What we found
- The single supporting row is a dated public service announcement published on an official law enforcement reporting site.
- The mechanism, the lures and the persistence detail are all stated directly in that announcement rather than inferred.
- Only one source was harvested, so scale, victim numbers and platform specifics could not be corroborated.
- Reviewed by 4 models, 3 from independent houses.
What we don’t know
- Which commercial messaging application is being used to send the direct messages.
- How many people have been targeted or have approved a malicious permission request.
- Whether any financial loss followed the account access, and of what kind.
- What the malicious applications are called on the permission screen, so readers could recognise them.
- Whether the impersonated officials, media figures and event planners were real people or invented identities.
The bench — who voted
4 INDEPENDENT AI MODELS REVIEWED THIS. ALL 4: HIGH RISK.
The card names a count. Here are the seats behind it, with what each one said.
DISSENT, PRESERVEDJudged separately from the sourcing problem, the pattern is genuinely dangerous and I would grade it high. Consent phishing defeats the two defences most readers have been trained to rely on — changing the password and enabling MFA — and leaves a durable token that an ordinary user will not think to look for. The permission screen is authentic, so every visual trust signal a reader is taught to check will pass.
DISSENT, PRESERVEDThe remediation advice given — close the screen, then navigate independently to your account's app permissions page and revoke anything unrecognised — is correct and useful regardless of whether the narrative detail is sourced. If the panel trims this alert, that instruction should survive.
DISSENT, PRESERVEDThe correct fix here is subtraction, not retraction: strip the unattested campaign detail and the token-revocation mechanism, keep the mechanism-plus-advice core, and the piece would hold at high confidence.
Reviewed by 4 independent models: 1 found it carried by the evidence, 3 did not.
▼ Protocol & challenge record
ON THE RECORDI do not accept the risk_line as written. "...changing your password will not shut it off" is stated in our own voice as a general property of accounts, and it is not one — token invalidation behaviour on credential reset varies by provider, and several major providers do kill or force re-consent on OAuth grants after a password change plus session revocation. The FBI can say it because they are describing their own observed cases; we are generalising it into a rule for every reader's mailbox. The whole rest of the draft is disciplined about "the announcement states" and then the one line most likely to be screenshotted and forwarded drops the hedge. If this ships unattributed I want it recorded that I objected.
ON THE RECORDThe two directive_options reading "Send this to any multi-factor you know" and "Forward this to the multi-factors in your life" are not stylistic quibbles — they are evidence that the directive generator substituted a security term into a person-shaped slot without a sanity check. Whatever produced them will produce them again. Fixing these two strings without looking at why they were produced is not a fix.
ON THE RECORDI think confidence "high" overreaches on the targeting framing specifically. The mechanism is quoted almost verbatim and deserves high confidence. The audience callout 'PROMINENT PEOPLE AND FAMILY' rests on one undefined word in one PSA — 'prominent victims' — with no numbers, no geography and no detection method, and the announcement itself says nothing about who is not at risk. Calling that high-confidence targeting invites the alert to be read as 'not about me' by exactly the readers who use the same consent screens.
The sources
Official sourceMalicious Cyber Actors Gain Access to Victim Accounts Through Consent Phishing2026-09-01
An IC3 public service announcement dated 1 September 2026 describes actors direct-messaging prominent people, their family members and acquaintances with links that lead to a legitimate permission screen, where approval grants a malicious application high-level account access that survives a password change and bypasses multi-factor authentication.
Other checks
Published under standing founder pass (A9) — every claim source-mapped by the machine.
▼ What the machine checked
- ✓ Not a community submission.
- ✓ No entity is named.
- ✓ All 5 material sentence(s) map to FBI/IC3.
- ✗ anthropic returned "overstated"; google returned "overstated"; groq returned "overstated" — published on the receipt, not blocking (A9 amendment).
- ✓ No audience band is set.
No human affirmed these. They were verified by the classifier described in Amendment A9, on 2026-09-04.
Something wrong here? Tell us and we'll correct it — corrections are published, not quietly edited.
Phishy? Send it → sharelivefraud.com/squire-it
Not affiliated with any government agency, credit bureau, bank, platform, or law-enforcement agency. Informational only — not legal or financial advice.
Naming a source is not an endorsement, and being named here is not an accusation against any company.
Powered by SquireIt™