Radar · 02/08/2026 · happened on 31/07/2026 · security

OpenAI Shuts Down Criminal Operation in Cambodia Using ChatGPT for Scams and Romance Fraud

OpenAI has shut down a criminal operation based in Cambodia that was using ChatGPT to generate content for investment fraud, romance scams, gambling schemes, and identity theft. The report describes how the model was being used within an actual criminal pipeline: the scammers deployed it to produce multilingual texts, scripts for luring conversations, and content for fake brokerage websites.

Why this matters to you. Operational AI security has real costs. OpenAI had to identify abuse patterns across millions of calls, distinguish a clumsy user from a fraud operator, and shut down accounts without catching false positives. If you manage a product with AI access, the problem is the same at smaller scale: understanding where legitimate use ends and abuse begins, and having a plan for when it happens.

This is the operational face of the governance OpenAI just formalized for Europe: policy matters when it stops a criminal organization, not when it stays a document.

In detail

Fraud operations based in Cambodia and Southeast Asia are an established criminal phenomenon, known as “pig butchering”: scammers build trust relationships with victims over weeks or months, then lead them to invest on fake platforms from which money never returns. What’s new in OpenAI’s report is that ChatGPT entered the chain as a production tool, not as the direct counterpart to the victim.

The scammers used the model for three concrete things. First, generating conversation scripts in multiple languages: Italian, English, Mandarin, Tagalog, ready to paste into chat with victims. Second, producing content for fake brokerage websites: descriptions of financial products, invented testimonials, blog articles that gave credibility to fraudulent platforms. Third, writing follow-up messages to re-engage victims who had stopped responding.

From a technical standpoint, detection relies on anomalous usage patterns. OpenAI doesn’t reveal the precise detection details (that would be a manual for circumventing it), but the general picture is what anyone managing an API knows: volume spikes wildly out of scale for a single account, content generated in languages that don’t match the declared profile, repetition of prompt structures indicating a luring workflow. The boundary between intensive use and fraudulent use is the hard part, and a false positive means closing a legitimate customer’s account.

What the report doesn’t say. No numbers on victims, financial losses, or accounts involved. We don’t know if scammers were using the direct API, ChatGPT Plus, or resold keys from the parallel market of AI tokens we covered in July. We don’t know how long it took to identify them, or whether OpenAI’s shutdown actually stopped the operation or just pushed scammers to another model.

The most interesting limitation is this: shutting down an account on a proprietary platform is feasible; stopping the criminal operation is harder. If scammers have skill and capital, they move to local open-weight models, where no provider can lock them out. The report shows OpenAI can clean its own platform, not that it can eliminate crime. For anyone building AI tools, the lesson is that operational security has two faces: it protects potential victims and protects you from liability for being the means.

Type to search across course, playbooks, skills, papers…