惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

GbyAI
GbyAI
WordPress大学
WordPress大学
D
DataBreaches.Net
腾讯CDC
小众软件
小众软件
B
Blog RSS Feed
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
T
The Blog of Author Tim Ferriss
MongoDB | Blog
MongoDB | Blog
U
Unit 42
Y
Y Combinator Blog
V
V2EX
I
InfoQ
D
Docker
量子位
N
Netflix TechBlog - Medium
Recent Announcements
Recent Announcements
A
About on SuperTechFans
博客园 - 叶小钗
大猫的无限游戏
大猫的无限游戏
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
B
Blog
阮一峰的网络日志
阮一峰的网络日志
MyScale Blog
MyScale Blog

Cyber Security News

AIRecon: AI-Powered Penetration Testing Tool with Kali Linux Sandbox Critical Chrome Vulnerabilities Allow Attackers to Execute Arbitrary Code - Update Now! Hackers Use Rokarolla Android Malware to Disable Google Play Protect and Control Devices UNC3753 Uses Screen-Sharing Sessions and RMM Tools to Exfiltrate Sensitive Legal Data New OnionDrop Loader Campaign Uses gainmsg C2 to Deliver LegionLoader Payloads ClickFix Campaign Uses EtherHiding and GULoader to Infect Windows Users via Fake CAPTCHA Ghostwriter Hackers Abuse Gmail Admin-Themed Emails to Steal Credentials and 2FA Codes The Half-Life of Threat Intelligence: When Does an IOC Stop Being Useful? Critical Fortinet FortiSandbox Vulnerabilities Actively Exploited in Attacks Aembit Extends IAM for Agentic AI to Microsoft Copilot Studio India Temporarily Bans Telegram Messenger Over Medical Exam Fraud Microsoft 365 Device Code Phishing Campaign Bypasses Password Theft With Legitimate Login Flow AppViewX Launches Agent Identity Security to Govern Agents for the AI and Quantum Era Hackers Weaponize Microsoft Teams Relay to Hide Ransomware Traffic Developer laptops are the credential store attackers are picking through in 2026, GitGuardian announces Endpoint Protection Interlock and Rhysida Ransomware Operations Share Supper Backdoor and Malware Codebase Novo Nordisk Confirms Cyber Attack — Hackers Accessed Patient Medical Data and Internal AI Assets Russian and Chinese Influence Actors Use AI to Evade Bot Detection and Mimic Human Behavior Microsoft Teams Analyze the Wi-Fi Hotspot Data Connected to an Employee’s Device PRC-Nexus Hackers Exploit REDCap Servers to Spy on US Medical Research Institutions Infinite Campus Data Breach Exposes 137,000 Users Personal Details OptinMonster Plugin Hack Exposes 1.2 Million Wordpress Sites to Cyberattack Ransomware Ecosystem Consolidates Around LockBit Alumni, Qilin, Hyflock, and The Gentlemen Hackers Abuse Legitimate RMM Tools in The Quarry IRS and SSA Phishing Campaigns LiteSpeed cPanel Plugin 0-Day Vulnerability Actively Exploited in the Wild Cisco SD-WAN vManage Vulnerability Exploited in Zero-Day Attacks Nearly 14,000 SimpleHelp Servers Exposed Amid Critical Authentication Bypass Disclosure Microsoft Site Showing Warning Following Certificate Expiry DPAPISnoop Tool Extracts CREDHIST Hashes for Offline Windows Credential Recovery SHADOWBYT3$ Allegedly Claim Breach of Nintendo, Stealing Sensitive Data
Google Sues Chinese Cybercrime Network for Using Gemini A...
Guru Baran · 2026-06-12 · via Cyber Security News

Google has filed a landmark lawsuit against a China-based cybercrime network called the “Outsider Enterprise,” marking the first time the tech giant has legally pursued threat actors for weaponizing its own Gemini AI platform to conduct large-scale phishing campaigns against U.S. consumers.

The Outsider Enterprise operates as a sophisticated phishing-as-a-service (PhaaS) platform, coordinating operations through Telegram channels and distributing ready-made phishing kits to criminal affiliates.

The network enables criminals with minimal technical expertise to rapidly deploy convincing scam websites impersonating Google, YouTube, the U.S. Postal Service, financial institutions, state DMVs, toll agencies like New York’s E-ZPass, and other trusted brands using a library of over 290 prebuilt templates.

Gemini Weaponized for Cyberattacks

What distinguishes this operation from conventional phishing infrastructure is its deliberate abuse of AI. According to Google’s complaint, members of the Outsider Enterprise actively encouraged one another to use Gemini to generate custom code for phishing websites, which was then imported directly into the Outsider software suite and converted into live scam pages, General Counsel DeLaine said to The New York Times.

The Enterprise effectively industrialized fraud by reducing the technical barrier to near-zero, turning Google’s own generative AI into a malicious code factory.

The scope of damage is staggering:

  • 2.5 million smishing messages were sent to Android users in just a two-week period in May 2026.
  • 55,000 spam texts were flagged by Android users during that same two-week window, with more than two complaints per minute.
  • 9,000+ fake websites and over 1 million fraudulent URLs tied to the network.
  • Hundreds of thousands of victims were financially defrauded, with total losses estimated in the millions.

Google filed the complaint in the U.S. District Court for the Southern District of New York, seeking damages and injunctive relief under the Racketeer Influenced and Corrupt Organizations (RICO) Act and the Lanham Act.

The FBI’s Cyber Division is conducting parallel law enforcement actions, with Assistant Director Brett Leatherman acknowledging that criminals “increasingly use AI to make fraud more convincing and harder to detect.” Google is simultaneously working with AT&T, T-Mobile, and Verizon to intercept and block fraudulent messages at the carrier level before they reach end users.

Google is backing seven bipartisan bills targeting AI-driven scams, including the Stop SCAMS Act championed by Congressmen Brian Fitzpatrick and Josh Harder, which would create a national coordinated strategy uniting law enforcement, government agencies, and private industry to combat transnational cybercrime rings.

On the product side, Google’s AI-powered scam detection on Android actively flags suspicious conversations during calls, while built-in messaging defenses currently intercept more than 10 billion malicious messages monthly. The company has also disabled Gemini accounts and infrastructure confirmed to be linked to abuse of the model.

This lawsuit sets a significant legal precedent: AI platforms can and will be used as enforceable grounds for civil litigation when threat actors abuse generative models to scale criminal infrastructure, signaling a new front in the fight against AI-enabled cybercrime.

Follow us on Google NewsLinkedIn, and X to Get More Instant Updates.

Guru Baran

Guru Baranhttps://cybersecuritynews.com

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.