AI incident ·
Google Alleged Outsider Enterprise Used Gemini to Create Phishing Sites for Text-Message Scams
In brief
An AI system built by Google, Google Deepmind and 1 other and deployed by Scammers, Outsider Enterprise and 3 others allegedly harmed Google, Google Users and 5 others.
- Risk domain
- Not classified
- Occurred
- Coverage
- 3 reports
What happened
Google alleged in a civil lawsuit that the China-based network Outsider Enterprise used Gemini and other AI tools to help create phishing websites for large-scale text-message scams impersonating companies and government services. Google said the network coordinated through Telegram, generated thousands of fake sites and fraudulent URLs, sent 2.5 million Android messages during a two-week period in May 2026, and financially scammed hundreds of thousands of people.
Laws that address this harm
No recorded instrument yet addresses this use case where it happened. See the open queue.
Matched from the record's risk domain and country to the instruments recorded here. A reviewer can correct the match in the repository (data/external/incident_overrides.yaml).
News reports (3)
Titles link to the original publisher; report text is not reproduced here.
Who was involved
- Alleged deployer
- Scammers, Outsider Enterprise, Scammers In China, Cybercriminals, Cybercriminals In China
- Alleged developer
- Google, Google Deepmind, Large Language Model Developers
- Alleged harmed party
- Google, Google Users, Android Users, Consumers, E Zpass, United States Postal Service, Youtube
Classification (MIT AI Risk Repository taxonomy)
- Risk domain
- —
- Risk subdomain
- —
- Causal entity
- —
- Intent
- —
- Timing
- —
- Harm level
- —
- Sectors
- —
- Countries
- —
Source record: incident #1534 on the AI Incident Database · all 3 reports