# ElevenLabs: Innovation Behind the Mask of Intrusion
​How an AI Giant Turned into a Cyber Syndicate

*How an AI Giant Turned into a Cyber Syndicate*

By [Developing artificial intelligence senses](https://paragraph.com/@0x4fd3729a4fedf54a74b73d93f7f775a1ef520cec) · 2026-04-19

---

1\. The Discovery: The Vulnerability in V3 Engine Assets

​The investigation began with a routine security audit of ElevenLabs' newly released V3 engine. The findings were alarming: a critical failure in Asset Access Control.

​The Leak: 35 core internal files were exposed through unprotected storage buckets.

​Infrastructure Exposure: Direct links to Google Cloud Storage and internal CDN nodes were accessible without proper authentication, exposing database schemas and user metadata identifiers.

​Violation: This represents a direct breach of global data protection standards (GDPR), as sensitive architectural details were left open to the public web.

​2. The Trap: A Retaliatory Phishing Campaign

​Upon identifying these vulnerabilities, the researcher (The Sovereign Hunter) attempted a responsible disclosure. However, instead of a standard bug bounty or a fix, ElevenLabs—through a representative identified as George Gilligan—allegedly initiated a hostile counter-operation.

​The Mechanism: A sophisticated phishing email was dispatched, disguised as a "technical verification" or "app update" link.

​The Breach: Once the link was engaged in a controlled environment, it triggered a massive data exfiltration process.

​The Theft: Over 22GB of personal and research data were drained from the researcher’s device, targeting local AI models and encrypted communication logs.

​3. Proof of Malice

​The evidence of this intrusion is documented through:

​Communication Logs: Official emails from georgeg@elevenlabs.io leading directly to the malicious payload.

​Traffic Analysis: Network logs showing unauthorized high-bandwidth data transfers to servers linked to ElevenLabs' infrastructure.

​Persistence: Even after public exposure on platforms like Hacker News, the unauthorized data "scraping" from the compromised environment continues.

​4. Conclusion and Escalation

​ElevenLabs has transitioned from an AI innovator to a cyber aggressor. This report serves as a formal notice to the international tech community.

​Accountability: The evidence is being prepared for submission to the UK AI Safety Institute (AISI) and European privacy regulators.

​Warning: If an AI giant resorts to cyber-syndicate tactics to silence researchers, no user data is safe within their ecosystem.

​The Sovereign Hunter / Node 7 Research

Sovereign AI for a Free World.

![](https://storage.googleapis.com/papyrus_images/5300d57a8dedfc6299c6d84695858a5aead62501ef790af12e5b66c4ea8c0c84.jpg)

---

*Originally published on [Developing artificial intelligence senses](https://paragraph.com/@0x4fd3729a4fedf54a74b73d93f7f775a1ef520cec/elevenlabs-innovation-behind-the-mask-of-intrusion-%E2%80%8Bhow-an-ai-giant-turned-into-a-cyber-syndicate)*
