Microsoft and Google collaborated through the Global Signal Exchange to dismantle RedVDS, a $66 million cybercrime marketplace selling virtual machines with pirated software used for phishing and fraud attacks. The operation targeted 130,000 organizations and compromised 191,000 Microsoft email accounts between September and December 2025. Coordinated action resulted in domain seizures in the UK and US, server seizures in Germany, and Europol involvement.
A Pew Research Center study evaluates three methods for removing bogus respondents from online opt-in polls—trap questions, automated prescreening, and voter file matching—finding that while all modestly improve data quality, none provides a reliable solution and all slightly increase overestimation of Democratic support in the 2024 election.
Singapore is auctioning luxury goods seized in a $2.4 billion money-laundering bust involving a criminal network engaged in scams and illicit gambling. The haul of designer handbags, jewelry, properties, and collectibles will be sold across 15 auctions through May, with proceeds going to Singapore's treasury.
A researcher argues that chat-based language models create an 'intelligence illusion' through mechanisms similar to psychic cold reading, using statistically generic statements that exploit cognitive biases like the Forer effect to give the false impression of genuine reasoning and understanding.
PDF forgeries are surprisingly uncommon online despite being technically feasible and potentially lucrative for bad actors. While malicious videos, images, and documents proliferate, edited PDFs rarely circulate as fraudulent copies of legitimate research papers, possibly because PDF editing is not part of typical workflows and lacks the accessibility of tools like Photoshop.
An author responds to criticism from Devon Price, who accused them of attributing disability fakery primarily to women. The author argues Price provided no evidence for this claim and that their own writing on disability law and culture never made such a gendered assertion, citing examples across genders of fraudulent disability claims.
A Pew Research Center study evaluates three methods for identifying fraudulent respondents in online opt-in polls—trap questions, automated prescreening, and voter file matching—finding that while these approaches modestly improve data quality, none provides a reliable solution. All three methods slightly increased overestimation of Democratic support in 2024, primarily because bogus respondents tend to claim they voted for the winning candidate.
A journalist exploited a security loophole in music distribution to upload AI-generated music to the verified Spotify page of punk band Lathe of Heaven without authorization, demonstrating how scammers can hijack artists' accounts and collect royalties. The vulnerability has existed for years and is now being widely abused to flood streaming platforms with low-quality AI music impersonating legitimate artists.
Researchers demonstrate that dishonest LLM service providers can manipulate token generation to inflate user costs while maintaining task quality. They identify five attack methods and develop a lightweight black-box audit technique achieving 85.1% detection rates, flagging 7 of 15 tested API services for suspicious behavior.
StopReg is an email validation API that detects disposable and fraudulent email addresses to prevent signup abuse. It offers real-time validation through two endpoints (full email or domain-only), checks for disposable emails, role-based addresses, public providers, and MX records, with tiered pricing plans from 60,000 to 2.8 million monthly requests.
An ex-banker warns that AI agents increasingly handle real commerce—making payments, buying advertising, negotiating—but lack auditing systems to verify their actions. Drawing parallels to the 2008 financial crisis when unchecked numbers caused disaster, the author argues that without verification layers, fraud and mismanagement could proliferate at machine speed while businesses remain disconnected from the truth of their spending.
Raymond Love sued Wiley Book Writers, a Pakistan-connected publishing scam that promised services and distributions it never delivered, extracting over $40,000 through fake invoices, false affiliations with major publishers, and fraudulent book distribution schemes. Unlike most victims, Love won his case, exposing the elaborate network of shell companies and deceptive practices used to manipulate aspiring authors.
Content streaming providers must deploy advanced platforms to combat AI-generated deepfakes, which are increasingly used for financial fraud, blackmail, political manipulation, and impersonation. The article discusses deepfake prevalence across various sectors and argues that technology-based solutions, particularly next-generation streaming architectures, are essential to detect fakes and validate content authenticity.
Stripe data reveals AI startups face disproportionately high fraud rates, with attempted transaction fraud up to 4.3x higher than other startups and a 40% increase in multi-account abuse attempts over six months. Fraudulent actors target AI companies because their compute resources are valuable and easily resold, prompting companies to adopt fraud prevention tools like Stripe Radar.
A network of roughly 28 fraudulent dating apps used AI to catfish thousands of users, primarily men in their 30s, by impersonating women and extracting money. Security researchers at Anthropic discovered the scheme after detecting unusual API activity and presented findings at Sleuthcon; the apps remained live on major US app stores despite the fraud.
An investigation into Democratic political fundraising practices reveals that high-volume spam email campaigns disproportionately target elderly donors, with some seniors making thousands of donations totaling hundreds of thousands of dollars. The piece, originally developed for The New York Times, faced legal pressure from Democratic organizations and was ultimately killed before being rejected by The Bulwark over editorial disputes, prompting independent publication.
Apple Hong Kong's online checkout system contained a security gap that bypassed one-time password verification, enabling scammers to commit HK$25 million in fraudulent charges during a smartphone launch, with over 700 complaints filed in the first two days. The company allegedly omitted standard two-factor authentication to streamline user experience, potentially shifting fraud liability from banks to the merchant.
An ex-banker warns that AI agents now autonomously manage commerce—shopping, selling, buying ads, moving money—but operate without verification or auditing mechanisms. Drawing parallels to the 2008 financial crisis when unverified models enabled disaster, the author argues that commerce needs a verification layer to reconcile agent actions against actual bank settlements, not self-reported dashboards.
Anthropic released a report documenting disrupted misuse attempts of Claude between December 2025 and August 2026 across seven harm areas, with distillation by Chinese labs (DeepSeek, Moonshot, Xiaomi) identified as the most serious threat. The report reveals systematic efforts to extract Claude's capabilities without its safeguards, and separately, Trump declared AI existential risk a hoax comparable to climate change.
A critical commentary arguing that major AI companies' claims about risks and breakthroughs are fraudulent marketing tactics designed to inflate valuations, and that if AI truly posed existential threats or national security concerns, the government would seize these companies rather than allowing them to operate as normal corporations.