En.Bloomingbit AI Voice Phishing Attacks Target Major Wall Street Hedge Funds
Article Content
- •Major hedge funds including Point72, Citadel, and Two Sigma were targeted in vishing attacks.
- •AI technology was used to clone voices, tricking employees into revealing sensitive information.
- •No successful breaches have been reported, but the incidents highlight a significant increase in cyber threats.
A wave of AI-driven voice phishing attacks, known as vishing, has targeted major hedge funds including Point72, Citadel, and Two Sigma. The attackers used AI-generated voices to impersonate executives and manipulate employees into granting access to sensitive systems. Point72 confirmed it was attacked but reported no client data was compromised. Two Sigma successfully thwarted the attack without any data loss. The incidents reflect a growing trend where AI tools enable cybercriminals to scale their operations significantly, allowing them to target thousands of organizations simultaneously. Cybersecurity experts warn that the cost of executing such attacks has decreased, making them more accessible to less experienced hackers. The Financial Industry Regulatory Authority (FINRA) has been alerted about the breaches and has initiated a response. The overall impact on the hedge funds remains under review as investigations continue.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (43)
Following this threat?
Track Pink and Aflac in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Vishing Attacks Target Executives for Microsoft 365 Data Theft A wave of data theft and extortion targeting Microsoft 365 and other SaaS accounts has emerged, tracked by Arctic Wolf as PREY-0058. The attackers use vishing calls impersonating IT help desk staff to trick executives into providing credentials and multi-factor authentication (MFA) approvals. This method involves…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…