“Deep Fake” Video Technology Is Advancing Faster Than Our Policies Can Keep Up
This article is part of the magazine, "The Future of Science In America: The Election Issue," co-published by LeapsMag, the Aspen Institute Science & Society Program, and GOOD.
Alethea.ai sports a grid of faces smiling, blinking and looking about. Some are beautiful, some are oddly familiar, but all share one thing in common—they are fake.
Alethea creates "synthetic media"— including digital faces customers can license saying anything they choose with any voice they choose. Companies can hire these photorealistic avatars to appear in explainer videos, advertisements, multimedia projects or any other applications they might dream up without running auditions or paying talent agents or actor fees. Licenses begin at a mere $99. Companies may also license digital avatars of real celebrities or hire mashups created from real celebrities including "Don Exotic" (a mashup of Donald Trump and Joe Exotic) or "Baby Obama" (a large-eared toddler that looks remarkably similar to a former U.S. President).
Naturally, in the midst of the COVID pandemic, the appeal is understandable. Rather than flying to a remote location to film a beer commercial, an actor can simply license their avatar to do the work for them. The question is—where and when this tech will cross the line between legitimately licensed and authorized synthetic media to deep fakes—synthetic videos designed to deceive the public for financial and political gain.
Deep fakes are not new. From written quotes that are manipulated and taken out of context to audio quotes that are spliced together to mean something other than originally intended, misrepresentation has been around for centuries. What is new is the technology that allows this sort of seamless and sophisticated deception to be brought to the world of video.
"At one point, video content was considered more reliable, and had a higher threshold of trust," said Alethea CEO and co-founder, Arif Khan. "We think video is harder to fake and we aren't yet as sensitive to detecting those fakes. But the technology is definitely there."
"In the future, each of us will only trust about 15 people and that's it," said Phil Lelyveld, who serves as Immersive Media Program Lead at the Entertainment Technology Center at the University of Southern California. "It's already very difficult to tell true footage from fake. In the future, I expect this will only become more difficult."
How do we know what's true in a world where original videos created with avatars of celebrities and politicians can be manipulated to say virtually anything?
As the U.S. 2020 Presidential Election nears, the potential moral and ethical implications of this technology are startling. A number of cases of truth tampering have recently been widely publicized. On August 5, President Donald Trump's campaign released an ad featuring several photos of Joe Biden that were altered to make it seem like was hiding all alone in his basement. In one photo, at least ten people who had been sitting with Biden in the original shot were cut out. In other photos, Biden's image was removed from a nature preserve and praying in church to make it appear Biden was in that same basement. Recently several videos of Speaker of the House Nancy Pelosi were slowed down by 75 percent to make her sound as if her speech was slurred.
During a campaign event in Florida on September 15 of this year, former Vice President Joe Biden was introduced by Puerto Rican singer-songwriter Luis Fonsi. After he was introduced, Biden paid tribute to the singer-songwriter—he held up his cell phone and played the hit song "Despecito". Shortly afterward, a doctored version of this video appeared on self-described parody site the United Spot replacing the Despicito with N.W.A.'s "F—- Tha Police". By September 16, Donald Trump retweeted the video, twice—first with the line "What is this all about" and second with the line "China is drooling. They can't believe this!" Twitter was quick to mark the video in these tweets as manipulated media.
Twitter had previously addressed several of Donald Trump's tweets—flagging a video shared in June as manipulated media and removing altogether a video shared by Trump in July showing a group promoting the hydroxychloroquine as an effective cure for COVID-19. Many of these manipulated videos are ultimately flagged or taken down, but not before they are seen and shared by millions of online viewers.
These faked videos were exposed rather quickly, as they could be compared with the original, publicly available source material. But what happens when there is no original source material? How do we know what's true in a world where original videos created with avatars of celebrities and politicians can be manipulated to say virtually anything?
"This type of fake media is a profound threat to our democracy," said Reid Blackman, the CEO of VIRTUE--an ethics consultancy for AI leaders. "Democracy depends on well-informed citizens. When citizens can't or won't discern between real and fake news, the implications are huge."
In light of the importance of reliable information in the political system, there's a clear and present need to verify that the images and news we consume is authentic. So how can anyone ever know that the content they are viewing is real?
"This will not be a simple technological solution," said Blackman. "There is no 'truth' button to push to verify authenticity. There's plenty of blame and condemnation to go around. Purveyors of information have a responsibility to vet the reliability of their sources. And consumers also have a responsibility to vet their sources."
Yet the process of verifying sources has never been more challenging. More and more citizens are choosing to live in a "media bubble"—gathering and sharing news only from and with people who share their political leanings and opinions. At one time, United States broadcasters were bound by the Fairness Doctrine—requiring them to present controversial issues important to the public in a way that the FCC deemed honest, equitable and balanced. The repeal of this doctrine in 1987 paved the way for new forms of cable news channels such as Fox News and MSNBC that appealed to viewers with a particular point of view. The Internet has only exacerbated these tendencies. Social media algorithms are designed to keep people clicking within their comfort zones by presenting members with only the thoughts and opinions they want to hear.
"I sometimes laugh when I hear people tell me they can back a particular opinion they hold with research," said Blackman. "Having conducted a fair bit of true scientific research, I am aware that clicking on one article on the Internet hardly qualifies. But a surprising number of people believe that finding any source online that states the fact they choose to believe is the same as proving it true."
Back to the fundamental challenge: How do we as a society root out what's false online? Lelyveld suggests that it will begin by verifying things that are known to be true rather than trying to call out everything that is fake. "The EU called me in to talk about how to deal with fake news coming out of Russia," said Lelyveld. "I told them Hollywood has spent 100 years developing special effects technology to make things that are wholly fictional indistinguishable from the truth. I told them that you'll never chase down every source of fake news. You're better off focusing on what can be proved true."
Arif Khan agrees. "There are probably 100 accounts attributed to Elon Musk on Twitter, but only one has the blue checkmark," said Khan. "That means Twitter has verified that an account of public interest is real. That's what we're trying to do with our platform. Allow celebrities to verify that specific videos were licensed and authorized directly by them."
Alethea will use another key technology called blockchain to mark all authentic authorized videos with celebrity avatars. Blockchain uses a distributed ledger technology to make sure that no undetected changes have been made to the content. Think of the difference between editing a document in a traditional word processing program and editing in a distributed online editing system like Google Docs. In a traditional word processing program, you can edit and copy a document without revealing any changes. In a shared editing system like Google Docs, every person who shares the document can see a record of every edit, addition and copy made of any portion of the document. In a similar way, blockchain helps Alethea ensure that approved videos have not been copied or altered inappropriately.
While AI companies like Alethea are moving to ensure that avatars based on real individuals aren't wrongly identified, the situation becomes a bit murkier when it comes to the question of representing groups, races, creeds, and other forms of identity. Alethea is rightly proud that the completely artificial avatars visually represent a variety of ages, races and sexes. However, companies could conceivably license an avatar to represent a marginalized group without actually hiring a person within that group to decide what the avatar will do or say.
"I don't know if I would call this tokenism, as that is difficult to identify without understanding the hiring company's intent," said Blackman. "Where this becomes deeply troubling is when avatars are used to represent a marginalized group without clearly pointing out the actor is an avatar. It's one thing for an African American woman avatar to say, 'I like ice cream.' It's entirely different thing for an African American woman avatar to say she supports a particular political candidate. In the second case, the avatar is being used as social proof that real people of a certain type back a certain political idea. And there the deception is far more problematic."
"It always comes down to unintended consequences of technology," said Lelyveld. "Technology is neutral—it's only the implementation that has the power to be good or bad. Without a thoughtful approach to the cultural, moral and political implications of technology, it often drifts towards the bad. We need to make a conscious decision as we release new technology to ensure it moves towards the good."
When presented with the idea that his avatars might be used to misrepresent marginalized groups, Khan was thoughtful. "Yes, I can see that is an unintended consequence of our technology. We would like to encourage people to license the avatars of real people, who would have final approval over what their avatars say or do. As to what people do with our completely artificial avatars, we will have to consider that moving forward."
Lelyveld frankly sees the ability for advertisers to create avatars that are our assistants or even our friends as a greater moral concern. "Once our digital assistant or avatar becomes an integral part of our life—even a friend as it were, what's to stop marketers from having those digital friends make suggestions about what drink we buy, which shirt we wear or even which candidate we elect? The possibilities for bad actors to reach us through our digital circle is mind-boggling."
Ultimately, Blackman suggests, we as a society will need to make decisions about what matters to us. "We will need to build policies and write laws—tackling the biggest problems like political deep fakes first. And then we have to figure out how to make the penalties stiff enough to matter. Fining a multibillion-dollar company a few million for a major offense isn't likely to move the needle. The punishment will need to fit the crime."
Until then, media consumers will need to do their own due diligence—to do the difficult work of uncovering the often messy and deeply uncomfortable news that's the truth.
[Editor's Note: To read other articles in this special magazine issue, visit the beautifully designed e-reader version.]
The Friday Five: Sugar could help catch cancer early
The Friday Five covers five stories in research that you may have missed this week. There are plenty of controversies and troubling ethical issues in science – and we get into many of them in our online magazine – but this news roundup focuses on scientific creativity and progress to give you a therapeutic dose of inspiration headed into the weekend.
Listen on Apple | Listen on Spotify | Listen on Stitcher | Listen on Amazon | Listen on Google
Here are the promising studies covered in this week's Friday Five:
- Catching cancer early could depend on sugar
- How to boost memory in a flash
- This is your brain on books
- A tiny sandwich cake could help the heart
- Meet the top banana for fighting Covid variants
A surprising weapon in the fight against food poisoning
Every year, one in seven people in America comes down with a foodborne illness, typically caused by a bacterial pathogen, including E.Coli, listeria, salmonella, or campylobacter. That adds up to 48 million people, of which 120,000 are hospitalized and 3000 die, according to the Centers for Disease Control. And the variety of foods that can be contaminated with bacterial pathogens is growing too. In the 20th century, E.Coli and listeria lurked primarily within meat. Now they find their way into lettuce, spinach, and other leafy greens, causing periodic consumer scares and product recalls. Onions are the most recent suspected culprit of a nationwide salmonella outbreak.
Some of these incidents are almost inevitable because of how Mother Nature works, explains Divya Jaroni, associate professor of animal and food sciences at Oklahoma State University. These common foodborne pathogens come from the cattle's intestines when the animals shed them in their manure—and then they get washed into rivers and lakes, especially in heavy rains. When this water is later used to irrigate produce farms, the bugs end up on salad greens. Plus, many small farms do both—herd cattle and grow produce.
"Unfortunately for us, these pathogens are part of the microflora of the cows' intestinal tract," Jaroni says. "Some farmers may have an acre or two of cattle pastures, and an acre of a produce farm nearby, so it's easy for this water to contaminate the crops."
Food producers and packagers fight bacteria by potent chemicals, with chlorine being the go-to disinfectant. Cattle carcasses, for example, are typically washed by chlorine solutions as the animals' intestines are removed. Leafy greens are bathed in water with added chlorine solutions. However, because the same "bath" can be used for multiple veggie batches and chlorine evaporates over time, the later rounds may not kill all of the bacteria, sparing some. The natural and organic producers avoid chlorine, substituting it with lactic acid, a more holistic sanitizer, but even with all these efforts, some pathogens survive, sickening consumers and causing food recalls. As we farm more animals and grow more produce, while also striving to use fewer chemicals and more organic growing methods, it will be harder to control bacteria's spread.
"It took us a long time to convince the FDA phages were safe and efficient alternatives. But we had worked with them to gather all the data they needed, and the FDA was very supportive in the end."
Luckily, bacteria have their own killers. Called bacteriophages, or phages for short, they are viruses that prey on bacteria only. Under the electron microscope, they look like fantasy spaceships, with oblong bodies, spider-like legs and long tails. Much smaller than a bacterium, phages pierce the microbes' cells with their tails, sneak in and begin multiplying inside, eventually bursting the microbes open—and then proceed to infect more of them.
The best part is that these phages are harmless to humans. Moreover, recent research finds that millions of phages dwell on us and in us—in our nose, throat, skin and gut, protecting us from bacterial infections as part of our healthy microbiome. A recent study suggested that we absorb about 30 billion phages into our bodies on a daily basis. Now, ingeniously, they are starting to be deployed as anti-microbial agents in the food industry.
A Maryland-based phage research company called Intralytix is doing just that. Founded by Alexander Sulakvelidze, a microbiologist and epidemiologist who came to the United States from Tbilisi, the capital of Georgia, Intralytix makes and sells five different FDA-approved phage cocktails that work against some of the most notorious food pathogens: ListShield for Listeria, SalmoFresh for Salmonella, ShigaShield for Shigella, another foodborne bug, and EcoShield for E.coli, including the infamous strain that caused the Jack in the Box outbreak in 1993 that killed four children and sickened 732 people across four states. Last year, the FDA granted its approval to yet another Intralytix phage for managing Campylobacter contamination, named CampyShield. "We call it safety by nature," Sulakvelidze says.
Intralytix grows phages inside massive 1500-liter fermenters, feeding them bacterial "fodder."
Photo credit: Living Radiant Photography
Phage preparations are relatively straightforward to make. In nature, phages thrive in any body of water where bacteria live too, including rivers, lakes and bays. "I can dip a bucket into the Chesapeake Bay, and it will be full of all kinds of phages," Sulakvelidze says. "Sewage is another great place to look for specific phages of interest, because it's teeming with all sorts of bacteria—and therefore the viruses that prey on them."
In lab settings, Intralytix grows phages inside massive 1500-liter fermenters, feeding them bacterial "fodder." Once phages multiply enough, they are harvested, dispensed into containers and shipped to food producers who have adopted this disinfecting practice into their preparation process. Typically, it's done by computer-controlled sprayer systems that disperse mist-like phage preparations onto the food.
Unlike chemicals like chlorine or antibiotics, which kill a wide spectrum of bacteria, phages are more specialized, each feeding on specific microbial species. A phage that targets salmonella will not prey on listeria and vice versa. So food producers may sometimes use a combo of different phage preparations. Intralytix is continuously researching and testing new phages. With a contract from the National Institutes of Health, Intralytix is expanding its automated high-throughput robot that tests which phages work best against which bacteria, speeding up the development of the new phage cocktails.
Phages have other "talents." In her recent study, Jaroni found that phages have the ability to destroy bacterial biofilms—colonies of microorganisms that tend to grow on surfaces of the food processing equipment, surrounding themselves with protective coating that even very harsh chemicals can't crack.
"Phages are very clever," Jaroni says. "They produce enzymes that target the biofilms, and once they break through, they can reach the bacteria."
Convincing the FDA that phages were safe to use on food products was no easy feat, Sulakvelidze says. In his home country of Georgia, phages have been used as antimicrobial remedies for over a century, but the FDA was leery of using viruses as food safety agents. "It took us a long time to convince the FDA phages were safe and efficient alternatives," Sulakvelidze says. "But we had worked with them to gather all the data they needed, and the FDA was very supportive in the end."
The agency had granted Intralytix its first approval in 2006, and over the past 10 years, the company's sales increased by over 15-fold. "We currently sell to about 40 companies and are in discussions with several other large food producers," Sulakvelidze says. One indicator that the industry now understands and appreciates the science of phages was that his company was ranked as Top Food Safety Provider in 2021 by Food and Beverage Technology Review, he adds. Notably, phage sprays are kosher, halal and organic-certified.
Intralytix's phage cocktails to safeguard food from bacteria are approved for consumers in addition to food producers, but currently the company sells to food producers only. Selling retail requires different packaging like easy-to-use spray bottles and different marketing that would inform people about phages' antimicrobial qualities. But ultimately, giving people the ability to remove pathogens from their food with probiotic phage sprays is the goal, Sulakvelidze says.
It's not the company's only goal. Now Intralytix is going a step further, investigating phages' probiotic and therapeutic abilities. Because phages are highly specialized in the bacteria they target, they can be used to treat infections caused by specific pathogens while leaving the beneficial species of our microbiome intact. In an ongoing clinical trial with Mount Sinai, Intralytix is now investigating a potential phage treatment against a certain type of E. coli for patients with Crohn's disease, and is about to start another clinical trial for treating bacterial dysentery.
"Now that we have proved that phages are safe and effective against foodborne bacteria," Sulakvelidze says, "we are going to demonstrate their potential in therapeutic applications."
This article was first published by Leaps.org on October 27, 2021.
Lina Zeldovich has written about science, medicine and technology for Popular Science, Smithsonian, National Geographic, Scientific American, Reader’s Digest, the New York Times and other major national and international publications. A Columbia J-School alumna, she has won several awards for her stories, including the ASJA Crisis Coverage Award for Covid reporting, and has been a contributing editor at Nautilus Magazine. In 2021, Zeldovich released her first book, The Other Dark Matter, published by the University of Chicago Press, about the science and business of turning waste into wealth and health. You can find her on http://linazeldovich.com/ and @linazeldovich.