YouTube warns of phishing video using its CEO as bait

A TV remote pointing at YouTube logo
(Image credit: Getty Images / NurPhoto)

  • YouTube warns users of an ongoing phishing scam
  • The scam includes an AI-generated video of its CEO
  • Hackers are using stolen accounts to broadcast crypto scams

YouTube is warning its users of a new phishing campaign using an AI-generated video of its CEO Neal Mohan as bait.

In a post on its official community website, the company said it is “aware that phishers have been sharing private videos to send false videos, including an AI generated video of YouTube’s CEO Neal Mohan announcing changes in monetization.”

“YouTube and its employees will never attempt to contact you or share information through a private video. If a video is shared privately with you claiming to be from YouTube, the video is a phishing scam,” YouTube said in the pinned post. “Do not click these links as the videos will likely lead to phishing sites that can install malware or steal your credentials.”

Falling victim

The attack goes like this: scammers used AI to create a deepfake video of the YouTube CEO discussing changes in monetization on the platform. They then shared it as a private video with their targets. In the description of the video is a link that leads the victims to the phishing landing page - studio.youtube-plus[dot]com.

There, they’re prompted to “confirm the updated YouTube Partner Program (YPP) terms”, to continue monetizing their content and accessing YouTube’s features - but obviously, by “confirming” the terms, the victims would just be sharing their credentials with the attackers.

Furthermore, in true phishing fashion, crooks added a false sense of urgency, threatening the victims that their accounts will be restricted for a week if they do not comply with the new rules. That includes the inability to add videos, receive monetization, and more.

Once the victims enter their credentials, the page says the account is under review.

The campaign appears to have been active since late January 2025, and “many creators” have already fallen victim, reporting that their channels had been hijacked and used to broadcast live cryptocurrency scam streams.

Via BleepingComputer

You might also like

TOPICS

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

You must confirm your public display name before commenting

Please logout and then login again, you will then be prompted to enter your display name.

Read more
Smartphone with new logo X twitter app background. Application twitter old blue bird change X black and white new.
Phishing campaign targets prominent X users, accounts at risk
the YouTube logo on a screen in front of other YouTube logos covering a black background
Worrying YouTube security flaw exposed billions of user emails
Fraude en ligne phishing
Google forced to step up phishing defenses following ‘most sophisticated attack’ it has ever seen
botnet
YouTubers targeted by blackmail campaign to promote malware on their channels
A fish hook is lying across a computer keyboard, representing a phishing attack on a computer system
Everything you need to know about phishing
Phishing
Corporate executives are being increasingly targeted by AI phishing scams
Latest in Security
Data Breach
Thousands of healthcare records exposed online, including private patient information
China
Juniper patches security flaws which could have let hackers take over your router
Representational image depecting cybersecurity protection
GitLab has patched a host of worrying security issues
Ai tech, businessman show virtual graphic Global Internet connect Chatgpt Chat with AI, Artificial Intelligence.
AI agents can be hijacked to write and send phishing attacks
China
Volt Typhoon threat group had access to American utility networks for the best part of a year
Abstract image of cyber security in action.
MassJacker malware targets those looking for pirated software
Latest in News
Apple iPhone 16 Pro HANDS ON
Leaked iPhone 17 dummy units may have given us our best look yet at all four models
A super close up image of the Google Gemini app in the Play Store
It's official: Google Assistant will be retired for phones this year, with Gemini taking over
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 16 (game #1147)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Sunday, March 16 (game #378)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Sunday, March 16 (game #644)
Three iPhone 16 handsets on show
Apple could launch an iPhone 17 Ultra this year – but we've heard these rumors before