US State Department warns of AI-powered deepfake impersonation targeting high-profile officials
An unknown actor used AI to impersonate Secretary of State Marco Rubio and reached out to at least five targets, including three foreign ministers, a US governor, and a congressman, aiming to steal information or hack accounts, a classified diplomatic cable reveals.
The impersonator created a fake Signal account mid-June, using the display name “[email protected]” to simulate the Secretary’s identity. The actor left voicemails and texts on Signal, trying to lure victims into conversation.
The cable warns diplomats globally to alert partners about this AI-driven cyber threat. The abuse is part of “two distinct campaigns” tracked within the State Department, where officials are impersonated via email and messaging apps to hack personal accounts.
According to the cable first reported by the Washington Post:
“The actor left voicemails on Signal for at least two targeted individuals, and in one instance, sent a text message inviting the individual to communicate on Signal.”
“The actor likely aimed to manipulate targeted individuals using AI-generated text and voice messages, with the goal of gaining access to information or accounts.”
The FBI is investigating the incident. This mirrors previous probes into FBI cases where senior US officials were impersonated, including efforts to mimic former President Trump’s chief of staff.
The State Department urges anyone approached by imposters posing as Rubio to report the attempts to the FBI’s Internet Crime Complaint Center. Internal staff are instructed to notify diplomatic security.
A State Department spokesperson said:
“The department takes seriously its responsibility to safeguard its information and continuously takes steps to improve the department’s cybersecurity posture to prevent future incidents.”
“For security reasons, and due to our ongoing investigation, we are not in a position to offer further details at this time.”
Meanwhile, a second campaign since April involves a Russia-linked hacker posing as a fake State Department official. This actor targeted personal Gmail accounts of think tank scholars, Eastern European activists, journalists, and former officials through spear phishing.
The hacker tried to trick victims into linking a third-party app to their Gmail, granting persistent access. The campaign showed deep knowledge of the Department’s internal terms and procedures.
CNN has contacted the FBI for comment.