YouTube Creators Targeted in AI Deepfake Phishing Scam!

A new phishing scam is targeting YouTube creators using AI-generated deepfake videos of YouTube CEO Neal Mohan. Attackers trick creators into sharing login credentials by pretending to send a private video about monetization updates. Once hacked, accounts are used for scams and malware attacks.
- Fake Emails from “YouTube” – Creators receive emails with a private video link claiming to contain important monetization updates.
- AI Deepfake Scam – The video features a fake Neal Mohan instructing users to log in via a fraudulent website (studio.youtube-plus[.]com).
- Credential Theft – Hackers steal Google account details and 2FA codes, taking full control of YouTube channels.
- Malware Infection – Some victims unknowingly install malware like Lumma Stealer, which collects sensitive data.
- Massive Impact – Over 200,000 creators worldwide have been targeted, with phishing emails sent through 340+ hacked servers.
How to Stay Safe:
- Check URLs carefully – YouTube’s real links use youtube.com or youtube.google.com.
- Never trust private video requests – YouTube does not send private videos for policy updates.
- Enable Strong 2FA – Use a hardware security key instead of SMS-based authentication.
- Monitor Google Account Security – Check for unauthorized access and revoke suspicious sessions.
- Avoid downloading attachments – Attackers often send malicious ZIP files disguised as “collaboration proposals.”
Cybercriminals are using AI deepfakes to make scams more convincing than ever. YouTube creators must stay vigilant and verify all communication before taking action. Always double-check URLs, enable strong security measures, and report phishing attempts to protect your account.
Comment(s)
Categories
- Other (42)
- Ransomware (151)
- Events and News (27)
- Features (45)
- Security (478)
- Tips (79)
- Google (24)
- Achievements (11)
- Products (34)
- Activation (7)
- Dealers (1)
- Bank Phishing (45)
- Malware Alerts (220)
- Cyber Attack (271)
- Data Backup (12)
- Data Breach (107)
- Phishing (160)
- Securty Tips (2)
- Browser Hijack (19)
- Adware (15)
- Email And Password (69)
- Android Security (71)
- Knoweldgebase (38)
- Botnet (16)
- Updates (3)
- Alert (71)
- Hacking (58)
- Social Media (8)
- vulnerability (59)
- Hacker (32)
- Spyware (11)
- Windows (6)
- Microsoft (21)
- Uber (1)
- YouTube (1)
- Trojan (3)
- Website hacks (6)
- Paytm (1)
- Credit card scam (1)
- Telegram (3)
- RAT (5)
- Bug (3)
- Twitter (2)
- Facebook (7)
- Banking Trojan (7)
- Mozilla (2)
- COVID-19 (5)
- Instagram (2)
- NPAV Announcement (9)
- IoT Security (1)
- Deals and Offers (2)
- Cloud Security (12)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (2)
- WhatsApp (5)
- Amazon (2)
- DMart (1)
- Payment Risk (4)
- Occasion (3)
- firewall (2)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (12)
- Impersonation phishing (1)
- DDoS (7)
- Smishing (2)
- Whale (0)
- Whale phishing (4)
- WINRAR (2)
- ZIP (2)
Recent Posts
Archive
Tags
cyber attack
phishing
data breach
phishing attacks
cyber threats
ransomware
phishing attack
ransomeware
malware
data theft
android malware
phishingattack
cybersecurity
cyberthreats
data protection
cyber security
credential theft
financial security
data stealing
cybercrime
phishing scam
cybersecurity threats
network security
ddos attack
trojan
cyber threat
financial fraud
phishing email
microsoft
lockbit
cybercriminals
net protector total security
cyber crime
ddos
cert-in
twitter
data security
critical vulnerability
india
cyber fraud
cyberattack
pakistan-backed hacker
malicious apps
email phishing
server security
clop
ransomware attacks
credit card theft
winrar
databreach