Microsoft names cybercriminals behind AI deepfake network

Microsoft has named multiple threat actors part of a cybercrime gang accused of developing malicious tools capable of bypassing generative AI guardrails to generate celebrity deepfakes and other illicit content. Creators developed the tools that facilitated the misuse of AI-generated services, while providers adapted and distributed these illicit tools to end users who employed them to generate content violating Microsoft's Acceptable Use Policy and Code of Conduct, which was frequently focused on sexual imagery and celebrities. "Members of Storm-2139 exploited exposed customer credentials scraped from public sources to unlawfully access accounts with certain generative AI services," said Steven Masada, Assistant General Counsel at Microsoft's Digital Crimes Unit. A temporary restraining order and preliminary injunction issued after the initial filing allowed Microsoft to disrupt the group's ability to use its services illegally by seizing a key website part of the criminal ring's infrastructure. Microsoft's legal team also received multiple emails, including from several suspected members of Storm-2139 who blamed others in the operation for the malicious activity. An updated complaint identifies the individuals as Arian Yadegarnia from Iran (aka 'Fiz'), Alan Krysiak of the United Kingdom (aka 'Drago'), Ricky Yuen from Hong Kong, China (aka 'cg-dot'), and Phát Phùng Tấn of Vietnam (aka 'Asakuri'). Microsoft added that the seizure caused Storm-2139 members to turn on each other and speculate about who the "John Does" in the filings were. "We are pursuing this legal action now against identified defendants to stop their conduct, to continue to dismantle their illicit operation, and to deter others intent on weaponizing our AI technology," Masada added today. Microsoft found during the investigation that the Storm-2139 crime network is organized into three categories: creators, providers, and users. As the company explained today, these threat actors are key members of a global cybercrime gang that it tracks as Storm-2139.

This Cyber News was published on www.bleepingcomputer.com. Publication date: Thu, 27 Feb 2025 18:20:08 +0000


Cyber News related to Microsoft names cybercriminals behind AI deepfake network

Indian Government Warns Social Media Platforms Over Deepfake Misinformation - In a strong statement directed at social media platforms, the government of India has emphasized the critical need for swift identification and removal of misinformation, including deepfakes, or risk facing legal consequences. This warning follows a ...
2 years ago Cysecurity.news
Deepfake-Generating Apps Explode, Allowing Multimillion-Dollar Corporate Heists - Deepfake creation software is proliferating on the Dark Web, enabling scammers to carry out artificial intelligence-assisted financial fraud with previously unheard of creativity and scope. Consider what happened a few weeks back, when a Hong ...
2 years ago Darkreading.com
Microsoft Incident Response lessons on preventing cloud identity compromise - Microsoft Incident Response is often engaged in cases where organizations have lost control of their Microsoft Entra ID tenant, due to a combination of misconfiguration, administrative oversight, exclusions to security policies, or insufficient ...
2 years ago Microsoft.com
15 Best Bandwidth Monitoring Tools in 2025 - By providing real-time data on network usage, bandwidth monitoring tools enable proactive management and quick resolution of issues that could impact network performance. It provides real-time monitoring of network performance, traffic analysis, and ...
6 months ago Cybersecuritynews.com
Deepfake Awareness High, But Cyber Defenses Lag - The rise of deepfake technology has heightened awareness among cybersecurity professionals, yet many organizations struggle to implement effective defenses against these sophisticated threats. Deepfakes, which use artificial intelligence to create ...
4 months ago Darkreading.com
Deepfake attacks will cost $40 billion by 2027 - Now one of the fastest-growing forms of adversarial AI, deepfake-related losses are expected to soar from $12.3 billion in 2023 to $40 billion by 2027, growing at an astounding 32% compound annual growth rate. Deloitte sees deep fakes proliferating ...
1 year ago Venturebeat.com
America to offer compensation to victims of Deep Fake AI content - Deepfake technology has become a significant concern, producing computer-generated images, videos, and audio that mimic real individuals, leading to the dissemination of misleading and often absurd content. In response, the United States government, ...
1 year ago Cybersecurity-insiders.com
Network Protection: How to Secure a Network - Network security protects and monitors the links and the communications within the network using a combination of hardware, software, and enforced policies. Best practices for network security directly counter the major threats to the network with ...
1 year ago Esecurityplanet.com
Why Use a VLAN? Unveiling the Benefits of Virtual LANs in Network Security - Virtual Local Area Networks, or VLANs, serve as a critical computing technology designed for effective network traffic management. How VLANs function within a network environment revolves around effectively managing and directing network traffic. ...
2 years ago Securityboulevard.com
Deepfake Democracy: AI Technology Complicates Election Security - Recent events, including an artificial intelligence-generated deepfake robocall impersonating President Biden urging New Hampshire voters to abstain from the primary, serve as a stark reminder that malicious actors increasingly view modern generative ...
2 years ago Darkreading.com
New Wave of 'Scam-Yourself' Attacks Utilizing AI-Generated Videos With DeepFake - Despite the channel’s legitimate appearance—including repurposed content from TradingView—the unlisted tutorial video instructs viewers to activate a fictitious “AI-powered developer mode” that purportedly predicts cryptocurrency ...
11 months ago Cybersecuritynews.com
New Microsoft Incident Response guides help security teams analyze suspicious activity - Today Microsoft Incident Response are proud to introduce two one-page guides to help security teams investigate suspicious activity in Microsoft 365 and Microsoft Entra. These guides contain the artifacts that Microsoft Incident Response hunts for ...
2 years ago Microsoft.com
How to manage a migration to Microsoft Entra ID - Microsoft Entra ID, formerly Azure Active Directory, is not a direct replacement for on-premises Active Directory due to feature gaps and alternative ways to perform similar identity and access management tasks. For some organizations, a move to ...
2 years ago Techtarget.com
Artificial Intelligence Fuels New Wave of Complex Cyber Attacks Challenging Defenders - The O’Reilly 2024 State of Security Survey found 33% of enterprises lack staff capable of countering AI-driven threats, particularly in detecting adversarial machine learning patterns and securing generative AI deployments. While AI-driven threat ...
8 months ago Cybersecuritynews.com Ransomhub
Want to Foil an AI Deepfake? Tell It to Draw a Smiley Face - The Wall Street Journal article "Want to Foil an AI Deepfake? Tell It to Draw a Smiley Face" explores innovative methods to detect and counter AI-generated deepfake videos. Deepfakes, which use artificial intelligence to create hyper-realistic but ...
4 months ago Wsj.com
Deepfake Digital Identity Fraud Surges Tenfold, Sumsub Report Finds - Threat actors undertaking identity fraud have been using deepfakes ten times more in 2023 than in 2022, according to digital identity verification solutions provider Sumsub. In its third annual Identity Fraud Report, published on November 28, 2023, ...
2 years ago Infosecurity-magazine.com
More Than 100 Deepfake Ads Featuring British Prime Minister Spread On Facebook - Facebook scammers are constantly seeking new ways to fool users, and deepfake videos are at the very cutting edge. In addition to fraud, these fake doctored videos are increasingly being used to spread misinformation online. According to researchers ...
2 years ago Facecrooks.com
AI, Deepfakes and Digital ID: The New Frontier of Corporate Cybersecurity - iD. The emergence of deepfakes fired the starting pistol in a cybersecurity arms race. Deepfakes will intensify the already acute pressure placed on trust and communication in the public sphere. Because of this focus, what risks being missed is the ...
1 year ago Cyberdefensemagazine.com
Mastermind Behind Biden AI Deepfake Indicted for Robocall Scheme - A political consultant identified as the individual who paid for a deepfake robocall created to impersonate US President Joe Biden has been indicted on charges of felony voter suppression as well as misdemeanor impersonation of a candidate. Steven ...
1 year ago Darkreading.com
LastPass: Hackers targeted employee in failed deepfake CEO call - LastPass revealed this week that threat actors targeted one of its employees in a voice phishing attack, using deepfake audio to impersonate Karim Toubba, the company's Chief Executive Officer. While 25% of people have been on the receiving end of an ...
1 year ago Bleepingcomputer.com
Financially motivated threat actors misusing App Installer - Since mid-November 2023, Microsoft Threat Intelligence has observed threat actors, including financially motivated actors like Storm-0569, Storm-1113, Sangria Tempest, and Storm-1674, utilizing the ms-appinstaller URI scheme to distribute malware. In ...
2 years ago Microsoft.com Black Basta
Microsoft disrupts credentials marketplace, warns of gift card fraud, OAuth abuse - After a relatively quiet final Patch Tuesday of 2023, Microsoft published warnings this week about the potential for gift card fraud and hackers abusing a popular authentication technology. Alongside the warnings, Microsoft said it recently used a ...
2 years ago Therecord.media
Microsoft names cybercriminals behind AI deepfake network - Microsoft has named multiple threat actors part of a cybercrime gang accused of developing malicious tools capable of bypassing generative AI guardrails to generate celebrity deepfakes and other illicit content. Creators developed the tools that ...
11 months ago Bleepingcomputer.com
Microsoft names developers behind illicit AI tools used in celebrity deepfake scheme | The Record from Recorded Future News - “The seizure of this website and subsequent unsealing of the legal filings in January generated an immediate reaction from actors, in some cases causing group members to turn on and point fingers at one another,” said the blog post, written by ...
11 months ago Therecord.media
Deepfake Attacks Hit Two-Thirds of Organizations, Report Finds - Deepfake attacks have surged, impacting two-thirds of organizations globally, according to recent research. These sophisticated cyber threats leverage AI-generated synthetic media to deceive and manipulate victims, posing significant risks to ...
4 months ago Infosecurity-magazine.com