19 May 2026United StatesSuspected AI voice cloning of a mortgage loan officer, combined with a spoofed phone number and a look-alike email domain (tool not identified; attribution by the victims and CertifID)
A married couple in their sixties buying a US$460,000 condo in Hudsonville, near Grand Rapids, Michigan, received an email on 19 May 2026, days before closing, telling them to wire US$66,026.92 for the down payment and closing costs within 24 hours. The email listed a phone number differing from their loan officer's by two digits, and the husband then received a call confirming the instructions in a voice that sounded just like the loan officer. The couple borrowed from family and other sources and wired the money. The day before closing their real loan officer sent the actual statement; the closing was cancelled hours before signing and the money was gone. The husband now believes the call came from a spoofed number using AI-assisted voice cloning; Tyler Adams of CertifID, which is working with the couple and federal officials, said someone's email in the transaction was probably compromised and that the scammers likely cloned the loan officer's voice from social-media clips. The sender's address had two extra letters ('UnitedsMortgages' instead of 'UnitedMortgage'). Neither the lender nor the loan officer is accused of complicity. The couple later completed the purchase in early June from their mutual fund, reported the loss to the FBI's Internet Crime Complaint Center, and describe lasting apprehension and have discussed delaying retirement. CNN reported the case on 15 September 2026; the account the money went to has since closed.
Core concern News report AI involvement: suspected Causal attribution: alleged Medium reported severity Investigation Opened
Added 20/09/2026
22 Apr 2026 to 10 Jun 2026United StatesGrok / Grok Imagine (xAI) image and video generation, including the marketed 'Spicy Mode'
On 8 June 2026 Bentonville police received a tip about child sexual abuse material being generated online through Grok; the account was registered to a well-known local photographer, and a detective found images of a girl from his summer-camp photography classes that appeared to be AI prompts posing children and removing clothing. He was arrested on 10 June and charged with 100 counts of possessing sexually explicit material involving a child and 100 counts under Arkansas' deepfake and child-exploitation provisions; a hidden folder on his phone held more than 1,700 images and videos, most of prepubescent and pubescent girls, most so realistic the detective could not tell their origin, and more than 60 devices were seized. He pleaded not guilty on 20 July 2026 and is free on a $350,000 bond with home monitoring. Two federal lawsuits against xAI followed in the Eastern District of Arkansas on behalf of a ten-year-old former client (filed 23 July) and a nine-year-old girl (filed 29 July): the first complaint says her parents hired the photographer in spring 2026 for family portraits and were told by police on 10 June that from about 22 April her photographs had been fed into Grok to generate hundreds if not thousands of sexual images and videos, and that thousands more depicted other children; it faults Grok's marketed 'Spicy Mode'. Both plaintiffs filed notices of voluntary dismissal on 15 September 2026; the second notice, the only one read, is without prejudice and says the defendants had not been served, and neither docket shows a return of service. Local reporting says a Benton County state-court suit and a further federal suit were filed in August and that xAI, which says it made the cyber tip, sued the photographer, but those reports could not be read in full. The criminal case continues.
Core concern News reportCourt documentCourt recordPress release AI involvement: supported Causal attribution: alleged High reported severity Criminal Charges Involving minors
Added 03/08/2026