice & Telephony Pretexts

Where most orchestrated campaigns begin, and where detection performs worst. Vishing against staff and executives, helpdesk and IT support pretexts, and phone-to-SMS or phone-to-portal handoffs.

VishingHelpdesk PretextsChannel Handoff
Scenarios run to a consequential action: wire and payment authorization above threshold, vendor and banking detail changes, helpdesk credential and MFA reset, second-approver and dual-control bypass, privileged access requests, identity proofing and KYC steps, synthetic candidate and remote hiring checks, and credential capture. The click is where a phishing test ends. It is where a real incident starts.

Eight things most platforms keep behind a ticket

Every medium in one console, and the objects behind them exposed as yours to edit rather than ours to hide.

Channels
Every Medium, One Console

Build a campaign that crosses channels without switching tools. Conversational voice and ringless voicemail, live interactive video avatars, cloned voice and deepfake video, email, SMS, Teams, Slack, chat, and calendar-based meeting scenarios.

One campaign, not seven disconnected tests
Build
Prompt Customization

The prompts driving every agent are yours to edit. Set the objective the agent is working toward, define tone, urgency, and escalation behaviour, and set guardrails on what an agent will never say or ask for.

Versioned and reusable across campaigns
Build
Agent Personas

Build a caller once, then reuse them across the whole program. Named personas with role, backstory, and authority level, with voice, accent, delivery pace, and objection handling assigned per persona.

Saved library, reusable across tenants
Context
OSINT Research

The contextual layer, assembled from public sources before anything runs. Organization, executive, and reporting-line mapping, public voice and video source discovery, and vendor and process signals from public content.

Sources recorded, so every pretext is traceable
Execute
Batch & Distribution

Population-wide delivery, staged the way a real campaign would arrive. Bulk import and segmentation, staggered send and call windows rather than a single blast, per-channel throttling, and timezone-aware scheduling.

Announced drill mode or unannounced assessment
Target
Entra ID Integration

Target populations pulled from your directory instead of a spreadsheet. Sync users and groups from Microsoft Entra ID and target by department, role, or group membership, with populations staying current without manual re-import.

Directory only, no agent or endpoint software
Report
Reporting

Findings and evidence, exportable rather than trapped in a dashboard. Action, verification, and report rates per campaign, full call transcripts and per-interaction outcomes, peer vertical benchmarking, and board-ready briefing formats.

NIS2, DORA, and ISO 27001 mapping included
Automate
Full API & CLI

Everything the console does is available programmatically. Create, launch, and monitor campaigns via API, manage targets, personas, and prompts as data, and take webhook events for campaign activity. The CLI makes an engagement a config file.

Built for red teams and multi-tenant MSSPs

Run it with us, or run it yourself

The first cycle typically runs fully managed so your team sees how scenarios are designed and findings are written. After that, the platform is yours to operate.

Managed

We run the simulation

  • Scenario design, execution, and reporting handled end to end
  • Debrief run by the team that ran the campaign
  • Fully external, nothing installed
  • Best first cycle for a new program
Self-Managed

Your team builds and runs it

  • Full console, API, and CLI access
  • Tailoring controlled by your team, not ours
  • Repeatable cycles for quarterly or annual programs
  • Simulation, red team, and training bought separately
White Label

Under your brand, multi-tenant

  • Many customers from one instance
  • Your branding across console and reports
  • Partner portal and MSSP tooling
  • Bulk operations across tenants via API
Zero IT integration required to start. Engagements run fully external to your environment, results are yours to pull through the API, and generated voice and video are handled with zero retention. Pricing is here.

Teams operating the platform

Anyone who needs orchestrated simulation to be repeatable rather than a once-a-year engagement.

Internal Security Teams
Quarterly cycles, run in-house
Red Teams
CLI, API, scripted engagements
MSSPs & MSPs
Multi-tenant, white label
Training Providers
Simulation plus SCORM delivery
Awareness Programs
Beyond email, at population scale

Published engagements, published numbers

Both run under signed authorization, coordinated with IT, people management, and executive leadership. Client names never appear in our public material.

The second engagement is the callback inversion in the wild. More than one in five people rang a spoofed number back and talked to a machine, having decided the counterparty was legitimate before anyone spoke. That path does not exist in an email phishing test, and it is where the loss actually happens. Across our engagements covering more than 1,057 individual targets, 63% could not distinguish synthetic voice or video from a real person while it was happening to them, and 78% were highly vulnerable, meaning the process itself failed rather than one person clicking.

After the simulation

The reaction is consistent, and it is the reason the training lands. People who have just been fooled by a synthetic voice do not need convincing that the threat is real.

Users were surprised with how good the deepfakes were. I'm really impressed. Really crazy talking to a deepfake.

IT Manager
Financial Services (UK)

I was expecting a demo, not an episode of Black Mirror. This is really good. I'm surprised at how advanced it's gotten.

CEO
Cybersecurity (North America)

The training was well-structured, clear, and provided valuable insights into the growing threat landscape associated with deepfakes.

GRC Manager
Manufacturing (EMEA)

Common questions

What is OSES™, and how is it different from awareness training?

OSES™ is Orchestrated Social Engineering Simulation: a controlled, authorized exercise where synthetic voice, video, and messaging are coordinated into one campaign and the response is observed through to the consequential action. Awareness training builds the reflex; OSES™ measures whether the reflex, the procedure behind it, and the controls around it hold under a realistic orchestrated attack. They are complementary, and training built on your own OSES™ findings is materially more effective than generic content, because the correct action is defined by your runbook.

Do we have to ask you to build training modules?

No. Your team generates them on demand, in minutes, from inside the platform. Point the builder at a playbook and it drafts a remediation module for the people who acted on that simulation; upload a policy, AUP, or code of conduct and it drafts slides and a knowledge check to refine; or start from a blank canvas or a template. Output is SCORM, so it drops into your existing LMS branded as yours. There is no content request queue and no professional services engagement to write a course.

Can we run the platform ourselves?

Yes. The first cycle typically runs fully managed so your team sees how scenarios are designed and findings are written. After that the platform is yours to operate, with self-managed, white label, and multi-tenant options for internal red teams, MSSPs, and training providers.

Do we need to install anything?

No. Engagements run fully external, with no software installed and no integration into your environment, which removes most of the change-control burden that blocks testing in regulated environments. Entra ID sync is optional and directory-only, with no agent or endpoint software.

How much of the platform is editable?

The prompt behind every agent, the objective it works toward, its tone and escalation behaviour, and the guardrails on what it will never say are all editable in the console. Personas, playbooks, and prompts are versioned and reusable across campaigns and tenants.

How does the voice agent handle callbacks?

The agent places the outbound call and converses if answered, leaves a voicemail with a callback number if not, then answers and converses on the inbound callback with no operator in the loop. Since most outbound calls go to voicemail, the callback becomes the dominant route through a population, and it inverts the trust posture completely: the target initiated contact and has already decided the counterparty is real before anyone speaks.

What scale does the voice channel support?

Up to 150 concurrent live voice sessions, with staggered call windows, per-channel throttling, and timezone-aware scheduling. There is no operator bottleneck, which is what makes population-wide voice coverage possible rather than a sampled subset.

Is there an API and a CLI?

Yes. Everything the console does is available through the REST API, and the breacher CLI drives that API from a terminal or hands it to an AI agent. Campaigns can be defined as configuration, run in CI, and their results pulled into your own tooling through webhooks and result endpoints.

How is reporting structured?

Per vector, per playbook, and per date range, with delivery, open, click, reply, submit, and susceptibility measured against your industry baseline rather than a global average. Reporting is organizational: no named individuals and no department leaderboards, because scoring individuals assigns the outcome to the layer with the least visibility into the attack.

Is consent required to clone a voice or likeness?

Yes. Consent and scoping are agreed before any likeness is built, every engagement runs under signed authorization, and generated voice and video are handled with zero retention. Sources used for the contextual layer are recorded so every pretext is traceable.

See it run against your own organization

Thirty minutes. We walk you through a real OSES™ engagement, scenario design through findings, and you decide whether your process would have held.

No IT integration required Runs fully external Audit and insurer-ready reporting

Or read the assessment methodology and full capability list.