HomeIntelligenceBrief
BREACH BRIEF🟠 High ThreatIntel

Scammers Use Deepfake Catfishing to Defraud OnlyFans Creators and Their Fans

Criminals are deploying AI‑generated deepfake videos to impersonate OnlyFans creators, tricking fans into paying via Cash App and then vanishing. The incident highlights the need for robust security awareness and SOC 2‑aligned phishing controls.

LiveThreat™ Intelligence · 📅 August 07, 2026· 📰 malwarebytes.com
🟠
Severity
High
TI
Type
ThreatIntel
🎯
Confidence
High
🏢
Affected
3 sector(s)
Actions
2 recommended
📰
Source
malwarebytes.com

Scammers Use Deepfake Catfishing to Defraud OnlyFans Creators and Their Fans

What Happened — Criminals are leveraging AI‑generated deepfake videos and synthetic voices to impersonate popular OnlyFans creators on platforms such as TikTok and Snapchat. They lure fans with promises of live, exclusive content, collect payments via Cash App, and then disappear, leaving victims out of pocket and creators facing reputational damage.

Why It Matters for Compliance & Audit Readiness

  • This attack exemplifies a social‑engineering scenario that SOC 2 Security (CC6.1) and Privacy (CC6.2) controls are designed to mitigate through documented awareness programs and incident‑response evidence.
  • Continuous monitoring of phishing‑resistance controls and proof of employee/creator training can serve as audit‑ready evidence that the organization actively manages the risk of AI‑enabled fraud.
  • Verisq’s Security Awareness Training capability helps embed the required policies, track completion, and generate the evidence needed for a defensible SOC 2 audit.

Who Is Affected – Adult‑content creator platforms, influencer‑marketing services, and their fan communities (media/entertainment sector).

Recommended Actions

  • Map the deepfake phishing scenario to SOC 2 CC6.1 (Security) and CC6.2 (Privacy) controls; verify that awareness training, phishing simulations, and incident‑response playbooks are up to date.
  • Collect evidence of training completion, simulated‑phishing test results, and any takedown requests as part of continuous compliance documentation.

Technical Notes — Attack vector: AI‑generated deepfake media delivered via social‑media channels (phishing). No specific CVE; the threat relies on publicly available generative AI tools and peer‑to‑peer payment services (Cash App). Source: Malwarebytes Labs

📰 Original Source
https://www.malwarebytes.com/blog/news/2026/08/scammers-target-onlyfans-users-with-deepfakes

This LiveThreat Intelligence Brief is an independent analysis. Read the original reporting at the link above.

From the Verisq platform · Security Awareness

Awareness is a control you can evidence too.

Verisq AI Trust Operations records training completion and policy adoption as audit evidence — turning 'we train our staff' into something you can actually prove.

See how Verisq AI Trust Operations covers awareness →