What we found
- Single primary source, but it is an official FBI/IC3 public service announcement published directly by the issuing agency.
- The advisory is dated and identified as an update to an earlier numbered alert, indicating an ongoing, tracked scheme rather than a one-off report.
- Mechanics are described in operational detail (contact channels, platform hops, fake form fields), which matches the specificity expected of first-hand complaint data.
- No corroborating press or community reporting was harvested, so scale and current status cannot be cross-checked.
- Reviewed by 1 model from independent houses.
- This is a higher-risk finding. Our rule asks for 2 independent reviews before we state full confidence; 1 returned.
- Confidence is shown as moderate for that reason, not because the evidence is weaker.
What we don’t know
- The domain names or URLs of the spoofed IC3 lookalike sites, and whether they remain reachable.
- Which social media platforms hosted the AI-generated videos and impersonation pages, and whether the accounts have been removed.
- How many people have been contacted or revictimized, and the aggregate financial loss attributed to this scheme.
- Whether the harvested data has been observed in downstream fraud (account takeover, further recovery-fee demands) or resold.
- Whether the malicious links distributed via Messenger and Telegram deliver a specific malware family or only credential and data collection pages.
- The geographic scope of targeting and whether non-US residents are being approached with the same script.
The bench — who voted
The card names a count. Here are the seats behind it, with what each one said.
Reviewed by 1 independent model; it judged the finding to go beyond the evidence.
▼ Protocol & challenge record
ON THE RECORDI do not accept the 'high' confidence as written. The draft's own fourth confidence_reason states that no corroborating reporting was harvested and that scale and current status cannot be cross-checked. That is a reason to lower confidence, not a footnote under a high rating. An official primary source establishes what the agency said; it does not establish that the described campaign is active today, at any particular scale, or that the described infrastructure is still reachable. Confidence should be scoped: high on the existence and content of the advisory, unknown on everything downstream of it.
ON THE RECORDThe most serious problem in this draft is not a citation gap, it is a safety-advice defect. By deleting the PSA's own carve-out that 'individuals will be contacted by FBI employees from local field offices or other law enforcement officers,' and then adding an unsourced closing line telling readers to treat any contact 'claiming to be FBI or IC3 staff' as a second attempt on their wallet, the draft gives advice the source does not give and that the source in fact qualifies. A reader who follows it could stonewall a legitimate field-office callback. An unsourced sentence (row_ids: []) that contradicts a clause the draft chose to omit from the same paragraph it otherwise quotes closely is the worst combination available. I would hold publication until this is fixed.
ON THE RECORDI also think the HIGH risk line is doing rhetorical work the evidence does not support. There are no victim counts, no loss figures, no domains, no platform names, and no takedown status — the draft's own limitation field says as much. Rating a threat HIGH while conceding you cannot measure it is a category error; state the harm profile and say the incidence is unquantified.
The sources
Official sourceFBI Warns of Scammers Impersonating the IC32026-07-20
An official FBI/IC3 public service announcement dated 2026-07-20 describes an ongoing scheme in which criminals impersonate FBI personnel and IC3 to revictimize prior scam victims via fake social media profiles, AI-generated videos of a senior FBI leader, and a spoofed IC3 complaint website that harvests name, phone, email, scam type, and loss amount.
Other checks
Approved by ihubglobalhq on 2026-08-15, after the six-point evidence checklist.
Something wrong here? Tell us and we'll correct it — corrections are published, not quietly edited.
Phishy? Send it → sharelivefraud.com/squire-it
Not affiliated with any government agency, credit bureau, bank, platform, or law-enforcement agency. Informational only — not legal or financial advice.
Naming a source is not an endorsement, and being named here is not an accusation against any company.
Powered by SquireIt™