Nomani Investment Scam Surges 62% Using AI Deepfake Ads on Social Media
嗯,用户让我帮忙总结一下这篇文章的内容,控制在100个字以内。首先,我需要仔细阅读文章,抓住主要内容和关键点。 文章主要讲的是一个叫做Nomani的网络欺诈投资计划,它利用社交媒体和AI生成的视频来欺骗用户投资不存在的产品。根据ESET的数据,这个骗局增加了62%,并且已经扩展到了YouTube等其他平台。他们还提到了骗子如何通过虚假的政府投资新闻来增加可信度,并且不断升级技术手段,比如使用更高分辨率的深度伪造视频。 此外,文章还提到Meta平台上有相当一部分广告收入来自非法内容,包括这种欺诈广告。最后,尽管检测数量有所下降,但整体情况依然严峻。 接下来,我需要把这些信息浓缩到100字以内。重点包括:Nomani骗局的增长、使用AI和社交媒体、扩展到其他平台、利用虚假政府新闻、Meta的广告问题以及整体情况依然严峻。 确保语言简洁明了,不使用复杂的术语。同时,按照用户的要求,不需要以“文章内容总结”之类的开头,直接描述即可。 最后检查一下字数是否符合要求,并确保所有关键点都涵盖在内。 </think> Nomani是一种利用社交媒体和AI生成视频的投资骗局,已增长62%,扩展至YouTube等平台。骗子通过虚假政府投资新闻和深度伪造技术欺骗用户投资并索要额外费用或个人信息。尽管检测数量有所下降,但整体情况依然严峻。 2025-12-24 13:8:0 Author: thehackernews.com(查看原文) 阅读量:4 收藏

Online Fraud / Artificial Intelligence

The fraudulent investment scheme known as Nomani has witnessed an increase by 62%, according to data from ESET, as campaigns distributing the threat have also expanded beyond Facebook to include other social media platforms, such as YouTube.

The Slovak cybersecurity company said it blocked over 64,000 unique URLs associated with the threat this year. A majority of the detections originated from Czechia, Japan, Slovakia, Spain, and Poland.

Nomani was first documented by ESET in December 2024 as leveraging social media malvertising, company-branded posts, and artificial intelligence (AI)-powered video testimonials to deceive users into investing their funds in non-existent investment products that falsely claim significant returns.

When victims request payout of the promised profits, they are asked to pay additional fees or provide additional personal information, such as ID and credit card information. As is typical of investment scams of this kind, the end goal is financial loss.

Cybersecurity

It doesn't end there, for the fraudsters attempt to scam them again by making use of Europol- and INTERPOL-related lures on social media that promise assistance with getting their stolen funds back -- only to lose more money in the process.

ESET said the scam has since received some notable upgrades, including making their AI-generated videos more realistic in an effort to make it harder for prospective targets to spot the deception.

"Deepfakes of popular personalities, used as initial hooks for phishing forms or websites, now use higher resolution, have significantly reduced unnatural movements and breathing, and have also improved their A/V sync," the company noted.

The fabricated content has been found to often leverage topical events or personalities who are more widely seen in the public discourse to lend more credibility to the scheme. In one case observed in Czechia, a bogus news article falsely claimed the government was investing through one of its scam cryptocurrency platforms and generating substantial returns.

To ensure that their malicious ads are not caught by the platform's systems, the threat actors make sure that the campaigns are run only for a few hours. Another important change involves redirecting users to benign cloaking pages instead of external phishing forms in case they don't meet the targeting criteria.

"To further lower their footprint, attackers increasingly abuse legitimate tools offered by the social media ad framework, such as forms and surveys instead of external webpages, to harvest victims' information," ESET said.

Improvements have also been observed in the templates used to generate phishing pages, with signs pointing to the use of AI tools to write the HTML code. This assessment is based on the presence of checkboxes in source code comments. Furthermore, GitHub repositories hosting such templates for investment scams have come from Russian and/or Ukrainian users.

Despite these changes, the number of detections for Nomani in the second half of 2025 dropped, an indication that the attackers are likely being forced to revamp their tactics in the face of increased law enforcement efforts to combat such scams.

Cybersecurity

"On the bright side, although overall detections are up compared to 2024, there's a hint of improvement, as H2 2025 detections have declined by 37% compared to H1 2025," ESET said.

The disclosure coincides with a new investigation from Reuters that found 19% of Meta's $18 billion in ad sales in China last year came from ads for scams, illegal gambling, pornography, and other banned content that are run by the company's ad agency partners in the country. Some of these agencies allow businesses to run banned advertisements. Following the report, Meta is said to have put the program under review.

The latest report comes on the heels of another Reuters report that revealed the company projected earning 10% of Meta's global revenue for 2024 – or about $16 billion – from such ads, including those run by threat actors behind Nomani, quantifying the humongous scale of the problem.

Found this article interesting? Follow us on Google News, Twitter and LinkedIn to read more exclusive content we post.


文章来源: https://thehackernews.com/2025/12/nomani-investment-scam-surges-62-using.html
如有侵权请联系:admin#unsafe.sh