top of page

AI Radar

AI Radar tracks publicly disclosed AI incidents, investigations, enforcement actions, and material failures connected with cybersecurity, fraud, financial crime, privacy, and governance. Its purpose is to provide a clear, practical view of how AI-related risk manifests in real cases, from deepfake-enabled impersonation and synthetic identity abuse to data leakage, malicious model use, and failures in oversight.

 

The radar brings together key information on each case, including the date, the entity involved, the core issue, the main public findings, the cause of the failure or violation, and the event narrative. Where relevant, it also captures the operational impact, regulatory dimension, and source material. By presenting these cases in one place, AI Radar helps legal, compliance, AML, fraud, privacy, security, and risk teams understand which control gaps most often lead to public exposure, regulatory scrutiny, customer harm, financial loss, or reputational damage.

 

More than a list of incidents, AI Radar is designed as a working governance and risk resource. It shows how organizations and regulators respond to issues such as deepfake fraud, phishing, AI-assisted social engineering, synthetic identity abuse, model misuse, insecure deployment, data leakage, inadequate monitoring, poor human oversight, and third-party failures. This makes it easier to translate public incidents into practical lessons for internal controls, AI governance, fraud prevention, AML monitoring, vendor management, and enterprise risk management.

Cross-border victims in Taiwan, Singapore, and Malaysia

Date

January 5, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Hong Kong Authorities Seize HK$34M in Alleged Deepfake Scam Targeting Victims in Taiwan, Singapore, and Malaysia

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Kaikatsu Frontier and affected customers

Date

January 18, 2025

Core issue

AI-assisted intrusion / data breach

Main public findings

Japanese Teen Allegedly Uses AI-Generated Program to Breach Kaikatsu Frontier and Leak Data of 7.3 Million Customers

Cause of the violation

AI-generated tooling or automation allegedly lowered the barrier to unauthorized access and data theft.

Monica Geingos likeness / Namibian audiences

Date

January 22, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Former Namibian First Lady Monica Geingos's Likeness Reportedly Used in Purported AI-Generated Video Investment Scams

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Thailand residents targeted by fake police

Date

February 4, 2025

Core issue

Authority-impersonation scam using AI-generated media

Main public findings

AI-Aided Scam in Thailand Allegedly Impersonates Police to Defraud 163 Victims

Cause of the violation

Synthetic-media impersonation of public officials combined with weak out-of-band verification by victims.

Italian Defense Minister Guido Crosetto

Date

February 4, 2025

Core issue

Authority-impersonation scam using AI-generated media

Main public findings

Fraudsters Allegedly Use AI-Generated Voice of Italian Defense Minister Guido Crosetto to Scam Business Leaders

Cause of the violation

Synthetic-media impersonation of public officials combined with weak out-of-band verification by victims.

Nottingham Gallery Owner

Date

February 8, 2025

Core issue

Deepfake identity / celebrity impersonation fraud

Main public findings

Nottingham Gallery Owner Allegedly Defrauded by Deepfake Impersonating Pierce Brosnan, Leading to Business Closure

Cause of the violation

Deepfake or cloned identity content created false trust and induced victims to send money or engage further.

Colorado mother

Date

February 10, 2025

Core issue

Voice-cloning urgent-payment fraud

Main public findings

AI-Generated Voice Purporting to Be Daughter Allegedly Used to Coerce $2,000 from Colorado Mother

Cause of the violation

Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.

Myriam Spiteri Debono likeness / Malta audiences

Date

February 12, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported AI-Generated Videos Impersonating President of Malta Myriam Spiteri Debono Circulate on Social Media in Alleged Crypto Scam Campaigns

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Gmail users

Date

February 17, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

AI-Driven Phishing Scam Uses Deepfake Robocalls to Target Gmail Users in Credential Theft Campaign

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

Hack Club founder / Google g.co abuse

Date

February 20, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

Cybercriminals Reportedly Exploited Google's G.Co Subdomain and Spoofed Caller ID in AI-Driven Phishing Attack on Hack Club Founder

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

Spiritual Leader Sadhguru

Date

February 25, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported AI-Generated Deepfake of Spiritual Leader Sadhguru Used in Investment Scam Allegedly Defrauding Bengaluru Woman of ₹3.75 Crore (~$425,000)

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Indonesian citizens / Prabowo deepfake

Date

March 2, 2025

Core issue

Authority-impersonation scam using AI-generated media

Main public findings

Deepfake Video of Indonesian President Prabowo Subianto and Other Officials Reportedly Used in Scam to Defraud Citizens Across 20 Provinces

Cause of the violation

Synthetic-media impersonation of public officials combined with weak out-of-band verification by victims.

Prime Minister of Armenia Nikol Pashinyan

Date

March 4, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Scammers Using Deepfake Technology to Impersonate Prime Minister of Armenia Nikol Pashinyan

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Tbilisi-Based Call Center

Date

March 5, 2025

Core issue

AI-scripted call-center fraud

Main public findings

Tbilisi-Based Call Center Allegedly Uses AI-Driven Scripts to Defraud Over 6,000 Victims of $35 Million

Cause of the violation

Scaled social engineering supported by AI-generated scripts, lead targeting, and weak investor verification.

Singapore Prime Minister Lawrence Wong

Date

March 7, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Deepfake Videos Allegedly Use AI-Generated Voice Clone of Singapore Prime Minister Lawrence Wong to Promote Scams

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Financial Times Journalist Martin Wolf

Date

March 9, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Financial Times Journalist Martin Wolf Reports AI-Generated Investment Scam Using His Likeness on Instagram and Facebook

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

NSW Resilient Homes Program

Date

March 12, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

Alleged ChatGPT Misuse by Contractor Leads to Reported Data Exposure in New South Wales Resilient Homes Program

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

Docomo Pacific CEO

Date

March 13, 2025

Core issue

Voice-cloning urgent-payment fraud

Main public findings

Docomo Pacific CEO Reports Mother Targeted by Purported AI-Enabled Scam in Guam

Cause of the violation

Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.

AIXBT / Simulacrum wallet

Date

March 18, 2025

Core issue

Agentic prompt exploitation / unauthorized transfer

Main public findings

Fraudulent Prompts via AIXBT Dashboard Led AI Trading Agent to Transfer 55.5 ETH from Simulacrum Wallet

Cause of the violation

Unsafe agent permissions, weak transaction guardrails, and inadequate authorization checks on high-risk wallet actions.

OpenAI’s 4o Model

Date

March 31, 2025

Core issue

Generative-AI document forgery

Main public findings

OpenAI’s 4o Model Allegedly Used to Generate Fake Receipts and Prescriptions

Cause of the violation

High-fidelity document generation and insufficient misuse controls enabled fake receipts, prescriptions, or similar records.

Texas Woman

Date

April 3, 2025

Core issue

Voice-cloning urgent-payment fraud

Main public findings

AI Voice Clone of Texas Woman Used in Distress Scam Targeting Brother in Port Neches

Cause of the violation

Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.

Xanthorox AI

Date

April 7, 2025

Core issue

Offensive AI tooling for cybercrime

Main public findings

Reported Darknet Launch of Xanthorox AI Introduces Autonomous Cyberattack Platform

Cause of the violation

Malicious actors deliberately developed or released AI tooling optimized for offensive cyber operations.

Hong Kong Syndicate

Date

April 7, 2025

Core issue

KYC / synthetic-identity / AML-related abuse

Main public findings

Hong Kong Syndicate Allegedly Used AI-Generated Facial Composites to Open Bank Accounts

Cause of the violation

Synthetic identities or facial composites allegedly exploited onboarding/KYC weaknesses and cross-border financial controls.

Exante Brokerage

Date

April 10, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Alleged AI-Generated Clone of Exante Brokerage Used to Defraud U.S. Investor via JPMorgan Account

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

David Rosenberg / Meta users

Date

April 15, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Alleged Deepfake Investment Scam Uses Economist David Rosenberg's Likeness on Meta Platforms

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Anthropic / abusive Claude users

Date

April 23, 2025

Core issue

Vendor-reported multi-campaign cyber / fraud misuse

Main public findings

Anthropic Report Details Claude Misuse for Influence Operations, Credential Stuffing, Recruitment Fraud, and Malware Development

Cause of the violation

Abusive users leveraged general-purpose models for fraud/cyber misuse faster than platform controls detected or blocked them.

Australian Analyst

Date

April 27, 2025

Core issue

Synthetic corporate-materials fraud

Main public findings

Australian Analyst Allegedly Targeted by Scam Using Purportedly Sophisticated AI-Generated Corporate Materials

Cause of the violation

Synthetic documents and corporate materials were used to bypass normal due diligence or procurement checks.

Dr. Rinki Murphy

Date

April 30, 2025

Core issue

Fraudulent health-product promotion using synthetic endorsements

Main public findings

Purported Deepfake Featuring Dr. Rinki Murphy and Jack Tame Reportedly Used to Promote Diabetes Scam in New Zealand

Cause of the violation

False medical or influencer endorsements were amplified by synthetic media and weak advertising/content enforcement.

Noodlophile Stealer

Date

May 8, 2025

Core issue

AI-themed malware delivery / supply-chain abuse

Main public findings

Noodlophile Stealer Reportedly Distributed Through Allegedly Fraudulent AI Content Platforms

Cause of the violation

Malicious packages or AI-branded services exploited trust in tooling ecosystems and weak dependency vetting.

Cypriot officials' likenesses / investors

Date

May 12, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported AI-Manipulated Videos of Cypriot Officials Circulated in Alleged Investment Fraud

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Owen Wilson

Date

May 16, 2025

Core issue

AI-assisted romance / trust scam

Main public findings

Reported Use of Deepfake Video Impersonating Owen Wilson in Romance Scam with Fake Job Payments

Cause of the violation

AI-generated personas, chat, or video sustained false relationships and extracted money over time.

White House Chief of Staff Susie Wiles

Date

May 30, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

Phone of White House Chief of Staff Susie Wiles Allegedly Breached in Reported AI Voice Impersonation Incident

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

Bank of Montreal Strategist Brian Belski

Date

June 12, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Alleged AI-Generated Video Ads Impersonate Bank of Montreal Strategist Brian Belski to Promote Investment Scam

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Secretary of State Marco Rubio

Date

June 15, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

Purported AI Voice Cloning Used to Impersonate Secretary of State Marco Rubio

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

Macau residents / Sam Hou Fai likeness

Date

June 18, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Alleged AI-Manipulated Video Uses Macau Chief Executive Sam Hou Fai's Likeness in Investment Scam

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Sri Lankan President Anura Kumara Dissanayake

Date

June 18, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported Deepfake of Sri Lankan President Anura Kumara Dissanayake Promotes Fraudulent Government Investment Scheme

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Web3 Employee

Date

June 22, 2025

Core issue

Deepfake social engineering leading to malware / account theft

Main public findings

North Korea-Linked Actors Allegedly Use AI Executive Deepfakes in Zoom Phishing Targeting Web3 Employee

Cause of the violation

Deepfake calls or AI-generated personas created trust, leading targets to run malware or surrender account access.

Infosys Co-Founder N. R. Narayana Murthy

Date

June 27, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported AI-Generated Deepfake of Infosys Co-Founder N. R. Narayana Murthy Used in Investment Scam Allegedly Defrauding 79-Year-Old Bengaluru Woman of ₹35 Lakh (~$40,000)

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Vulnerable Southampton Resident

Date

June 28, 2025

Core issue

Deepfake identity / celebrity impersonation fraud

Main public findings

Reportedly Sustained Multi-Celebrity Deepfake Persona Scam Targeting Vulnerable Southampton Resident

Cause of the violation

Deepfake or cloned identity content created false trust and induced victims to send money or engage further.

McDonald's McHire AI Recruitment Platform

Date

June 30, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

McDonald's McHire AI Recruitment Platform Reportedly Exposed Data of 64 Million Applicants via Default Login and API Vulnerability

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

Malaysian Leaders

Date

July 4, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported Widespread Use of AI-Generated Deepfake Videos Impersonate Malaysian Leaders in Investment Scams

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Chicago veteran

Date

July 7, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Chicago Veteran Reportedly Loses $10,000 in Purported Deepfake Cryptocurrency Fraud Posing as Elon Musk

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Urban VPN users / exposed chatbot conversations

Date

July 9, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

Urban VPN Proxy Browser Extension Reportedly Harvested and Sold Private AI Chatbot Conversations via Silent Update

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

Lance Gokongwei likeness / investors

Date

July 11, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported Deepfake Scam Videos Depict JG Summit Holdings President and CEO Lance Gokongwei Allegedly Endorsing Illicit Investments

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

CISA / U.S. government documents

Date

July 15, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

CISA Acting Director Reportedly Uploaded Sensitive Government Documents to Public ChatGPT Instance

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

Retired couple in Hillsborough County, Florida

Date

July 19, 2025

Core issue

Voice-cloning urgent-payment fraud

Main public findings

Purportedly AI-Cloned Voice of Daughter Used in Elaborate Bond Scam Targeting Retired Couple in Hillsborough County, Florida

Cause of the violation

Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.

Local Residents

Date

July 28, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Malta's Prime Minister Robert Abela Reportedly Deepfaked by a Ukrainian National in Cryptocurrency Fraud Targeting Local Residents

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Microsoft's Windows Recall

Date

August 1, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

Microsoft's Windows Recall Allegedly Stores Passwords and Social Security Numbers in Preview Mode

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

Airbnb Host

Date

August 2, 2025

Core issue

AI-altered evidence / false-claim fraud

Main public findings

Airbnb Host Reportedly Accused of Using Purportedly AI‑Altered Photos in False Damage Claim

Cause of the violation

AI-altered or AI-generated evidence undermined normal claims-validation processes.

Google AI Overviews and ChatGPT

Date

August 15, 2025

Core issue

AI assistant misdirection to scam contact

Main public findings

Google AI Overviews and ChatGPT Reportedly Cited Fraudulent Cruise Hotline, Allegedly Enabling Successful Scam

Cause of the violation

Unverified AI-generated contact details were surfaced as trustworthy guidance, redirecting users to fraud operators.

Tennessee Meteorologist's Likeness

Date

January 10, 2025

Core issue

Sextortion / payment coercion using AI-generated media

Main public findings

Tennessee Meteorologist's Likeness Reportedly Used in Sextortion Campaign Involving Purported AI-Generated Content

Cause of the violation

Non-consensual or deceptive synthetic media was allegedly used to coerce payment or threaten reputational harm.

DNB Bank

Date

January 21, 2025

Core issue

Deepfake executive impersonation / business email compromise

Main public findings

Purportedly AI-Generated Deepfake Reportedly Used to Impersonate DNB Bank CFO and CEO in Live Teams Meeting

Cause of the violation

Deepfake executive impersonation met insufficient dual-approval, callback, and payment-verification controls.

Victim targeted with Martin Henderson persona

Date

February 1, 2025

Core issue

AI-assisted romance / trust scam

Main public findings

AI-Assisted Impersonation of Martin Henderson in Romance Scam Leads to Reported NZ$375,000 Fraud

Cause of the violation

AI-generated personas, chat, or video sustained false relationships and extracted money over time.

Havre, Montana game and coffee store

Date

February 4, 2025

Core issue

Voice-cloning urgent-payment fraud

Main public findings

AI Voice Scam Allegedly Defrauds Game and Coffee Store in Havre, Montana

Cause of the violation

Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.

New Zealand dating-app users

Date

February 4, 2025

Core issue

AI-assisted romance / trust scam

Main public findings

Chatbots Allegedly Used in Romance Scams Targeting Nearly One-Third of New Zealand's Dating App Users

Cause of the violation

AI-generated personas, chat, or video sustained false relationships and extracted money over time.

Bolivian job seekers / Education Minister deepfake

Date

February 10, 2025

Core issue

Employment scam using deepfake impersonation

Main public findings

Bolivian Criminal Network Allegedly Used Deepfake of Education Minister to Defraud at Least 19 Victims in Employment Scam

Cause of the violation

Deepfake authority cues and job scarcity were used to lower skepticism and collect money from applicants.

Michigan Tinder scam victim

Date

February 10, 2025

Core issue

AI-assisted romance / trust scam

Main public findings

Michigan Woman Defrauded in Alleged Tinder Romance Scam Using Purportedly AI-Generated Video Calls

Cause of the violation

AI-generated personas, chat, or video sustained false relationships and extracted money over time.

Robert Abela / Mark Laurence Zammit likenesses

Date

February 17, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Reported Deepfake of Maltese Prime Minister Robert Abela and Journalist Mark Laurence Zammit Used to Promote Fraudulent Investment

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

FTX claims buyers

Date

February 18, 2025

Core issue

KYC / synthetic-identity / AML-related abuse

Main public findings

Alleged Use of Purported AI-Generated Identities to Defraud FTX Claims Buyers of $5.6M

Cause of the violation

Synthetic identities or facial composites allegedly exploited onboarding/KYC weaknesses and cross-border financial controls.

Fake ChatGPT billing targets

Date

February 23, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

Alleged FraudGPT-Enabled Phishing Attack Spoofs ChatGPT Subscription Service to Steal Credentials

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

Microsoft Copilot

Date

February 26, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

Microsoft Copilot Reportedly Able to Access Cached Data from Since-Private GitHub Repositories

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

YouTube creators / Neal Mohan likeness

Date

March 4, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

Phishers Allegedly Using AI-Generated Video of YouTube CEO Neal Mohan to Target Creators

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

TikTok wellness-product consumers

Date

March 4, 2025

Core issue

Fraudulent health-product promotion using synthetic endorsements

Main public findings

Reported Deepfake Influencers on TikTok Allegedly Used to Promote Fraudulent Wellness Products

Cause of the violation

False medical or influencer endorsements were amplified by synthetic media and weak advertising/content enforcement.

Elderly U.S. victims in grandparent scam

Date

March 5, 2025

Core issue

Voice-cloning urgent-payment fraud

Main public findings

Canadian Fraud Ring Allegedly Used AI Voice Cloning in Multi-Year $21 Million Grandparent Scam Targeting Elderly Americans Across 46 States

Cause of the violation

Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.

Jin Dong fans / impersonated celebrity identity

Date

March 9, 2025

Core issue

Deepfake identity / celebrity impersonation fraud

Main public findings

Chinese Actor and CPPCC Member Jin Dong Allegedly Impersonated by AI Deepfake Scammers to Mislead and Defraud Fans

Cause of the violation

Deepfake or cloned identity content created false trust and induced victims to send money or engage further.

Instagram business users

Date

March 12, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

Attackers Reportedly Deployed Simulated AI Support Chatbot to Trick Instagram Business Users into Adding Malicious 2FA Login

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

Singapore corporate finance staff

Date

March 13, 2025

Core issue

Deepfake executive impersonation / business email compromise

Main public findings

Scammers Reportedly Using Deepfake Video Calls to Impersonate Executives in Singapore and Orchestrate Corporate Bank Transfers

Cause of the violation

Deepfake executive impersonation met insufficient dual-approval, callback, and payment-verification controls.

U.S. taxpayers

Date

March 14, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

Alleged AI-Generated IRS Scam Websites Used to Defraud U.S. Taxpayers

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

GenNomis AI Database

Date

March 31, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

GenNomis AI Database Reportedly Exposes Nearly 100,000 Deepfake and Nudify Images in Public Breach

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

Israeli Investors

Date

April 1, 2025

Core issue

Deepfake-assisted stock manipulation

Main public findings

Reported AI‑Generated Deepfake Impersonations of Public Figures Allegedly Used in Coordinated Stock Pump‑and‑Dump Scheme Targeting Israeli Investors

Cause of the violation

Synthetic endorsements and fake authority cues were used to manipulate trading behavior and dump illiquid assets.

Bermuda Premier David Burt

Date

April 5, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Deepfake of Bermuda Premier David Burt Promotes Investment Scam Using Royal Gazette Branding

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Spain-based scam ring / global investors

Date

April 7, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Alleged Deepfake Investment Scam in Spain Defrauds 208 Victims of €19 million ($20.9 million)

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Jailbroken Lovable AI

Date

April 9, 2025

Core issue

Jailbroken AI used to build phishing infrastructure

Main public findings

Jailbroken Lovable AI Allegedly Used to Generate and Host Phishing Pages, Steal Credentials, and Bypass Security

Cause of the violation

A jailbroken builder model was allegedly used to generate, host, and exfiltrate live phishing workflows.

Gamma users / phishing recipients

Date

April 15, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

AI-Powered Presentation Tool Gamma Implicated in Multi-Stage Phishing Campaign

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

Miami Beach realtor identity / UK victim

Date

April 21, 2025

Core issue

AI-assisted romance / trust scam

Main public findings

Alleged Deepfake Identity Scam Uses Miami Beach Realtor's Likeness to Defraud Victim in the United Kingdom in Purported Romance Scam

Cause of the violation

AI-generated personas, chat, or video sustained false relationships and extracted money over time.

Steven Bartlett

Date

April 23, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported AI-Generated Deepfake of Steven Bartlett Reportedly Used to Promote Fake WhatsApp Investment Group

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Meta AI App

Date

April 29, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

Meta AI App Reportedly Publishes Personal Chats Without Users Fully Realizing

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

Brazilian consumers / fake restaurant promotions

Date

May 7, 2025

Core issue

Fake promotion / consumer fraud

Main public findings

Brazilian Authorities Link Alleged AI-Generated Marcos Mion Videos to Purported Fake Restaurant Promotions in Brazil

Cause of the violation

Fake promotional content and cloned endorsements exploited weak platform moderation and consumer verification.

Serviceaide AI Platform

Date

May 9, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

Serviceaide AI Platform Implicated in Health Data Exposure Affecting 483,000 Catholic Health Patients

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

U.S. government officials

Date

May 15, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

FBI Reports Ongoing Vishing and Smishing Campaign Allegedly Targeting Government Officials Using Purportedly AI-Generated Voices

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

Norman Swan and other cloned endorsers

Date

May 21, 2025

Core issue

Fraudulent health-product promotion using synthetic endorsements

Main public findings

Purported Unauthorized Deepfakes of Norman Swan and Others Circulated in Online Supplement Campaigns

Cause of the violation

False medical or influencer endorsements were amplified by synthetic media and weak advertising/content enforcement.

Doctors Agnes Wold and Anders Tegnell

Date

June 9, 2025

Core issue

Fraudulent health-product promotion using synthetic endorsements

Main public findings

Purported AI-Generated Deepfake Videos Reportedly Used in Swedish Scam Campaign Impersonating Doctors Agnes Wold and Anders Tegnell

Cause of the violation

False medical or influencer endorsements were amplified by synthetic media and weak advertising/content enforcement.

Bulgarian Tennis Player Grigor Dimitrov

Date

June 13, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Bulgarian Tennis Player Grigor Dimitrov Alleges Deepfake Scam Promoting Fraudulent Investment Scheme Using His Likeness

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Bangladesh betting-platform audiences

Date

June 16, 2025

Core issue

Deepfake-enabled consumer fraud

Main public findings

Alleged AI-Generated Videos Depict Bangladesh's Chief Adviser Muhammad Yunus Endorsing Betting Platforms

Cause of the violation

Synthetic endorsements or personas were used to create false trust and redirect consumers into fraudulent offers.

WCPO Cincinnati Meteorologist

Date

June 18, 2025

Core issue

Voice-cloning urgent-payment fraud

Main public findings

Scammer Reportedly Used AI Voice Clone of WCPO Cincinnati Meteorologist in Facebook Fraud Attempts

Cause of the violation

Voice cloning plus urgency and weak callback verification enabled fraudulent emergency-payment requests.

Crypto analyst / compromised accounts

Date

June 19, 2025

Core issue

Deepfake social engineering leading to malware / account theft

Main public findings

Reported AI-Generated Video Call Impersonation of Cryptocurrency Analyst Leads to Alleged Malware Installation and Account Theft

Cause of the violation

Deepfake calls or AI-generated personas created trust, leading targets to run malware or surrender account access.

Thai PBS World anchor / Miss Universe CEO likeness

Date

June 24, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported AI Deepfake Reportedly Impersonated Thai PBS World Anchor and Miss Universe CEO in Fraudulent Investment Video

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Lithuanian Politicians and Doctors

Date

June 28, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Alleged Deepfake Videos Impersonate Lithuanian Politicians and Doctors in Purported Cross-Border Scam Network

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Simcoe County residents

Date

June 29, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Alleged AI Deepfake Videos Used to Lure Simcoe County, Ontario Residents in Crypto Scam

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Indian investors / fake stock experts

Date

July 1, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Chinese-Backed Operation Reportedly Used AI-Generated Deepfake Videos of Indian Stock Experts in Investment Fraud Campaign

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Microsoft 365 Copilot users

Date

July 4, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

Microsoft 365 Copilot Vulnerability Allegedly Allowed File Access Without Audit Log

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

YouTube viewers / Donald Trump persona

Date

July 7, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported Deepfake Video of Donald Trump at NATO Summit Allegedly Used in YouTube Crypto Scam

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

LAMEHUG Malware

Date

July 10, 2025

Core issue

Malware campaign using LLM assistance

Main public findings

LAMEHUG Malware Reportedly Integrates Large Language Model for Real-Time Command Generation in a Purported APT28-Linked Cyberattack

Cause of the violation

Threat actors allegedly used LLM assistance to improve malware functionality and operator efficiency.

Brunei citizens / fake police scam

Date

July 14, 2025

Core issue

Authority-impersonation scam using AI-generated media

Main public findings

Purportedly AI-Generated Videos Impersonate Brunei Police in 'Real Money Magic' Scam on Social Media

Cause of the violation

Synthetic-media impersonation of public officials combined with weak out-of-band verification by victims.

North Korea's Kimsuky Group

Date

July 17, 2025

Core issue

AI-assisted phishing / credential theft

Main public findings

North Korea's Kimsuky Group Reportedly Uses AI-Generated Military ID Deepfakes in Phishing Campaign

Cause of the violation

AI-generated lures were combined with spoofed domains, caller ID, or platform lookalikes to steal credentials.

Tea Dating App users

Date

July 25, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

Reported Hack of Tea Dating App Compromises Data from Purportedly AI-Supported Identity and Image Checks

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

Users of indexed LLM share links

Date

July 31, 2025

Core issue

Sensitive data exposure / access-control failure

Main public findings

Reported Public Exposure of Over 100,000 LLM Conversations via Share Links Indexed by Search Engines and Archived

Cause of the violation

Weak access control, insecure storage, stale indexing, public links, or unsafe AI workflow configuration exposed sensitive data.

Guernsey investors

Date

August 1, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Purported Deepfake Video and Fake News Articles Allegedly Used to Impersonate Guernsey's Chief Minister in Investment Scam

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Anthony Albanese likeness / AUFIRST victims

Date

August 4, 2025

Core issue

Deepfake-enabled investment / crypto fraud

Main public findings

Alleged Deepfake Video of Anthony Albanese Promotes Fake AUFIRST 'Tax Dividend' Trading Platform

Cause of the violation

Synthetic endorsements, fake news branding, and weak investor-side verification enabled fraudulent investment funnels.

Kim Seon-ho likeness / extortion target

Date

August 19, 2025

Core issue

Sextortion / payment coercion using AI-generated media

Main public findings

South Korean Actor Kim Seon-ho's Likeness Allegedly Misused in Purported Deepfake Impersonation Attempts Demanding Money

Cause of the violation

Non-consensual or deceptive synthetic media was allegedly used to coerce payment or threaten reputational harm.

bottom of page