Detect Deepfakesby Resemble AI
Deepfake case study · Audio

AI Voice Phishing Attempts Target Major Hedge Funds as…

Major hedge funds including Citadel and Point72 recently faced attempted cyber intrusions utilizing AI-generated voice phishing to target sensitive…

Incident date
Aug 2026
Target
Point72 Asset Management, Millennium Management, Two Sigma Investments, and Citadel
Updated Aug 7, 2026 · 1 min read

Several of the world’s largest hedge funds, including Point72 Asset Management, Millennium Management, Two Sigma Investments, and Citadel, were recently targeted by attempted cyber intrusions involving AI-generated voice impersonation. The campaign highlights a growing trend where sophisticated generative AI tools are being deployed to accelerate and scale traditional social engineering tactics.

What happened

The incidents involved a technique known as vishing, or voice phishing, where fraudsters utilized AI tools to replicate the voices, tones, and speech patterns of employees or executives. These cloned voices were used in an attempt to manipulate colleagues into granting access to sensitive systems or proprietary information. Two Sigma confirmed that its security team successfully detected and stopped the intrusion attempt before any data or systems were compromised. While Point72, Millennium, and Citadel declined to comment, industry experts noted that the use of generative AI has significantly increased the efficiency of these operations, allowing attackers to target hundreds or thousands of organizations more rapidly than previously possible. Cybersecurity analysts observed that these AI tools are primarily accelerating existing threats, making sophisticated deception techniques more accessible to threat actors. In response to the rising risk of deepfake-related fraud, the Financial Industry Regulatory Authority (FINRA) has increased communication with member firms, and industry leaders are expanding collaborative efforts like the Alliance for Critical Infrastructure to share intelligence on AI-related risks and coordinate cybersecurity safeguards.

Sources