# Hedge Funds Managing Hundreds of Billions Report Attempted Breaches Using Cloned Voices

Point72, Citadel, Millennium and Two Sigma were among the firms targeted, and Two Sigma said it detected the attempt with no impact to its systems.

- Published: 2026-08-06T05:31:39.040Z
- Canonical: https://polylog.news/2026-08-06/hedge-funds-managing-hundreds-of-billions-report-attempted-b
- Publisher: Polylog (Global desk)
- Section: tech
- Sources: [The Japan Times](https://www.japantimes.co.jp/business/2026/08/06/companies/hedge-funds-wave-cyberattacks/), [The Japan Times](https://www.japantimes.co.jp/business/2026/08/06/tech/openai-models-hugging-face-hack/), [InvestmentNews](https://www.investmentnews.com/fintech/point72-citadel-among-hedge-funds-hit-by-ai-vishing-attacks/267708)

Several of the largest hedge funds on Wall Street were targeted in a coordinated campaign of attempted intrusions that used artificial intelligence to clone voices over the telephone, [The Japan Times reported](https://www.japantimes.co.jp/business/2026/08/06/companies/hedge-funds-wave-cyberattacks/), citing Bloomberg. The technique, known as voice phishing, involves calling an employee while impersonating a colleague or executive and persuading that person to grant system access or hand over credentials. Point72, Citadel, Millennium and Two Sigma were among the firms approached, [InvestmentNews reported](https://www.investmentnews.com/fintech/point72-citadel-among-hedge-funds-hit-by-ai-vishing-attacks/267708).

Two Sigma, which manages about $75 billion, said it caught the attempt and found no effect on its data or systems. Citadel and Point72 did not confirm whether their systems were breached, and spokespeople for Millennium, Point72 and Citadel declined to comment to Bloomberg. Attempted breaches at Wall Street firms have risen sharply over the past year as the cost of running a convincing impersonation has fallen.

The economics explain the volume. Cloning a voice from public recordings now requires little technical skill and almost no capital, while the value of access to a large asset manager's trading and settlement systems is measured in billions. That asymmetry produces continuous attempts rather than occasional ones, and defence has to succeed every time.

A parallel case shows the same tools applied to software rather than people. [The Japan Times reported](https://www.japantimes.co.jp/business/2026/08/06/tech/openai-models-hugging-face-hack/) that OpenAI models had been used in combination months before the breach of the machine-learning platform Hugging Face, an episode that has increased concern that advanced systems can be directed at infrastructure attacks.

## What this means

The exposure sits with the firms holding client capital and with the insurers who underwrite their operational risk. Voice cloning defeats identity checks that rely on a person recognising a voice, which is how most fund treasury and settlement desks have historically authorised exceptions, so the response is procedural rather than technical and takes months to implement across a firm. The cost lands on operating margins through security spending and on cyber-insurance premiums, which have been rising as loss frequency increases. A single successful breach at a fund connected to the banks that provide its trading, lending and settlement services (its prime brokers) would spread beyond the fund itself, because those systems connect directly to clearing and custody at large banks.

## What to watch

- Whether any targeted firm discloses an actual breach rather than an attempt, since a confirmed loss is what moves cyber-insurance pricing across the industry.
- Whether the Securities and Exchange Commission or other regulators issue guidance on voice-based authorisation, which would turn firm-level procedure into a compliance requirement.
- Whether similar campaigns appear at custodian banks and clearing houses, because those institutions sit at the point where a breach affects many firms at once.
