German Pension Insurance Warns of AI-Generated Phishing Emails

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

Criminals are using AI to craft convincing phishing emails mimicking the German Pension Insurance's official style, aiming to steal personal data from recipients. The organization has issued warnings, urging people not to follow instructions or click links in suspicious emails. The incident is centered in central Germany.[AI generated]

Why's our monitor labelling this an incident or hazard?

An AI system is involved as the fraudsters use AI to generate convincing phishing emails. The event involves the use of AI in a malicious way to deceive people and obtain sensitive data, which constitutes a violation of personal rights and potentially leads to harm to individuals. Since the harm (fraud attempts targeting personal data) is occurring or actively attempted, this qualifies as an AI Incident. The AI system's use is in the malicious generation of phishing content that directly leads to harm or risk of harm to individuals' privacy and security.[AI generated]
AI principles
Privacy & data governanceSafety

Industries
Government, security, and defenceDigital security

Affected stakeholders
General publicGovernment

Harm types
Human or fundamental rightsEconomic/Property

Severity
AI incident

AI system task:
Content generation


Articles about this incident or hazard

Thumbnail Image

Leipzig/Erfurt/Magdeburg: Rentenversicherung warnt vor Betrug mit KI

2026-06-15
News.de
Why's our monitor labelling this an incident or hazard?
An AI system is involved as the fraudsters use AI to generate convincing phishing emails. The event involves the use of AI in a malicious way to deceive people and obtain sensitive data, which constitutes a violation of personal rights and potentially leads to harm to individuals. Since the harm (fraud attempts targeting personal data) is occurring or actively attempted, this qualifies as an AI Incident. The AI system's use is in the malicious generation of phishing content that directly leads to harm or risk of harm to individuals' privacy and security.
Thumbnail Image

Rentenversicherung warnt vor Betrug mit KI

2026-06-15
mz.de
Why's our monitor labelling this an incident or hazard?
The use of AI-generated text in phishing emails represents a plausible risk of harm (personal data theft, potential identity fraud) if recipients fall victim to the scam. Since the harm is not reported as having occurred yet but the risk is credible and directly linked to the AI system's use, this qualifies as an AI Hazard. There is no indication of actual realized harm or incident in the article, so it is not an AI Incident. The warning about potential fraud and the use of AI to generate the scam emails fits the definition of an AI Hazard.
Thumbnail Image

Rentenversicherung warnt vor Betrug mit KI

2026-06-15
GMX
Why's our monitor labelling this an incident or hazard?
An AI system is explicitly mentioned as being used to generate the fraudulent email content, which is a misuse of AI technology. The event involves the use of AI in the development and use of the scam emails, which directly leads to harm by attempting to steal sensitive personal data from individuals. This constitutes a violation of rights and harm to individuals, fitting the definition of an AI Incident.