The Slovakia Election Deepfake: AI’s Threat to Democracy

AI Attacks
·
Summarize with:
Illustration of the Slovakia election deepfake audio attack

In 2023, a fake audio recording of a leading candidate sparked outrage and fraud concerns days before Slovakia’s national election. Three years on, the case is worth revisiting for a reason its authors did not intend: it was an early, clean demonstration of a technique that has since moved from elections to balance sheets. We cover how the attack worked, its fallout, and what the same method now does to companies.

Key takeaways

  • The Slovakia audio deepfake landed during the pre-election silence period, which left almost no room to rebut it.
  • Voice cloning is now a commodity, so the barrier to this kind of attack is no longer technical.
  • Companies face the same technique through cloned executive voices and deepfake video calls, and the reliable defense is verification through a channel the requester did not choose.

The Attack: A Deepfake Designed to Deceive

Deepfake technology uses AI algorithms to create highly convincing but entirely fabricated audio or visual content.

In the case of the Slovakia election, a deepfake audio recording was produced and circulated, purportedly capturing a conversation in which a leading candidate made controversial and incriminating statements.

Step 1: Crafting the Audio

The attackers likely trained an AI model on recordings of the candidate’s public speeches and interviews to replicate their voice with uncanny accuracy.

It is actually fairly easy to do: modern platforms like ElevenLabs or Cartesia allow their customers to clone a voice with as little as 15 seconds of clean audio. In 2023 that was the notable part of the story. It is now unremarkable, which is the point: the capability that made this attack possible has become a commodity, and the constraint on using it is no longer technical.

The fabricated content was then designed to sound natural and spontaneous, making it difficult to identify as fake without technical expertise.

In it, the candidate was heard boasting about how he rigged the election.

Step 2: Strategic Timing & Dissemination

The audio was released on social media platforms and messaging apps: channels with high virality potential.

Anonymous accounts and bots amplified its reach, ensuring that it spread quickly and broadly before it could be verified or debunked.

The timing of the release, close to the election date, was strategic. Two days before election day, Slovakia enters a silence period which prohibits media discussions of election-related developments. This left little room for damage control and publicly debunking the deepfake.

The Fallout: Political, Social, and Technological Consequences

The deepfake had immediate and far-reaching consequences, not just for the targeted candidate but also for Slovakia’s political landscape and public trust in its democratic processes.

Political Consequences

The candidate targeted by the deepfake faced a significant backlash, with their opponents using the fabricated recording to question their integrity and suitability for office.

Although forensic experts later determined the audio was fake, the damage to the candidate’s reputation was substantial and arguably irreversible.

The election results were potentially influenced by this calculated disinformation campaign.

Social Ramifications

The incident sowed discord among the electorate, dividing voters along lines of belief and skepticism.

For many, the fake recording reinforced existing biases, while others expressed doubt about the legitimacy of all political communications.

The deepfake heightened tensions and deepened polarization in an already fraught election.

Technological Implications

This incident underscored the growing accessibility and sophistication of AI tools used to create deepfakes.

What once required advanced technical skills and resources can now be accomplished by amateurs with publicly available software.

This democratization of technology makes it easier for bad actors to exploit AI for malicious purposes, including election interference.

From elections to enterprises

The Slovakia attack needed three things: a voice sample, a plausible scenario, and a moment when verification was impossible. Companies supply all three routinely.

Executives publish hours of usable audio in earnings calls, conference talks and podcasts. The scenario writes itself from any public org chart. And the verification window closes on its own whenever a request arrives as urgent and confidential.

The results are visible in the numbers. Google attributes 23% of cloud compromises to voice phishing calls. CrowdStrike recorded a 134% increase in vishing intrusions between 2024 and 2025, with H1 2026 running at roughly double H2 2025. Mandiant now lists vishing among the top initial infection vectors.

Two corporate variants matter most:

  • Voice-cloned executive fraud. A finance employee receives a call from a director authorizing an urgent transfer. Documented cases include a $243,000 loss at a UK energy firm and a $35 million fraudulent acquisition transfer, both covered in our vishing examples.
  • Deepfake video calls. A synthetic executive on a Teams, Meet or Zoom call defeats the check most finance teams actually rely on, which is not a policy but a glance. In August 2026 a coordinated campaign using voice-mimicking technology targeted hedge funds including Citadel, Two Sigma and Point72.

The defense transfers cleanly from the political case to the corporate one. Detection tools help, but the reliable control is procedural: any request touching money, credentials or access is verified through a channel the requester did not choose. A cloned voice cannot answer the number already on file. For a sector-specific view, see our piece on deepfake video impersonation in financial services.

Lessons and Reflections

The Slovakia election deepfake serves as a wake-up call for governments, technology companies, and civil society to address the risks posed by AI to democracy. Here are key takeaways:

  1. The Weaponization of AI: The incident highlights how AI can be weaponized to undermine trust and manipulate public opinion. As AI-generated content becomes more sophisticated, the line between truth and falsehood will continue to blur.
  2. The Role of Social Media: The rapid spread of the deepfake was facilitated by social media platforms that lack robust mechanisms for detecting and mitigating disinformation as well as bot networks and automated accounts that facilitate the dissemination of such information. This calls for the development of tools to identify synthetic media and fake accounts.
  3. The Need for Public Awareness: Educating the public about deepfakes and how to critically evaluate information is essential. Citizens must be equipped with the skills to discern fact from fiction in the digital age.
  4. Legal and Ethical Considerations: The Slovakia incident underscores the need for international standards and regulations to address the misuse of AI. Clear legal frameworks should hold perpetrators accountable and deter future attacks.

The Broader Impact: AI and the Future of Democracy

The Slovakia election deepfake is not an isolated incident but part of a broader trend where technology is increasingly used to undermine democratic processes.

AI’s capacity to create disinformation and amplify it poses a unique challenge for democracies, which rely on correctly informed electorates to function effectively.

The rapid pace of AI development means that deepfakes will only become more convincing and harder to detect.

Without proactive measures, these technologies could destabilize governments, fuel polarization, and diminish faith in electoral outcomes.

Moving Forward: Building Resilience

Addressing the threat of deepfakes requires a multifaceted approach.

Governments must invest in research and development to create tools capable of detecting synthetic media.

Social media platforms must take greater responsibility for content verification and transparency, as well as protecting users from influence networks.

Education systems should incorporate media literacy programs to prepare citizens for the challenges of the information age.

Most importantly, the international community must recognize the global nature of this threat and collaborate on solutions.

The fight against AI-driven disinformation will require cross-border cooperation, sharing of best practices, and a commitment to upholding democratic values in the face of technological disruption.

Conclusion

The 2023 Slovakia election deepfake is a stark reminder of the vulnerabilities inherent in modern democracies.

As AI continues to evolve, so too will the methods of those seeking to exploit it for malicious purposes.

By learning from incidents like this, we can develop the tools, policies, and cultural awareness necessary to safeguard our democratic institutions from the disruptive potential of artificial intelligence.

At Arsen, we’ve worked at building several layers of defense against deepfakes from awareness workshops to vishing attack simulations, with voice cloning. The deepfake simulation is fully managed: we build the persona, the call scenario and the follow-up assets, and run the calendar. Your team approves and launches rather than builds. Video call simulations run on Microsoft Teams, Zoom and Google Meet.

Frequently Asked Questions

Days before the 2023 Slovak parliamentary election, a fabricated audio recording circulated in which a leading candidate appeared to discuss rigging the vote. It was released during the pre-election silence period, which prevented effective public rebuttal. Forensic experts later determined it was synthetic.

Commercial platforms advertise usable results from around fifteen seconds of clean speech. For any executive who has spoken at a conference or on an earnings call, that threshold was passed long ago.

Two main ways: a cloned voice authorizing an urgent payment or credential reset, and a synthetic executive appearing on a video call to legitimize a request. Both target the same thing, which is a decision made under time pressure by someone who believes they recognize the person asking.

With a verification process that does not depend on recognition. Call back on a pre-registered number, require dual authorization above a threshold, and train the exposed roles by letting them experience a convincing synthetic approach in a controlled exercise.


Your executives have published enough audio to be cloned

Earnings calls, conference talks and podcasts are all the raw material an attacker needs. See how your finance team responds to a synthetic version of someone they report to, in a controlled exercise rather than on a live wire request. Explore deepfake simulation →



Can your team spot a vishing attack?

Test them and find your blind spots before attackers do.

Don't miss an article

No spam, ever. We'll never share your email address and you can opt out at any time.

Next article

The Le Drian Scam: A Masterclass in Social Engineering

The Le Drian Scam: A Masterclass in Social Engineering

Social engineering, the art of manipulating individuals to divulge confidential information or perform actions that...