AI-Generated Photos Used in Phishing Scam Targeting SEF

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

Unknown actors used AI-generated images to impersonate Straits Exchange Foundation (SEF) personnel in phishing emails, inviting recipients to fake events and prompting them to click malicious links and disclose personal information. The scam caused reputational harm to SEF and risked data theft, prompting SEF to issue public warnings.[AI generated]

Why's our monitor labelling this an incident or hazard?

The event explicitly mentions AI-generated photos used in phishing emails to impersonate the organization and trick recipients into clicking malicious links. This use of AI directly contributes to a realized harm—fraud and potential personal data theft—thus meeting the criteria for an AI Incident. The harm is to individuals' personal data and privacy, which falls under harm to persons or groups. Therefore, this is classified as an AI Incident.[AI generated]
AI principles
AccountabilityPrivacy & data governanceRespect of human rightsRobustness & digital securitySafetyTransparency & explainability

Industries
Digital securityGovernment, security, and defence

Affected stakeholders
GovernmentGeneral public

Harm types
ReputationalHuman or fundamental rights

Severity
AI incident

AI system task:
Content generation


Articles about this incident or hazard

Thumbnail Image

海基會遭假冒 虛構座談會、AI生成照片「竟是釣魚電郵騙個資」 | 聯合新聞網

2025-06-25
UDN
Why's our monitor labelling this an incident or hazard?
The event explicitly mentions AI-generated photos used in phishing emails to impersonate the organization and trick recipients into clicking malicious links. This use of AI directly contributes to a realized harm—fraud and potential personal data theft—thus meeting the criteria for an AI Incident. The harm is to individuals' personal data and privacy, which falls under harm to persons or groups. Therefore, this is classified as an AI Incident.
Thumbnail Image

不明人士假冒名義詐騙索個資 海基會呼籲各界提高警覺 | 社會 | Newtalk新聞

2025-06-25
新頭殼 Newtalk
Why's our monitor labelling this an incident or hazard?
An AI system is involved as the scam uses AI-generated fake photos to impersonate legitimate personnel, which is a misuse of AI technology. The event involves the use of AI-generated content to deceive recipients into clicking malicious links and potentially disclosing personal information, which constitutes harm to individuals (privacy/data theft) and damage to the organization's reputation. Since the harm is occurring through the scam's active use of AI-generated images and phishing emails, this qualifies as an AI Incident under the definitions provided.
Thumbnail Image

不明人士假冒海基會名義進行詐騙索個資 海基會呼籲各界提高警覺 | 政治 | 三立新聞網 SETN.COM

2025-06-25
三立新聞
Why's our monitor labelling this an incident or hazard?
The event involves the use of AI-generated images to impersonate official personnel, which is a clear involvement of an AI system in the scam. The phishing emails cause harm by misleading recipients into providing personal information, constituting a violation of rights and harm to individuals. Since the AI-generated content is pivotal in enabling the scam and resulting harm, this qualifies as an AI Incident under the framework.