AIPolicyTracker

AI incident ·

Purported Face‑Swap Technology Reportedly Used to Circumvent Financial Platform's Facial Recognition Security in Nanjing, China

2 news reports Synced from source · record last edited 4 Sep 2026

In brief

An AI system built by Synthetic video generation technology developers, Synthetic media generation technology developers and 2 others and deployed by Synthetic media creators, Fu Mou and 2 others allegedly harmed Unnamed financial payment platform, Individuals affected by compromise of 1.95 million+ personal records and 1 other.

Risk domain
Malicious Actors & Misuse Fraud, scams, and targeted manipulation
Occurred
Coverage
2 reportsJul 2025

What happened

In Nanjing, Jiangsu Province, a defendant (Fu Mou) was convicted in October 2024 for allegedly using AI‑powered face‑swap software to bypass an unnamed financial platform's facial recognition system. Authorities reported that he obtained over 1.95 million pieces of personal data, accessed 23 victims' payment accounts, changed passwords for several, and used one linked bank card to make purchases. Prosecutors said only one platform was successfully breached.

Editor's notes

Timeline note: The reporting indicates that the suspect in the case was sentenced in October 2024. The incident ID date of 10/15/2024 is an approximation. Public reporting on this incident appears to have emerged on 07/18/2025. Suspect name note: Chinese legal reporting often partially anonymizes defendants' names by publishing only the surname followed by the character 某 (Mou), meaning "a certain" or "someone." In this case, the reported perpetrator is identified as 符某 (Fu Mou), indicating that the surname is Fu but the given name has not been disclosed.

Laws that address this harm

Policy angle: Classified under Malicious Actors & Misuse (Fraud, scams, and targeted manipulation) in the MIT AI Risk Repository taxonomy; 5 recorded instruments address this use case.

Matched from the record's risk domain and country to the instruments recorded here. A reviewer can correct the match in the repository (data/external/incident_overrides.yaml).

News reports (2)

Titles link to the original publisher; report text is not reproduced here.

  1. “AI換臉”可以繞過人臉識別防線?
    big5.cctv.com · 央视网, CCTV Online

Who was involved

Alleged harmed party
Unnamed financial payment platform Individuals affected by compromise of 1.95 million+ personal records 23 unnamed victims whose payment accounts were accessed

AI systems implicated

Synthetic video generation technologySynthetic media generation technologyFinancial payment platformsFace-swap technologyDeepfake technologyAI-enabled decision support systems

Classification (MIT AI Risk Repository taxonomy)

Causal entity
Human
Intent
Intentional
Timing
Post-deployment
Harm level
—
Sectors
—
Countries
—

Risk entries describing this failure mode

Entries from the MIT AI Risk Repository coded to subdomain 4.3.

  • Cheating/plagiarism

    "Cheating/plagiarism - Use of another person’s or group’s words or ideas without consent and/or acknowledgement."

    A Collaborative, Human-Centred Taxonomy of AI, Algorithmic, and Automation Harms (Abercrombie2024)

  • IP/copyright loss

    "IP/copyright loss - Misuse or abuse of an individual or organisation’s intellectual property, including copyright, trademarks, and patents."

    A Collaborative, Human-Centred Taxonomy of AI, Algorithmic, and Automation Harms (Abercrombie2024)

  • Financial and business

    "Financial and Business - Use or misuse of a technology system in a manner that damages the financial interests of an individual or group, or which causes strategic, operational, legal or financial harm to a business or...

    A Collaborative, Human-Centred Taxonomy of AI, Algorithmic, and Automation Harms (Abercrombie2024)

  • Impersonation/identity theft

    "Impersonation/identity theft - Theft of an individual, group or organisation’s identity by a third-party in order to defraud, mock or otherwise harm them."

    A Collaborative, Human-Centred Taxonomy of AI, Algorithmic, and Automation Harms (Abercrombie2024)

  • Dehumanisation/objectification

    "Dehumanisation/objectification - Use or misuse of a technology system to depict and/or treat people as not human, less than human, or as objects."

    A Collaborative, Human-Centred Taxonomy of AI, Algorithmic, and Automation Harms (Abercrombie2024)

  • Defamation/libel/slander

    "Defamation/libel/slander - Use of a technology system to create, facilitate or amplify false perception(s) about an individual, group, or organisation."

    A Collaborative, Human-Centred Taxonomy of AI, Algorithmic, and Automation Harms (Abercrombie2024)

  • Misinformation and Manipulation

    "Recent studies have demonstrated that LLMs can be exploited to craft deceptive narratives with levels of persuasiveness similar to human-generated content (Pan et al., 2023b; Spitale et al., 2023), to fabri- cate fake n...

    Foundational Challenges in Assuring Alignment and Safety of Large Language Models (Anwar2024)

  • Cybersecurity

    "LLMs may exacerbate cybersecurity risks in various ways (Newman, 2024). Firstly, LLMs may significantly amplify the effectiveness of deceptive operations aimed at tricking people into disclosing sensitive information or...

    Foundational Challenges in Assuring Alignment and Safety of Large Language Models (Anwar2024)

Linked by editors or by text similarity in the source dataset.

Incidents in the same risk subdomain

All incidents in this subdomain

Other incidents involving Synthetic media creators

Source record: incident #1163 on the AI Incident Database · all 2 reports