Incident 634: Une prétendue arnaque au directeur financier par deepfake aurait coûté 25 millions de dollars à la multinationale d'ingénierie Arup
Description: Selon la police de Hong Kong, un employé financier de la multinationale d'ingénierie Arup aurait été trompé en transférant 25 millions de dollars par des fraudeurs utilisant une prétendue technologie deepfake pour se faire passer pour le directeur financier de l'entreprise lors d'un appel vidéo.
Editor Notes: Note of 05/03/2025: This incident has become a recurring reference for reports on AI-powered scams, particularly when discussing the dangers of deepfake technology in real-time video conferencing. Where possible, reports that even make cursory reference to the incident will be included in this archive. Its emergence as a shorthand in journalism is worthy of note in and of itself for research.
Outils
Nouveau rapportNouvelle RéponseDécouvrirVoir l'historique
Le Moniteur des incidents et risques liés à l'IA de l'OCDE (AIM) collecte et classe automatiquement les incidents et risques liés à l'IA en temps réel à partir de sources d'information réputées dans le monde entier.
Entités
Voir toutes les entitésAlleged: Deepfake technology developers et Synthetic audio generation technology developers developed an AI system deployed by Scammers, which harmed Unnamed finance employee et Arup.
Systèmes d'IA présumés impliqués: Video call technology , Deepfake technology et Synthetic audio generation technology
Risk Subdomain
A further 23 subdomains create an accessible and understandable classification of hazards and harms associated with AI
4.3. Fraud, scams, and targeted manipulation
Risk Domain
The Domain Taxonomy of AI Risks classifies risks into seven AI risk domains: (1) Discrimination & toxicity, (2) Privacy & security, (3) Misinformation, (4) Malicious actors & misuse, (5) Human-computer interaction, (6) Socioeconomic & environmental harms, and (7) AI system safety, failures & limitations.
- Malicious Actors & Misuse
Entity
Which, if any, entity is presented as the main cause of the risk
AI
Timing
The stage in the AI lifecycle at which the risk is presented as occurring
Post-deployment
Intent
Whether the risk is presented as occurring as an expected or unexpected outcome from pursuing a goal
Intentional
