TL;DR
Fraudsters using AI voice cloning to impersonate senior executives stole €95 million from Fideuram, Intesa Sanpaolo's private banking arm, in one of the largest AI-enabled financial frauds on record.
What happened
- €95 million ($108 million) was stolen from Fideuram, the private banking division of Italy's largest lender, Intesa Sanpaolo.
- Attackers used AI-generated voice or messaging impersonation of senior executives to authorize or direct the fraudulent transfer.
- Sources describe the method as an AI-driven messaging scam, consistent with so-called "executive impersonation" or business email/voice compromise attacks.
- The event was reported on September 25, 2026, making it one of the most recent and largest confirmed AI fraud cases in European banking.
Why it matters
- €95 million in a single attack sets a new benchmark for AI-assisted financial crime, signaling that voice and identity cloning tools are now operationally mature enough for nine-figure heists.
- Private banking clients and high-value transfer workflows are now a primary target: the combination of large transaction sizes and relationship-based trust makes them acutely vulnerable to executive impersonation.
- European financial institutions face immediate reputational and regulatory pressure: Italy's banking regulator and EU supervisors will likely scrutinize internal controls at major lenders.
- The attack demonstrates that existing authentication protocols (call-backs, dual authorization, voice verification) failed or were bypassed, forcing a rethink of what counts as sufficient verification for large transfers.
- Competitors and peers across EU banking will now accelerate anti-deepfake and voice-authentication investment, turning this breach into a market catalyst for fraud-detection vendors.
What to watch next
- Regulatory response from Banca d'Italia and the ECB: whether supervisors mandate new AI-fraud controls across systemically important banks in the eurozone.
- Intesa Sanpaolo's disclosure and recovery actions: any clawback attempts, insurance claims, or internal control overhauls will signal how exposed other major lenders are to similar attacks.
- Copycat incidents: a successful €95 million heist is a proof-of-concept for criminal networks, so watch for a spike in executive-impersonation fraud targeting other European private banks in the following quarters.
Originally published on Present of AI, a daily source-linked AI news timeline. Read the full timeline or browse the open dataset.