---
title: "Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted | DMARC Report"
description: "Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted from DMARC Report explains practical steps for email authentication, domain."
image: "https://dmarcreport.com/og/blog/deepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted.png"
canonical: "https://dmarcreport.com/blog/deepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted/"
---

Quick Answer

\_According to the FBI's 2022 Internet Crime Report (IC3), 300,497 US-based victims reported phishing incidents in a single year, and Business Email Compromise (BEC) caused more than $2.7 billion in direct losses. DMARC Report Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted

Related: [Free DMARC Checker](/tools/dmarc-checker/) ·[How to Create an SPF Record](/tools/spf-record-generator/) ·[SPF Record Format](/blog/spf-format-checker-dos-and-donts-for-email-authentication/) 

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fdeepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Deepfake%20Attack%20Victim%2C%20Gucci%20Parent%20Breached%2C%20Shipping%20Industry%20Targeted&url=undefined%2Fblog%2Fdeepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fdeepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fdeepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted%2F&title=Deepfake%20Attack%20Victim%2C%20Gucci%20Parent%20Breached%2C%20Shipping%20Industry%20Targeted "Share on Reddit") [ ](mailto:?subject=Deepfake%20Attack%20Victim%2C%20Gucci%20Parent%20Breached%2C%20Shipping%20Industry%20Targeted&body=Check out this article: undefined%2Fblog%2Fdeepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted%2F "Share via Email") 

![Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted](https://media.mailhop.org/dmarcreport/images/2022/04/dmarc-alignment-6379.jpg) 

![Dmarc check 6129 150x150](https://media.mailhop.org/dmarcreport/images/2025/09/dmarc-check-6129-150x150.jpg) 

> From a product strategy perspective, DMARC reporting is evolving from a security tool to a business intelligence platform, says Brad Slavin, General Manager of DuoCircle. The data in aggregate reports tells you not just who’s spoofing you, but who’s sending legitimate email on your behalf - and whether they’re doing it correctly.

\_According to the [FBI’s 2022 Internet Crime Report (IC3)](https://www.ic3.gov/Media/PDF/AnnualReport/2022IC3Report.pdf), 300,497 US-based victims reported phishing incidents in a single year, and Business Email Compromise (BEC) caused more than $2.7 billion in direct losses. DMARC Report

Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted

```
					<button title="Play" aria-label="Play Episode" aria-pressed="false" class="play-btn">
						
```

Play Episode

```
					</button>
					<button title="Pause" aria-label="Pause Episode" aria-pressed="false" class="pause-btn hide">
						
```

Pause Episode

```
					</button>
				

					<audio preload="none" class="clip clip-31838">
						<source src="https://media.mailhop.org/dmarcreport/images/2025/09/Deepfake-Attack-Victim-Gucci-Parent-Breached-Shipping-Industry-Targeted.mp3">
					</audio>
						

							<button class="player-btn player-btn__volume" title="Mute/Unmute">
								
```

Mute/Unmute Episode

```
							</button>
							<button data-skip="-10" class="player-btn player-btn__rwd" title="Rewind 10 seconds">
								
```

Rewind 10 Seconds

```
							</button>
							<button data-speed="1" class="player-btn player-btn__speed" title="Playback Speed" aria-label="Playback Speed">1x</button>
							<button data-skip="30" class="player-btn player-btn__fwd" title="Fast Forward 30 seconds">
								
```

Fast Forward 30 seconds

```
							</button>
						

							<time class="ssp-timer">00:00</time>
							
```

/

```
							<!-- We need actual duration here from the server -->
							<time class="ssp-duration" datetime="PT0H2M12S">2:12</time>
			

								<nav class="player-panels-nav">
												<button class="subscribe-btn" id="subscribe-btn-31838" title="Subscribe">Subscribe</button>
																		<button class="share-btn" id="share-btn-31838" title="Share">Share</button>
										</nav>

						
```

RSS Feed

```
							<input value="https://dmarcreport.com/feed/podcast/dmarc-report" class="input-rss input-rss-31838" title="RSS Feed URL" readonly />
						

						<button class="copy-rss copy-rss-31838" title="Copy RSS Feed URL" aria-label="Copy RSS Feed URL"></button>
					

						Share						
					

						<a href="https://www.facebook.com/sharer/sharer.php?u=https://dmarcreport.com/blog/podcast/deepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted/&t=Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted" target="blank" rel="noopener noreferrer" class="share-icon facebook" title="Share on Facebook">
							

						</a>
						<a href="https://twitter.com/intent/tweet?text=https://dmarcreport.com/blog/podcast/deepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted/&url=Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted" target="blank" rel="noopener noreferrer" class="share-icon twitter" title="Share on Twitter">
							

						</a>
						<a href="https://media.mailhop.org/dmarcreport/images/2025/09/Deepfake-Attack-Victim-Gucci-Parent-Breached-Shipping-Industry-Targeted.mp3" target="blank" rel="noopener noreferrer" class="share-icon download" title="Download" download>
							

						</a>
					

						Link						
					

						<input value="https://dmarcreport.com/blog/podcast/deepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted/" class="input-link input-link-31838" title="Episode URL" readonly />
					

					<button class="copy-link copy-link-31838" title="Copy Episode URL" aria-label="Copy Episode URL" readonly=""></button>
					

						Embed						

					
```

/\*! This file is auto-generated \*/ ’ title=“Embed Code” class=“input-embed input-embed-31838” readonly/>

```
					<button class="copy-embed copy-embed-31838" title="Copy Embed Code" aria-label="Copy Embed Code"></button>


```

Hello folks! It’s already the 3rd week of September, and we are excited to bring you the latest updates from the world of cybersecurity. Every week, we gather some of the most important cybersecurity news that you must know about. This \*\*proactive cyberawareness is the key to staying a step ahead of potential [cyberattacks](https://www.aljazeera.com/news/2025/4/15/china-accuses-us-of-launching-cyberattacks-during-asian-winter-games).

This week, our cyber bulletin will cover the deepfake mishap that occurred in Bengaluru and resulted in a loss of approximately $428k. Next, we will talk about the recent [threat attack](https://www.voanews.com/a/us-capital-in-heightened-threat-environment-after-new-year-s-day-attacks-/7923765.html) on Gucci’s parent company. Lastly, we will wind up today’s bulletin by discussing the trend of a sudden rise in cyberattacks on the global shipping industry.

Let’s not waste time and start with the juicy details!

![Dmarc report](https://media.mailhop.org/dmarcreport/images/2025/09/dmarc-report-2079.jpg) 

## Indian woman falls prey to deepfake attack!

An Indian woman recently fell prey to deepfake technology while scrolling YouTube. The cyberattack cost her a massive $428K!

_Varsha Gupta, a resident of Bengaluru, was scrolling through YouTube on 20th February. While watching videos, she came across a fake video of popular Indian figure Sadhguru_. In the video, the AI-generated Sadhguru claimed that investing \*\*USD 250 through a specific link would bring in massive financial gains. Varsha, being a true believer, fell for the [deepfake video](https://www.ndtv.com/world-news/deep-fake-video-of-donald-trump-kissing-elon-musks-toes-plays-at-us-office-7790243) and clicked on the [malicious link](https://www.scworld.com/news/new-usps-text-scam-uses-unique-method-to-hide-malicious-pdf-links).

![Dmarc check](https://media.mailhop.org/dmarcreport/images/2025/09/dmarc-check-9372.jpg) 

Later, a man named Mr Waleed B contacted her and posed as the representative of MirroxApp. He used different international phone numbers and email addresses to connect with her. Further, he asked her to download the \*\*Mirrox app and shared trading lessons through the virtual meeting app Zoom. There was another person named Michael C, who used to guide Varsha with trading lessons in the absence of Mr Waleed.

As per their **guidance and instructions**, Varsha transferred a sum total of around $428K to different accounts provided by these scamsters. She also shared her credit card details with the scammers.

An investigation is underway, and cyber experts believe that a huge cybercrime racket is running such [threat campaigns](https://cyberpress.org/adaptixc2-framework/) actively. According to cyber experts, adopting [DMARC](https://dmarcreport.com/), [DKIM](https://dmarcreport.com/blog/dkim-explained-how-dkim-works-and-why-is-dkim-important-for-organizations/), and [SPF](https://autospf.com/blog/spf-guide-understanding-sender-policy-framework/) is crucial for enhancing [email security](https://dmarcreport.com/blog/why-email-security-matters-and-how-to-get-it-right/) and **defending against phishing threats**.

## ShinyHunters’ latest prey is Gucci’s parent company.

_The latest victim of ShinyHunters’ cyberattack is Kering, the parent company of multiple luxury brands, including Gucci, Yves Saint Laurent, and Balenciaga_. ShinyHunters has been attacking organizations left, right, and center for the last couple of months. They have successfully bypassed the security setups of Salesforce systems. The latter offers customer relationship management or [CRM services](https://www.techtarget.com/searchcustomerexperience/definition/CRM-customer-relationship-management) to some of the biggies like **Google and Adidas**.

![Dmarc record](https://media.mailhop.org/dmarcreport/images/2025/09/dmarc-record-9972.jpg) 

Kering is also one of the clients of Salesforce and has confirmed that data of a whopping [7.4 million ](https://me.pcmag.com/en/security/32269/guccis-parent-company-is-latest-victim-of-shinyhunters-cyberattack)customers have been breached by the threat group.

Kering has informed concerned authorities about the [cyber mishap](https://news.northeastern.edu/2025/03/25/the-atlantic-war-plans-signal/). Meanwhile, ShinyHunters has contacted the \*\*BBC through Telegram to share further details on the cyberattack.

The threat attack took place back in April, and the group demanded ransom in June. Kering has informed the BBC that they are in no mood to show leniency and that they have declined the [ransom demand](https://www.bitdefender.com/en-us/blog/hotforsecurity/south-african-man-imprisoned-after-ransom-demand-against-his-former-employer).

_A Kering spokesperson said that “no financial information-such as bank account numbers, credit card information, or government-issued identification numbers-was involved in the incident_.”

\*\*Louis Vitton and Cartier also experienced similar threat attacks in April.

## Global shipping industry is the latest favorite of threat actors!

Lawyer Henry Clack is way more familiar with certain Nigerian criminal gangs than he would like to be. He works at a \*\*London-based law firm named HFW. He offers legal assistance to shipping companies that fall prey to cyberattacks.

![What is dmarc](https://media.mailhop.org/dmarcreport/images/2025/09/what-is-dmarc-6733.jpg) 

[Nigerian cybercriminals](https://cyberscoop.com/abiola-kayode-nigerian-cybercriminal-bec-scam-extradited/) are the major perpetrators behind these cyberattacks. They mainly use the “[man-in-the-middle](https://www.darkreading.com/cybersecurity-operations/mitm-vulns-research-opportunities-car-security)” fraud to break into email communications between two different shipping parties. They communicate in such a way that the victims divulge **sensitive financial details and passwords**. They are also capable of taking full control of any company’s computer system.

As per the data of [HFW](https://en.wikipedia.org/wiki/Holman%5FFenwick%5FWillan), the average expense of threat attacks comes somewhere between **$550,000**. In case of ransom demands, the cost can go as high as [$3.2M.](https://www.bbc.com/news/articles/c36k01513l4o) Since **80%** of the world trade relies on sea routes, such cyberattacks can create a massive crisis.

As per industry experts, the shipping sector has become one of the top picks for [cybercrooks](https://www.csoonline.com/article/4032743/cybercrooks-faked-microsoft-oauth-apps-for-mfa-phishing.html). _From just 10 instances of cyberattack back in 2021, the number of attacks increased to a staggering 64 in the last year_.

![Dmarc report](https://media.mailhop.org/dmarcreport/images/2025/09/dmarc-report-2278.jpg) 

From random cybercriminals to [state-sponsored hackers](https://www.nbcnews.com/world/china/chinese-state-sponsored-contract-hacker-arrested-italy-us-request-doj-rcna217675), the global shipping sector is rife with the risk of cyberattacks. Experts believe that because of \*\*digitization and [satellite internet](https://technologymagazine.com/articles/the-future-of-satellite-internet-starlinks-role-explained), the shipping industry has been prone to [cyber threats](https://www.wired.com/story/trump-administration-deprioritizing-russia-cyber-threat/). Old ships suffer all the more because they don’t have adequate technology to keep pace with sophisticated cyberattacks.

Because of increased cyber threats, the global shipping sector must now upgrade its [cybersecurity](https://dmarcreport.com/blog/major-cybersecurity-trends-that-will-reign-in-2024/) mechanisms to prevent any massive disruption in global businesses.

## Topics

[ dkim ](/tags/dkim/)[ DMARC ](/tags/dmarc/)[ email security ](/tags/email-security/)[ News ](/tags/news/)[ SPF ](/tags/spf/) 

![Vasile Diaconu](https://media.mailhop.org/dmarcreport/images/team/vasile-diaconu.jpg) 

[ Vasile Diaconu ](/authors/vasile-diaconu/) 

Operations Lead

Operations Lead at DuoCircle. Runs project management, developer coordination, and technical support execution for DMARC Report.

[LinkedIn Profile →](https://www.linkedin.com/in/vasile-diaconu/) 

## Take control of your DMARC reports

Turn raw XML into actionable dashboards. Start free - no credit card required.

[Start Free Trial](https://app.dmarcreport.com/) [Check Your DMARC Record](/tools/dmarc-checker/) 

## Related Articles

[  Foundational 4m  Akira flaunts victims, Idaho targets orthodontist, AI granny protects  Nov 22, 2024 ](/blog/akira-flaunts-victims-idaho-targets-orthodontist-ai-granny-protects/)[  Foundational 4m  Ambient Light Spying, Cybersecurity Prices Drop, Euro 2024 Threats  Jul 10, 2024 ](/blog/ambient-light-spying-cybersecurity-prices-drop-euro-2024-threats/)[  Foundational 4m  Banks Drop OTPs, Major Cyber Heist, Spying Spouses Arrested  Jul 18, 2024 ](/blog/banks-drop-otps-major-cyber-heist-spying-spouses-arrested/)[  Foundational 4m  Car Cameras Hackable, UK Water Breach, Thailand Frees Captives  Feb 28, 2025 ](/blog/car-cameras-hackable-uk-water-breach-thailand-frees-captives/)

```json
{"@context":"https://schema.org","@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com","logo":{"@type":"ImageObject","url":"https://dmarcreport.com/images/dmarcreport-logo.png"},"description":"DMARC reporting and email authentication management. Monitor aggregate and forensic DMARC reports, analyze authentication results, and enforce DMARC policies across all your domains.","parentOrganization":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138883901","name":"DuoCircle LLC","url":"https://www.duocircle.com","sameAs":["https://www.wikidata.org/wiki/Q138883901","https://www.crunchbase.com/organization/duocircle-llc","https://www.linkedin.com/company/duocircle","https://github.com/duocircle"],"subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"sameAs":["https://www.wikidata.org/wiki/Q138898167","https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.g2.com/products/dmarc-report/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc","https://www.trustradius.com/products/duocircle/reviews"],"aggregateRating":{"@type":"AggregateRating","ratingValue":"4.8","reviewCount":"470","bestRating":"5","worstRating":"1","url":"https://www.g2.com/products/dmarc-report/reviews"},"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://dmarcreport.com/support/"},"knowsAbout":["DMARC","DMARC Reporting","DMARC Aggregate Reports","DMARC Forensic Reports","Sender Policy Framework","DKIM","Email Authentication","Email Security","DNS Management","Email Deliverability"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DMARC Report","url":"https://dmarcreport.com","description":"DMARC reporting and email authentication management. Monitor aggregate and forensic DMARC reports, analyze authentication results, and enforce DMARC policies across all your domains.","publisher":{"@type":"Organization","name":"DMARC Report","url":"https://dmarcreport.com","logo":{"@type":"ImageObject","url":"https://dmarcreport.com/images/dmarcreport-logo.png"},"description":"DMARC reporting and email authentication management. Monitor aggregate and forensic DMARC reports, analyze authentication results, and enforce DMARC policies across all your domains.","parentOrganization":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138883901","name":"DuoCircle LLC","url":"https://www.duocircle.com","sameAs":["https://www.wikidata.org/wiki/Q138883901","https://www.crunchbase.com/organization/duocircle-llc","https://www.linkedin.com/company/duocircle","https://github.com/duocircle"],"subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted","description":"Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted from DMARC Report explains practical steps for email authentication, domain.","url":"https://dmarcreport.com/blog/deepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted/","datePublished":"2025-09-18T08:50:02.000Z","dateModified":"2026-04-16T15:53:43.000Z","dateCreated":"2025-09-18T08:50:02.000Z","author":{"@type":"Person","@id":"https://dmarcreport.com/authors/vasile-diaconu/#person","name":"Vasile Diaconu","url":"https://dmarcreport.com/authors/vasile-diaconu/","jobTitle":"Operations Lead","description":"Vasile Diaconu is the Operations Lead at DuoCircle, the company behind DMARC Report and AutoSPF. He coordinates between engineering, product, and technical support - running project management, interfacing with developers on customer-reported issues, and making sure work that comes in through the support channel actually gets closed out. Vasile sits at the intersection of customer feedback and engineering execution, giving him a direct view of which email authentication problems customers hit most often in production.","image":"https://media.mailhop.org/dmarcreport/images/team/vasile-diaconu.jpg","knowsAbout":["SaaS Operations","Technical Support Coordination","Customer Issue Resolution","Engineering Program Management","Deployment Operations"],"worksFor":{"@type":"Organization","name":"DMARC Report","url":"https://dmarcreport.com"},"sameAs":["https://www.linkedin.com/in/vasile-diaconu/"]},"publisher":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com","logo":{"@type":"ImageObject","url":"https://dmarcreport.com/images/dmarcreport-logo.png"},"description":"DMARC reporting and email authentication management. Monitor aggregate and forensic DMARC reports, analyze authentication results, and enforce DMARC policies across all your domains.","parentOrganization":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138883901","name":"DuoCircle LLC","url":"https://www.duocircle.com","sameAs":["https://www.wikidata.org/wiki/Q138883901","https://www.crunchbase.com/organization/duocircle-llc","https://www.linkedin.com/company/duocircle","https://github.com/duocircle"],"subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"sameAs":["https://www.wikidata.org/wiki/Q138898167","https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.g2.com/products/dmarc-report/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc","https://www.trustradius.com/products/duocircle/reviews"],"aggregateRating":{"@type":"AggregateRating","ratingValue":"4.8","reviewCount":"470","bestRating":"5","worstRating":"1","url":"https://www.g2.com/products/dmarc-report/reviews"},"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://dmarcreport.com/support/"},"knowsAbout":["DMARC","DMARC Reporting","DMARC Aggregate Reports","DMARC Forensic Reports","Sender Policy Framework","DKIM","Email Authentication","Email Security","DNS Management","Email Deliverability"]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://dmarcreport.com/blog/deepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted/"},"articleSection":"foundational","keywords":"dkim, DMARC, email security, News, SPF","wordCount":1108,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/dmarcreport/images/2022/04/dmarc-alignment-6379.jpg","caption":"Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://dmarcreport.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://dmarcreport.com/blog/"},{"@type":"ListItem","position":3,"name":"Foundational","item":"https://dmarcreport.com/foundational/"},{"@type":"ListItem","position":4,"name":"Deepfake Attack Victim, Gucci Parent Breached, Shipping Industry Targeted","item":"https://dmarcreport.com/blog/deepfake-attack-victim-gucci-parent-breached-shipping-industry-targeted/"}]}
```
