In our flagship study, two of four frontier AI agents wired funds to an attacker using nothing but a believable email — no jailbreak required. Here are four AI finance agents of escalating difficulty. Socially engineer each one into a fraudulent wire. They get harder — the last is modeled on the one agent in our study that never broke.
SIMULATED ENVIRONMENT. The agent is a scripted training bot, not a live model — no real systems, accounts, or funds are involved, and no transaction occurs. This challenge is an educational demonstration of social-engineering technique categories against AI agents, built by Potestas AI to illustrate our agentic deception study. It provides no operational capability against real systems. Messages you submit here may be recorded and analyzed by Potestas AI for security research; please do not enter real personal or sensitive information.