Skip to Content
logologo
AI Incident Database
Open TwitterOpen RSS FeedOpen FacebookOpen LinkedInOpen GitHub
Open Menu
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse

Incident 942: Cybercriminals Reportedly Exploited Google’s G.Co Subdomain and Spoofed Caller ID in AI-Driven Phishing Attack on Hack Club Founder

Description: Hack Club founder Zach Latta was reportedly targeted in an AI-assisted phishing attack exploiting Google’s own systems. Cybercriminals allegedly spoofed a legitimate Google Assistant number and used voice cloning to impersonate support staff, claiming unusual login activity from Frankfurt. They reinforced the deception by sending a real email from Google’s Workspace domain. The attack, which relied on Google’s g.co subdomain, was thwarted when inconsistencies raised Latta’s suspicions.
Editor Notes: 01/20/2025 is an approximate date; the attack presumably occurred sometime between January 20 and January 26, 2025. Please also refer to Incidents 839 and 941.

Tools

New ReportNew ReportNew ResponseNew ResponseDiscoverDiscoverView HistoryView History

Entities

View all entities
Alleged: Unknown voice cloning technology developed an AI system deployed by Voice phishers , Scammers impersonating Google staff , scammers and Fraudsters, which harmed Zach Latta and Google users.
Alleged implicated AI systems: Unknown voice cloning technology , Google Workspace , Google authentication system , Google Assistant and Google's g.co subdomain

Incident Stats

Incident ID
942
Report Count
8
Incident Date
2025-02-20
Editors
Daniel Atherton

Incident Reports

Reports Timeline

Google takes action after coder reports 'most sophisticated attack I've ever seen'Google Tightens Security After Sophisticated Phishing Scam Targets ‘Workspace’ Users+1
Hackers leverage Google’s phone number, subdomains to attack victims
Advanced phishing scams target Gmail users with AI.Gmail Security Warning For 2.5 Billion Users—AI Hack ConfirmedAI-driven phishing scams are the new entrant to the hacking era. Here's how you can stay safeDo NOT ignore this Gmail phishing scam, FBI warnsIncident Occurrence
Google takes action after coder reports 'most sophisticated attack I've ever seen'

Google takes action after coder reports 'most sophisticated attack I've ever seen'

theregister.com

Google Tightens Security After Sophisticated Phishing Scam Targets ‘Workspace’ Users

Google Tightens Security After Sophisticated Phishing Scam Targets ‘Workspace’ Users

technadu.com

Hackers leverage Google’s phone number, subdomains to attack victims

Hackers leverage Google’s phone number, subdomains to attack victims

cybernews.com

Gmail warns users to secure accounts after ‘malicious’ AI hack confirmed

Gmail warns users to secure accounts after ‘malicious’ AI hack confirmed

nypost.com

Advanced phishing scams target Gmail users with AI.

Advanced phishing scams target Gmail users with AI.

neuron.expert

Gmail Security Warning For 2.5 Billion Users—AI Hack Confirmed

Gmail Security Warning For 2.5 Billion Users—AI Hack Confirmed

forbes.com

AI-driven phishing scams are the new entrant to the hacking era. Here's how you can stay safe

AI-driven phishing scams are the new entrant to the hacking era. Here's how you can stay safe

edexlive.com

Do NOT ignore this Gmail phishing scam, FBI warns

Do NOT ignore this Gmail phishing scam, FBI warns

dataconomy.com

Google takes action after coder reports 'most sophisticated attack I've ever seen'
theregister.com · 2025

Google says it's now hardening defenses against a sophisticated account takeover scam documented by a programmer last week.

Zach Latta, founder of Hack Club, told of how close he was to succumbing to voice phishers who attempted to take ove…

Google Tightens Security After Sophisticated Phishing Scam Targets ‘Workspace’ Users
technadu.com · 2025
  • Cybercriminals impersonated Google's Workspace team members via advanced voice phishing techniques.
  • Later in the conversation, the hackers sent an email to the victim that required a password reset.
  • The scam email appeared to come from Goo…
Hackers leverage Google’s phone number, subdomains to attack victims
cybernews.com · 2025

Scammers managed to call a victim using Google's phone number, which is listed on the official support website, and then send an email from an official subdomain. It's unclear how threat actors might have abused Google's features.

Software …

Gmail warns users to secure accounts after ‘malicious’ AI hack confirmed
nypost.com · 2025

Sophisticated scams fueled by artificial intelligence are threatening the security of billions of Gmail users. security warning issued

As AI-powered phone calls mimicking human voices have become incredibly realistic, a new report from Forb…

Advanced phishing scams target Gmail users with AI.
neuron.expert · 2025
AI Translated

Update, January 31, 2025: This article has been revised to include Google's statement on a sophisticated Gmail attack using AI and insights from a content control security expert. Recent reports show the emergence of advanced phishing scams…

Gmail Security Warning For 2.5 Billion Users—AI Hack Confirmed
forbes.com · 2025

Update, Feb. 1, 2025: This story, originally published Jan. 30, has been updated with further mitigation advice for spotting deepfake AI-powered threats, a statement from Google about the sophisticated Gmail attack, and a comment from a con…

AI-driven phishing scams are the new entrant to the hacking era. Here's how you can stay safe
edexlive.com · 2025

Worried about scams carried out by humans that may leave you bankrupt? According to a Forbes article, Zach Latta, Founder of Hack Club, recently fell victim to an Artificial Intelligence (AI)-driven phishing attack.

According to Latta, he h…

Do NOT ignore this Gmail phishing scam, FBI warns
dataconomy.com · 2025

Google has confirmed a recent sophisticated phishing attack targeting its Gmail users, emphasizing the need for users to remain vigilant against AI-driven scams. The attack was described as highly targeted and complex, involving fraudulent …

Variants

A "variant" is an incident that shares the same causative factors, produces similar harms, and involves the same intelligent systems as a known AI incident. Rather than index variants as entirely separate incidents, we list variations of incidents under the first similar incident submitted to the database. Unlike other submission types to the incident database, variants are not required to have reporting in evidence external to the Incident Database. Learn more from the research paper.

Similar Incidents

Selected by our editors
AI-Driven Phishing Scam Uses Deepfake Robocalls to Target Gmail Users in Credential Theft Campaign

AI-Driven Phishing Scam Uses Deepfake Robocalls to Target Gmail Users in Credential Theft Campaign

Feb 2025 · 13 reports
By textual similarity

Did our AI mess up? Flag the unrelated incidents

Hackers Break Apple Face ID

Hackers Break Apple Face ID

Sep 2017 · 24 reports
Security Robot Drowns Itself in a Fountain

Security Robot Drowns Itself in a Fountain

Jul 2017 · 30 reports
Security Robot Rolls Over Child in Mall

Security Robot Rolls Over Child in Mall

Jul 2016 · 27 reports
Previous IncidentNext Incident

Similar Incidents

Selected by our editors
AI-Driven Phishing Scam Uses Deepfake Robocalls to Target Gmail Users in Credential Theft Campaign

AI-Driven Phishing Scam Uses Deepfake Robocalls to Target Gmail Users in Credential Theft Campaign

Feb 2025 · 13 reports
By textual similarity

Did our AI mess up? Flag the unrelated incidents

Hackers Break Apple Face ID

Hackers Break Apple Face ID

Sep 2017 · 24 reports
Security Robot Drowns Itself in a Fountain

Security Robot Drowns Itself in a Fountain

Jul 2017 · 30 reports
Security Robot Rolls Over Child in Mall

Security Robot Rolls Over Child in Mall

Jul 2016 · 27 reports

Research

  • Defining an “AI Incident”
  • Defining an “AI Incident Response”
  • Database Roadmap
  • Related Work
  • Download Complete Database

Project and Community

  • About
  • Contact and Follow
  • Apps and Summaries
  • Editor’s Guide

Incidents

  • All Incidents in List Form
  • Flagged Incidents
  • Submission Queue
  • Classifications View
  • Taxonomies

2024 - AI Incident Database

  • Terms of use
  • Privacy Policy
  • Open twitterOpen githubOpen rssOpen facebookOpen linkedin
  • 300d90c