**AI-Generated Scams and Data Breaches Hit Global Tech Industry**
A spate of cyberattacks and data breaches has rocked the tech industry in recent weeks, with several high-profile companies falling victim to sophisticated scams and hacking campaigns. From AI-generated fake personas to supply chain attacks and phishing emails, the threat landscape continues to evolve at an alarming rate.
One of the most notable incidents involved a network of ChatGPT accounts linked to a Cambodia-based operation that used the AI model to run investment, romance, gambling, and law enforcement impersonation scams. The scammers generated fake personas, translated messages, created promotional images, and forged documents to trick victims into handing over sensitive information or cash. OpenAI took swift action, banning the coordinated set of ChatGPT accounts in an effort to disrupt the scam network.
In a separate incident, Amgen, a leading biotech company, confirmed that data had been stolen from its cloud environments. The breach, which occurred in July 2026, involved unauthorized access to proprietary information and patient protected health information. While the company has stated that there is no impact on products, manufacturing, or financial systems, the incident highlights the growing threat of cloud-based attacks.
Meanwhile, Apple has introduced a new cap on bug bounty reports after a surge of low-quality, AI-hallucinated reports flooded its submission system. The move aims to prevent researchers from submitting fake vulnerabilities that can bury legitimate findings. Cybersecurity firm Bynario was one of the first companies to hit the new limit, using ChatGPT to surface over 50 macOS issues, including a privilege-escalation exploit.
The US government is also taking action to address the growing threat of data breaches and supply chain attacks. The FCC is drafting rules that would block imports of new Chinese optical transceivers used inside data centers, citing concerns about data theft, malware, or service disruption in AI infrastructure. While the move aims to reduce risks, it may also drive up costs for cloud operators as they shift suppliers.
In other developments, a supply chain compromise of the QuickFox VPN and game-accelerator app delivered a trojanized Electron installer that executed a JavaScript loader and installed the FDMTP implant on Windows systems. The loader used process-based guardrails to avoid Steam users and prefer endpoints running development, database, or crypto tools before downloading the next stage.
**Practical Takeaway**
The recent spate of cyberattacks and data breaches serves as a stark reminder of the importance of robust cybersecurity measures. As AI-generated scams and hacking campaigns become increasingly sophisticated, it’s essential for companies to stay vigilant and invest in comprehensive security solutions. Individuals can also take steps to protect themselves by being cautious when interacting with online services, using strong passwords, and staying up-to-date on the latest software updates and patches. By working together, we can mitigate the impact of these attacks and create a safer digital landscape.
Source: SecurityWeek — 2026-08-07