AI Radar
AI Radar tracks publicly disclosed AI incidents, investigations, enforcement actions, and material failures connected with cybersecurity, fraud, financial crime, privacy, and governance. Its purpose is to provide a clear, practical view of how AI-related risk manifests in real cases, from deepfake-enabled impersonation and synthetic identity abuse to data leakage, malicious model use, and failures in oversight.
The radar brings together key information on each case, including the date, the entity involved, the core issue, the main public findings, the cause of the failure or violation, and the event narrative. Where relevant, it also captures the operational impact, regulatory dimension, and source material. By presenting these cases in one place, AI Radar helps legal, compliance, AML, fraud, privacy, security, and risk teams understand which control gaps most often lead to public exposure, regulatory scrutiny, customer harm, financial loss, or reputational damage.
More than a list of incidents, AI Radar is designed as a working governance and risk resource. It shows how organizations and regulators respond to issues such as deepfake fraud, phishing, AI-assisted social engineering, synthetic identity abuse, model misuse, insecure deployment, data leakage, inadequate monitoring, poor human oversight, and third-party failures. This makes it easier to translate public incidents into practical lessons for internal controls, AI governance, fraud prevention, AML monitoring, vendor management, and enterprise risk management.
Cross-border victims in Taiwan, Singapore, and Malaysia
Date
January 5, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Hong Kong Authorities Seize HK$34M in Alleged Deepfake Scam Targeting Victims in Taiwan, Singapore, and Malaysia
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Kaikatsu Frontier and affected customers
Date
January 18, 2025
Core issue
AI-assisted intrusion / data breach
Main public findings
Japanese Teen Allegedly Uses AI-Generated Program to Breach Kaikatsu Frontier and Leak Data of 7.3 Million Customers
Cause of the violation
AI-generated tooling or automation allegedly lowered the barrier to unauthorized access and data theft.
Monica Geingos likeness / Namibian audiences
Date
January 22, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Former Namibian First Lady Monica Geingos's Likeness Reportedly Used in Purported AI-Generated Video Investment Scams
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Thailand residents targeted by fake police
Date
February 4, 2025
Core issue
Authority-impersonation scam using AI-generated media
Main public findings
AI-Aided Scam in Thailand Allegedly Impersonates Police to Defraud 163 Victims
Cause of the violation
Synthetic-media impersonation of public officials combined with weak out-of-band verification by victims.
Italian Defense Minister Guido Crosetto
Date
February 4, 2025
Core issue
Authority-impersonation scam using AI-generated media
Main public findings
Fraudsters Allegedly Use AI-Generated Voice of Italian Defense Minister Guido Crosetto to Scam Business Leaders
Cause of the violation
Synthetic-media impersonation of public officials combined with weak out-of-band verification by victims.
Nottingham Gallery Owner
Date
February 8, 2025
Core issue
Deepfake identity / celebrity impersonation fraud
Main public findings
Nottingham Gallery Owner Allegedly Defrauded by Deepfake Impersonating Pierce Brosnan, Leading to Business Closure
Cause of the violation
Deepfake or cloned identity content created false trust and induced victims to send money or engage further.
Colorado mother
Date
February 10, 2025
Core issue
Voice-cloning urgent-payment fraud
Main public findings
AI-Generated Voice Purporting to Be Daughter Allegedly Used to Coerce $2,000 from Colorado Mother
Cause of the violation
Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.
Myriam Spiteri Debono likeness / Malta audiences
Date
February 12, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported AI-Generated Videos Impersonating President of Malta Myriam Spiteri Debono Circulate on Social Media in Alleged Crypto Scam Campaigns
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Gmail users
Date
February 17, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
AI-Driven Phishing Scam Uses Deepfake Robocalls to Target Gmail Users in Credential Theft Campaign
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
Hack Club founder / Google g.co abuse
Date
February 20, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
Cybercriminals Reportedly Exploited Google's G.Co Subdomain and Spoofed Caller ID in AI-Driven Phishing Attack on Hack Club Founder
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
Spiritual Leader Sadhguru
Date
February 25, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported AI-Generated Deepfake of Spiritual Leader Sadhguru Used in Investment Scam Allegedly Defrauding Bengaluru Woman of ₹3.75 Crore (~$425,000)
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Indonesian citizens / Prabowo deepfake
Date
March 2, 2025
Core issue
Authority-impersonation scam using AI-generated media
Main public findings
Deepfake Video of Indonesian President Prabowo Subianto and Other Officials Reportedly Used in Scam to Defraud Citizens Across 20 Provinces
Cause of the violation
Synthetic-media impersonation of public officials combined with weak out-of-band verification by victims.
Prime Minister of Armenia Nikol Pashinyan
Date
March 4, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Scammers Using Deepfake Technology to Impersonate Prime Minister of Armenia Nikol Pashinyan
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Tbilisi-Based Call Center
Date
March 5, 2025
Core issue
AI-scripted call-center fraud
Main public findings
Tbilisi-Based Call Center Allegedly Uses AI-Driven Scripts to Defraud Over 6,000 Victims of $35 Million
Cause of the violation
Scaled social engineering supported by AI-generated scripts, lead targeting, and weak investor verification.
Singapore Prime Minister Lawrence Wong
Date
March 7, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Deepfake Videos Allegedly Use AI-Generated Voice Clone of Singapore Prime Minister Lawrence Wong to Promote Scams
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Financial Times Journalist Martin Wolf
Date
March 9, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Financial Times Journalist Martin Wolf Reports AI-Generated Investment Scam Using His Likeness on Instagram and Facebook
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
NSW Resilient Homes Program
Date
March 12, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
Alleged ChatGPT Misuse by Contractor Leads to Reported Data Exposure in New South Wales Resilient Homes Program
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
Docomo Pacific CEO
Date
March 13, 2025
Core issue
Voice-cloning urgent-payment fraud
Main public findings
Docomo Pacific CEO Reports Mother Targeted by Purported AI-Enabled Scam in Guam
Cause of the violation
Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.
AIXBT / Simulacrum wallet
Date
March 18, 2025
Core issue
Agentic prompt exploitation / unauthorized transfer
Main public findings
Fraudulent Prompts via AIXBT Dashboard Led AI Trading Agent to Transfer 55.5 ETH from Simulacrum Wallet
Cause of the violation
Unsafe agent permissions, weak transaction guardrails, and inadequate authorization checks on high-risk wallet actions.
OpenAI’s 4o Model
Date
March 31, 2025
Core issue
Generative-AI document forgery
Main public findings
OpenAI’s 4o Model Allegedly Used to Generate Fake Receipts and Prescriptions
Cause of the violation
High-fidelity document generation and insufficient misuse controls enabled fake receipts, prescriptions, or similar records.
Texas Woman
Date
April 3, 2025
Core issue
Voice-cloning urgent-payment fraud
Main public findings
AI Voice Clone of Texas Woman Used in Distress Scam Targeting Brother in Port Neches
Cause of the violation
Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.
Xanthorox AI
Date
April 7, 2025
Core issue
Offensive AI tooling for cybercrime
Main public findings
Reported Darknet Launch of Xanthorox AI Introduces Autonomous Cyberattack Platform
Cause of the violation
Malicious actors deliberately developed or released AI tooling optimized for offensive cyber operations.
Hong Kong Syndicate
Date
April 7, 2025
Core issue
KYC / synthetic-identity / AML-related abuse
Main public findings
Hong Kong Syndicate Allegedly Used AI-Generated Facial Composites to Open Bank Accounts
Cause of the violation
Synthetic identities or facial composites allegedly exploited onboarding/KYC weaknesses and cross-border financial controls.
Exante Brokerage
Date
April 10, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Alleged AI-Generated Clone of Exante Brokerage Used to Defraud U.S. Investor via JPMorgan Account
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
David Rosenberg / Meta users
Date
April 15, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Alleged Deepfake Investment Scam Uses Economist David Rosenberg's Likeness on Meta Platforms
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Anthropic / abusive Claude users
Date
April 23, 2025
Core issue
Vendor-reported multi-campaign cyber / fraud misuse
Main public findings
Anthropic Report Details Claude Misuse for Influence Operations, Credential Stuffing, Recruitment Fraud, and Malware Development
Cause of the violation
Abusive users leveraged general-purpose models for fraud/cyber misuse faster than platform controls detected or blocked them.
Australian Analyst
Date
April 27, 2025
Core issue
Synthetic corporate-materials fraud
Main public findings
Australian Analyst Allegedly Targeted by Scam Using Purportedly Sophisticated AI-Generated Corporate Materials
Cause of the violation
Synthetic documents and corporate materials were used to bypass normal due diligence or procurement checks.
Dr. Rinki Murphy
Date
April 30, 2025
Core issue
Fraudulent health-product promotion using synthetic endorsements
Main public findings
Purported Deepfake Featuring Dr. Rinki Murphy and Jack Tame Reportedly Used to Promote Diabetes Scam in New Zealand
Cause of the violation
False medical or influencer endorsements were amplified by synthetic media and weak advertising/content enforcement.
Noodlophile Stealer
Date
May 8, 2025
Core issue
AI-themed malware delivery / supply-chain abuse
Main public findings
Noodlophile Stealer Reportedly Distributed Through Allegedly Fraudulent AI Content Platforms
Cause of the violation
Malicious packages or AI-branded services exploited trust in tooling ecosystems and weak dependency vetting.
Cypriot officials' likenesses / investors
Date
May 12, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported AI-Manipulated Videos of Cypriot Officials Circulated in Alleged Investment Fraud
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Owen Wilson
Date
May 16, 2025
Core issue
AI-assisted romance / trust scam
Main public findings
Reported Use of Deepfake Video Impersonating Owen Wilson in Romance Scam with Fake Job Payments
Cause of the violation
AI-generated personas, chat, or video sustained false relationships and extracted money over time.
White House Chief of Staff Susie Wiles
Date
May 30, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
Phone of White House Chief of Staff Susie Wiles Allegedly Breached in Reported AI Voice Impersonation Incident
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
Bank of Montreal Strategist Brian Belski
Date
June 12, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Alleged AI-Generated Video Ads Impersonate Bank of Montreal Strategist Brian Belski to Promote Investment Scam
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Secretary of State Marco Rubio
Date
June 15, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
Purported AI Voice Cloning Used to Impersonate Secretary of State Marco Rubio
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
Macau residents / Sam Hou Fai likeness
Date
June 18, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Alleged AI-Manipulated Video Uses Macau Chief Executive Sam Hou Fai's Likeness in Investment Scam
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Sri Lankan President Anura Kumara Dissanayake
Date
June 18, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported Deepfake of Sri Lankan President Anura Kumara Dissanayake Promotes Fraudulent Government Investment Scheme
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Web3 Employee
Date
June 22, 2025
Core issue
Deepfake social engineering leading to malware / account theft
Main public findings
North Korea-Linked Actors Allegedly Use AI Executive Deepfakes in Zoom Phishing Targeting Web3 Employee
Cause of the violation
Deepfake calls or AI-generated personas created trust, leading targets to run malware or surrender account access.
Infosys Co-Founder N. R. Narayana Murthy
Date
June 27, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported AI-Generated Deepfake of Infosys Co-Founder N. R. Narayana Murthy Used in Investment Scam Allegedly Defrauding 79-Year-Old Bengaluru Woman of ₹35 Lakh (~$40,000)
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Vulnerable Southampton Resident
Date
June 28, 2025
Core issue
Deepfake identity / celebrity impersonation fraud
Main public findings
Reportedly Sustained Multi-Celebrity Deepfake Persona Scam Targeting Vulnerable Southampton Resident
Cause of the violation
Deepfake or cloned identity content created false trust and induced victims to send money or engage further.
McDonald's McHire AI Recruitment Platform
Date
June 30, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
McDonald's McHire AI Recruitment Platform Reportedly Exposed Data of 64 Million Applicants via Default Login and API Vulnerability
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
Malaysian Leaders
Date
July 4, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported Widespread Use of AI-Generated Deepfake Videos Impersonate Malaysian Leaders in Investment Scams
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Chicago veteran
Date
July 7, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Chicago Veteran Reportedly Loses $10,000 in Purported Deepfake Cryptocurrency Fraud Posing as Elon Musk
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Urban VPN users / exposed chatbot conversations
Date
July 9, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
Urban VPN Proxy Browser Extension Reportedly Harvested and Sold Private AI Chatbot Conversations via Silent Update
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
Lance Gokongwei likeness / investors
Date
July 11, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported Deepfake Scam Videos Depict JG Summit Holdings President and CEO Lance Gokongwei Allegedly Endorsing Illicit Investments
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
CISA / U.S. government documents
Date
July 15, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
CISA Acting Director Reportedly Uploaded Sensitive Government Documents to Public ChatGPT Instance
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
Retired couple in Hillsborough County, Florida
Date
July 19, 2025
Core issue
Voice-cloning urgent-payment fraud
Main public findings
Purportedly AI-Cloned Voice of Daughter Used in Elaborate Bond Scam Targeting Retired Couple in Hillsborough County, Florida
Cause of the violation
Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.
Local Residents
Date
July 28, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Malta's Prime Minister Robert Abela Reportedly Deepfaked by a Ukrainian National in Cryptocurrency Fraud Targeting Local Residents
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Microsoft's Windows Recall
Date
August 1, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
Microsoft's Windows Recall Allegedly Stores Passwords and Social Security Numbers in Preview Mode
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
Google AI Overviews and ChatGPT
Date
August 15, 2025
Core issue
AI assistant misdirection to scam contact
Main public findings
Google AI Overviews and ChatGPT Reportedly Cited Fraudulent Cruise Hotline, Allegedly Enabling Successful Scam
Cause of the violation
Unverified AI-generated contact details were surfaced as trustworthy guidance, redirecting users to fraud operators.
Tennessee Meteorologist's Likeness
Date
January 10, 2025
Core issue
Sextortion / payment coercion using AI-generated media
Main public findings
Tennessee Meteorologist's Likeness Reportedly Used in Sextortion Campaign Involving Purported AI-Generated Content
Cause of the violation
Non-consensual or deceptive synthetic media was allegedly used to coerce payment or threaten reputational harm.
DNB Bank
Date
January 21, 2025
Core issue
Deepfake executive impersonation / business email compromise
Main public findings
Purportedly AI-Generated Deepfake Reportedly Used to Impersonate DNB Bank CFO and CEO in Live Teams Meeting
Cause of the violation
Deepfake executive impersonation met insufficient dual-approval, callback, and payment-verification controls.
Victim targeted with Martin Henderson persona
Date
February 1, 2025
Core issue
AI-assisted romance / trust scam
Main public findings
AI-Assisted Impersonation of Martin Henderson in Romance Scam Leads to Reported NZ$375,000 Fraud
Cause of the violation
AI-generated personas, chat, or video sustained false relationships and extracted money over time.
Havre, Montana game and coffee store
Date
February 4, 2025
Core issue
Voice-cloning urgent-payment fraud
Main public findings
AI Voice Scam Allegedly Defrauds Game and Coffee Store in Havre, Montana
Cause of the violation
Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.
New Zealand dating-app users
Date
February 4, 2025
Core issue
AI-assisted romance / trust scam
Main public findings
Chatbots Allegedly Used in Romance Scams Targeting Nearly One-Third of New Zealand's Dating App Users
Cause of the violation
AI-generated personas, chat, or video sustained false relationships and extracted money over time.
Bolivian job seekers / Education Minister deepfake
Date
February 10, 2025
Core issue
Employment scam using deepfake impersonation
Main public findings
Bolivian Criminal Network Allegedly Used Deepfake of Education Minister to Defraud at Least 19 Victims in Employment Scam
Cause of the violation
Deepfake authority cues and job scarcity were used to lower skepticism and collect money from applicants.
Michigan Tinder scam victim
Date
February 10, 2025
Core issue
AI-assisted romance / trust scam
Main public findings
Michigan Woman Defrauded in Alleged Tinder Romance Scam Using Purportedly AI-Generated Video Calls
Cause of the violation
AI-generated personas, chat, or video sustained false relationships and extracted money over time.
Robert Abela / Mark Laurence Zammit likenesses
Date
February 17, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Reported Deepfake of Maltese Prime Minister Robert Abela and Journalist Mark Laurence Zammit Used to Promote Fraudulent Investment
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
FTX claims buyers
Date
February 18, 2025
Core issue
KYC / synthetic-identity / AML-related abuse
Main public findings
Alleged Use of Purported AI-Generated Identities to Defraud FTX Claims Buyers of $5.6M
Cause of the violation
Synthetic identities or facial composites allegedly exploited onboarding/KYC weaknesses and cross-border financial controls.
Fake ChatGPT billing targets
Date
February 23, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
Alleged FraudGPT-Enabled Phishing Attack Spoofs ChatGPT Subscription Service to Steal Credentials
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
Microsoft Copilot
Date
February 26, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
Microsoft Copilot Reportedly Able to Access Cached Data from Since-Private GitHub Repositories
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
YouTube creators / Neal Mohan likeness
Date
March 4, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
Phishers Allegedly Using AI-Generated Video of YouTube CEO Neal Mohan to Target Creators
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
TikTok wellness-product consumers
Date
March 4, 2025
Core issue
Fraudulent health-product promotion using synthetic endorsements
Main public findings
Reported Deepfake Influencers on TikTok Allegedly Used to Promote Fraudulent Wellness Products
Cause of the violation
False medical or influencer endorsements were amplified by synthetic media and weak advertising/content enforcement.
Elderly U.S. victims in grandparent scam
Date
March 5, 2025
Core issue
Voice-cloning urgent-payment fraud
Main public findings
Canadian Fraud Ring Allegedly Used AI Voice Cloning in Multi-Year $21 Million Grandparent Scam Targeting Elderly Americans Across 46 States
Cause of the violation
Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.
Jin Dong fans / impersonated celebrity identity
Date
March 9, 2025
Core issue
Deepfake identity / celebrity impersonation fraud
Main public findings
Chinese Actor and CPPCC Member Jin Dong Allegedly Impersonated by AI Deepfake Scammers to Mislead and Defraud Fans
Cause of the violation
Deepfake or cloned identity content created false trust and induced victims to send money or engage further.
Instagram business users
Date
March 12, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
Attackers Reportedly Deployed Simulated AI Support Chatbot to Trick Instagram Business Users into Adding Malicious 2FA Login
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
Singapore corporate finance staff
Date
March 13, 2025
Core issue
Deepfake executive impersonation / business email compromise
Main public findings
Scammers Reportedly Using Deepfake Video Calls to Impersonate Executives in Singapore and Orchestrate Corporate Bank Transfers
Cause of the violation
Deepfake executive impersonation met insufficient dual-approval, callback, and payment-verification controls.
U.S. taxpayers
Date
March 14, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
Alleged AI-Generated IRS Scam Websites Used to Defraud U.S. Taxpayers
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
GenNomis AI Database
Date
March 31, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
GenNomis AI Database Reportedly Exposes Nearly 100,000 Deepfake and Nudify Images in Public Breach
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
Israeli Investors
Date
April 1, 2025
Core issue
Deepfake-assisted stock manipulation
Main public findings
Reported AI‑Generated Deepfake Impersonations of Public Figures Allegedly Used in Coordinated Stock Pump‑and‑Dump Scheme Targeting Israeli Investors
Cause of the violation
Synthetic endorsements and fake authority cues were used to manipulate trading behavior and dump illiquid assets.
Bermuda Premier David Burt
Date
April 5, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Deepfake of Bermuda Premier David Burt Promotes Investment Scam Using Royal Gazette Branding
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Spain-based scam ring / global investors
Date
April 7, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Alleged Deepfake Investment Scam in Spain Defrauds 208 Victims of €19 million ($20.9 million)
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Jailbroken Lovable AI
Date
April 9, 2025
Core issue
Jailbroken AI used to build phishing infrastructure
Main public findings
Jailbroken Lovable AI Allegedly Used to Generate and Host Phishing Pages, Steal Credentials, and Bypass Security
Cause of the violation
A jailbroken builder model was allegedly used to generate, host, and exfiltrate live phishing workflows.
Gamma users / phishing recipients
Date
April 15, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
AI-Powered Presentation Tool Gamma Implicated in Multi-Stage Phishing Campaign
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
Miami Beach realtor identity / UK victim
Date
April 21, 2025
Core issue
AI-assisted romance / trust scam
Main public findings
Alleged Deepfake Identity Scam Uses Miami Beach Realtor's Likeness to Defraud Victim in the United Kingdom in Purported Romance Scam
Cause of the violation
AI-generated personas, chat, or video sustained false relationships and extracted money over time.
Steven Bartlett
Date
April 23, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported AI-Generated Deepfake of Steven Bartlett Reportedly Used to Promote Fake WhatsApp Investment Group
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Meta AI App
Date
April 29, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
Meta AI App Reportedly Publishes Personal Chats Without Users Fully Realizing
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
Brazilian consumers / fake restaurant promotions
Date
May 7, 2025
Core issue
Fake promotion / consumer fraud
Main public findings
Brazilian Authorities Link Alleged AI-Generated Marcos Mion Videos to Purported Fake Restaurant Promotions in Brazil
Cause of the violation
Fake promotional content and cloned endorsements exploited weak platform moderation and consumer verification.
Serviceaide AI Platform
Date
May 9, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
Serviceaide AI Platform Implicated in Health Data Exposure Affecting 483,000 Catholic Health Patients
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
U.S. government officials
Date
May 15, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
FBI Reports Ongoing Vishing and Smishing Campaign Allegedly Targeting Government Officials Using Purportedly AI-Generated Voices
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
Norman Swan and other cloned endorsers
Date
May 21, 2025
Core issue
Fraudulent health-product promotion using synthetic endorsements
Main public findings
Purported Unauthorized Deepfakes of Norman Swan and Others Circulated in Online Supplement Campaigns
Cause of the violation
False medical or influencer endorsements were amplified by synthetic media and weak advertising/content enforcement.
Doctors Agnes Wold and Anders Tegnell
Date
June 9, 2025
Core issue
Fraudulent health-product promotion using synthetic endorsements
Main public findings
Purported AI-Generated Deepfake Videos Reportedly Used in Swedish Scam Campaign Impersonating Doctors Agnes Wold and Anders Tegnell
Cause of the violation
False medical or influencer endorsements were amplified by synthetic media and weak advertising/content enforcement.
Bulgarian Tennis Player Grigor Dimitrov
Date
June 13, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Bulgarian Tennis Player Grigor Dimitrov Alleges Deepfake Scam Promoting Fraudulent Investment Scheme Using His Likeness
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Bangladesh betting-platform audiences
Date
June 16, 2025
Core issue
Deepfake-enabled consumer fraud
Main public findings
Alleged AI-Generated Videos Depict Bangladesh's Chief Adviser Muhammad Yunus Endorsing Betting Platforms
Cause of the violation
Synthetic endorsements or personas were used to create false trust and redirect consumers into fraudulent offers.
WCPO Cincinnati Meteorologist
Date
June 18, 2025
Core issue
Voice-cloning urgent-payment fraud
Main public findings
Scammer Reportedly Used AI Voice Clone of WCPO Cincinnati Meteorologist in Facebook Fraud Attempts
Cause of the violation
Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.
Crypto analyst / compromised accounts
Date
June 19, 2025
Core issue
Deepfake social engineering leading to malware / account theft
Main public findings
Reported AI-Generated Video Call Impersonation of Cryptocurrency Analyst Leads to Alleged Malware Installation and Account Theft
Cause of the violation
Deepfake calls or AI-generated personas created trust, leading targets to run malware or surrender account access.
Thai PBS World anchor / Miss Universe CEO likeness
Date
June 24, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported AI Deepfake Reportedly Impersonated Thai PBS World Anchor and Miss Universe CEO in Fraudulent Investment Video
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Lithuanian Politicians and Doctors
Date
June 28, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Alleged Deepfake Videos Impersonate Lithuanian Politicians and Doctors in Purported Cross-Border Scam Network
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Simcoe County residents
Date
June 29, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Alleged AI Deepfake Videos Used to Lure Simcoe County, Ontario Residents in Crypto Scam
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Indian investors / fake stock experts
Date
July 1, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Chinese-Backed Operation Reportedly Used AI-Generated Deepfake Videos of Indian Stock Experts in Investment Fraud Campaign
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Microsoft 365 Copilot users
Date
July 4, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
Microsoft 365 Copilot Vulnerability Allegedly Allowed File Access Without Audit Log
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
YouTube viewers / Donald Trump persona
Date
July 7, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported Deepfake Video of Donald Trump at NATO Summit Allegedly Used in YouTube Crypto Scam
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
LAMEHUG Malware
Date
July 10, 2025
Core issue
Malware campaign using LLM assistance
Main public findings
LAMEHUG Malware Reportedly Integrates Large Language Model for Real-Time Command Generation in a Purported APT28-Linked Cyberattack
Cause of the violation
Threat actors allegedly used LLM assistance to improve malware functionality and operator efficiency.
Brunei citizens / fake police scam
Date
July 14, 2025
Core issue
Authority-impersonation scam using AI-generated media
Main public findings
Purportedly AI-Generated Videos Impersonate Brunei Police in 'Real Money Magic' Scam on Social Media
Cause of the violation
Synthetic-media impersonation of public officials combined with weak out-of-band verification by victims.
North Korea's Kimsuky Group
Date
July 17, 2025
Core issue
AI-assisted phishing / credential theft
Main public findings
North Korea's Kimsuky Group Reportedly Uses AI-Generated Military ID Deepfakes in Phishing Campaign
Cause of the violation
AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.
Tea Dating App users
Date
July 25, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
Reported Hack of Tea Dating App Compromises Data from Purportedly AI-Supported Identity and Image Checks
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
Users of indexed LLM share links
Date
July 31, 2025
Core issue
Sensitive data exposure / access-control failure
Main public findings
Reported Public Exposure of Over 100,000 LLM Conversations via Share Links Indexed by Search Engines and Archived
Cause of the violation
Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.
Guernsey investors
Date
August 1, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Purported Deepfake Video and Fake News Articles Allegedly Used to Impersonate Guernsey's Chief Minister in Investment Scam
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Anthony Albanese likeness / AUFIRST victims
Date
August 4, 2025
Core issue
Deepfake-enabled investment / crypto fraud
Main public findings
Alleged Deepfake Video of Anthony Albanese Promotes Fake AUFIRST 'Tax Dividend' Trading Platform
Cause of the violation
Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.
Kim Seon-ho likeness / extortion target
Date
August 19, 2025
Core issue
Sextortion / payment coercion using AI-generated media
Main public findings
South Korean Actor Kim Seon-ho's Likeness Allegedly Misused in Purported Deepfake Impersonation Attempts Demanding Money
Cause of the violation
Non-consensual or deceptive synthetic media was allegedly used to coerce payment or threaten reputational harm.