NEWS
UK Agencies Push Family Photos Offline as AI Clones Faces
NCA and IWF told parents to hide children’s photos after tools learned to clone a face from 20 pictures in 15 minutes.
Britain’s National Crime Agency told parents on 3 July 2026 to keep children’s photos off public social feeds. The Internet Watch Foundation joined the warning after counting 8,029 realistic AI-generated child sexual abuse images and videos in 2025, up 14% on 2024.
The advice exists because a child’s face can now be copied from ordinary stills that schools, clubs and families already posted. Offenders no longer need contact with the child.
Twenty Pictures and Fifteen Minutes
IWF analysts have watched this shift since early 2023, when synthetic abuse stills first showed up on dark-web boards. Still images were the early product. Video is the new one.
The technical step that turns a school portrait into a targeted fake is cheap. Low-Rank Adaptation, a fine-tuning trick known as a LoRA, lets someone customise a generative model with little skill and little money. The IWF says those add-ons can build a realistic deepfake of a specific child from as few as 20 existing images in as little as 15 minutes.
Twenty frames is a class photo, a sports-day album, and a few public posts. It is not a secret stash. Newer kits also stitch in cloned audio, so a still face can be talked over with a synthetic child’s voice.
One-click undress tools sit at the consumer end of the same stack, which is why the July campaign follows an earlier parent warning on AI nudify apps. Dan Sexton, the IWF’s chief technology officer, has said he feels very uncomfortable telling parents to keep pictures off public display, and also that he sees no other option while the tools lack protection.
Girls made up 97% of the illegal AI-generated images the IWF assessed in 2025. The watchdog’s analysts also found AI child-abuse images on clear-web chatbot services that invite users to act out abuse in chat.
A School Website Turned Into a Blackmail Kit
The parent guide did not come first. In May 2026, the UK Online Harms Early Warning Working Group updated image-security advice for schools after criminals scraped pupil photos from a secondary school’s site and social accounts, ran them through AI tools, and tried to sell silence.
UK police called in the IWF. Analysts assessed around 150 confirmed images of child sexual abuse, hashed them, and pushed the fingerprints onto blocking lists used by tech firms. Staff and pupils over 18 were flagged as possible targets too.
The group said cases like this still look uncommon, and also that it is only a matter of time before more schools are hit. Safer Internet Centre polling published with the advice found 60% of eight- to 17-year-olds worry that AI could be used to make sexual content of themselves or their peers, and 65% of parents and carers share that fear.
It is incredibly sad to think that pictures of children taking part in school activities, showing their rightful and positive place in their communities, have now become a target for cynical scammers willing to exploit children to make money.
Will Gardner, chair, UK Online Harms Early Warning Working Group
Jess Phillips, then minister for safeguarding and violence against women and girls, called the school blackmail a deeply worrying emerging threat. Tamsin McNally, IWF hotline manager, said the pattern feels close to the financially motivated sexual extortion the hotline already sees every day, except that a whole school roll can now be used at once.
A private family account does not fix a public sports-club gallery or a decade of prize-giving photos left on a school homepage. That is the second problem inside the July warning.
The Three Steps the Agencies Gave Parents
On 3 July 2026 the NCA and IWF issued new guidance for parents and carers, with ads on Facebook, Instagram and YouTube. Both bodies say they are not issuing orders. They want people to know the risk and the few controls that still exist.
THE THREE STEPS IN THE JUNE GUIDE
- Privacy settings: Use the Privacy, Safety or Account menus most apps already label, and make profiles private so strangers cannot scrape the grid.
- Close friends: If photos still go online, share them only with a selected group, not a public feed or an open school page.
- Old consent: Revisit permissions given to schools, clubs and relatives, and ask whether those stills should stay up now that AI tools can rewrite them.
Lorna Sinclair, the NCA’s child sexual abuse education manager, said the average parent does not post a child’s photo thinking it could be downloaded and turned into abuse material, and that many carers do not know the problem exists. Tim Wright, a senior NCA manager, listed the same three moves and added that if something does go wrong, the child is not to blame and the report should go to police or CEOP fast.
We don’t want to say don’t share your children’s images with the people you love and trust, but we want everyone to be aware of the potential risks and make an informed decision with the full facts at their disposal. These are not hypothetical threats, they are real.
Kerry Smith, chief executive, Internet Watch Foundation
The IWF kept circulating that message into the school run. On 12 August 2026 its official account again asked parents to pass the guide through school communities. The launch post is still the cleanest version of the ask.
Keeping children safe from AI image abuse starts with simple changes. It's ok to pause before sharing.
Innocent school photos can be altered with AI tools.
Read our practical guide developed with @NCA_UK @CEOPEducation to help keep them safe at https://t.co/nQqNpIRq20 pic.twitter.com/EiN9Hw080R
— Internet Watch Foundation (IWF) (@IWFhotline) July 3, 2026
People answering the televised version of the warning wanted the generators taken down, and they wanted courts to hold the people who use them. Privacy settings were treated as a consolation prize. That split is fair. A close-friends list does not reach a model someone already downloaded, and it does not unsay a photo a school posted in 2019.
AI Abuse Videos Went From 13 to 3,443
The figure that moved the agencies is not the stills. It is motion. In 2024 the IWF identified 13 AI-generated child sexual abuse videos. In 2025 it identified 3,443, a more than 260-fold jump, and 65% of those videos (2,233) were Category A, the most severe UK class.
WHAT THE IWF COUNTED IN 2025
| Measure | 2024 | 2025 |
|---|---|---|
| AI-generated child sexual abuse videos | 13 | 3,443 |
| Realistic AI images and videos combined | Not published as a headcount | 8,029 (up 14%) |
| Share of AI videos classed Category A | Not published | 65% (2,233 videos) |
| Share of non-AI criminal videos classed Category A | Not used as the baseline here | 43% |
Category A covers depictions of penetrative sexual activity, sadism, or sexual activity with an animal. The IWF’s point is that the machines are being used to make more violent material, not milder fakes. Kerry Smith said advances in technology should never come at a child’s expense, and that this material is dangerous.
The same report says current fakes are often made to look like amateur phone shots, which is why an untrained eye cannot sort them. Analysts sometimes recognise a file as synthetic only because they already know the real child in the source photos.
The Act Goes After the Generator Itself
UK law already treats AI-generated child sexual abuse images as illegal, including when no camera ever faced a real child during the final render. The Crime and Policing Act 2026 adds a second target: the specialised model.
Home Office factsheets say a new offence makes it illegal to adapt, possess or supply a CSA image generator, and also to offer one. Offenders have been fine-tuning off-the-shelf systems on abuse libraries or on one child’s face, then selling those packs. The IWF found an anonymous page linking to optimised models that used the likeness of 128 named victims.
The Act also folds AI imagery into the old “paedophile manuals” offence, and it creates a crime for people who run or moderate sites used to share abuse images. Ofcom and the intelligence agencies get a testing defence so they can hold those generators to probe them.
HOW THE WARNING GOT HERE
- Spring 2023: IWF analysts record the first synthetic abuse stills and later find more than 20,000 AI-generated images on one dark-web forum in a month.
- 2024: Realistic AI videos appear; the IWF logs 13 of them for the year.
- 2025: The count reaches 3,443 AI videos and 8,029 realistic AI images and videos.
- 8 May 2026: Schools get updated image-security advice after the secondary-school blackmail attempt.
- 3 July 2026: The NCA and IWF publish the parent guide and run ads asking families to lock down photos.
- 6 July 2026: UN Secretary-General António Guterres, in Geneva, calls for companies to prove child safety before release.
Sexton has said the long-term answer is models that are secure by design. He also said he does not see that standard in the tools offenders already combine, including open-source systems anyone can download and retune.
Offenders Already Claim the Victim Is a Fake
Because the files look like phone photos, two policing problems arrive together. Analysts can still separate many AI videos from real ones, Sexton has said, but the surest tell is often a dark-web user bragging about a render. He does not know if detection can stay accurate while the software keeps changing.
The IWF also flags a legal tactic it calls the deepfake defence. An offender claims a genuine contact-abuse image is synthetic, and bets that doubt will stall a charge. The watchdog’s phrase for that gap is the liar’s dividend: public knowledge that fakes exist becomes cover for real crimes.
Force-level counts are starting to show the same tools in ordinary crime files, not only in IWF queues. Freedom of Information returns from 20 police forces in England and Wales found 163 recorded crimes by July 2026 when officers searched terms such as AI-generated, deepfake and nudify. The same search found 10 such crimes in 2023, 46 in 2024 and 112 in 2025. Several forces warned that keywords both miss cases and sweep in files where the word is incidental, so the 163 figure is a floor with noise, not a census.
Some of those files involve pupils targeting classmates from school or social-media stills. That is the school-website problem at playground scale. Report Remove, the IWF and Childline service for under-18s, remains the confidential route for a young person whose image is already circulating.
Guterres Wants Proof Before Models Reach Children
Three days after the UK parent guide, Guterres opened the first UN Global Dialogue on AI Governance in Geneva and asked governments to put children first in any shared rulebook. He called for an AI Child Safety Pledge with three rules for any system a child can reach: prove it is safe with child-specific tests and outside oversight; allow no sexual images of children and detect, report and remove them; and when a child shows distress, stop the system and hand the child to a human.
We do not let medicine reach a child until it is proven safe. We test every toy. Yet AI has reached our children, their learning, their friendships, their most private questions, before anyone asked what it would do to them. No child should be a guinea pig for unregulated AI.
António Guterres, UN Secretary-General, Global Dialogue on AI Governance, Geneva
Ofcom has told platforms to have hash-matching in place by 30 September 2026 to block illegal intimate images, including explicit AI deepfakes. That deadline sits on the distribution side. It does not stop a LoRA trained on a yearbook.
The parent guide is the remaining manual control: lock the album, pull old school stills, talk to the club that still posts match-day faces. It is a real control, and it is also an admission that the generators were allowed to ship without the child-safety test Guterres described.
Frequently Asked Questions
Is AI-Generated Child Abuse Imagery Illegal in the UK If No Child Was Photographed?
Yes. UK law treats AI-generated child sexual abuse images as pseudo-photographs, so creating, holding or sharing them is a crime even when the final file was never a camera shot of a real child. In 2025 the IWF also actioned 82 extra items that were not photorealistic, including cartoons, illustrations and animations, because those prohibited images are illegal too.
What Is Report Remove and Who Can Use It?
Report Remove is a confidential IWF and Childline service for people under 18 whose nude or sexual images have been shared without consent. The young person can flag the file so platforms can hash it and try to block further uploads, which is the same fingerprint method used after the secondary-school blackmail attempt.
How Few Photos Does It Take to Clone a Specific Child’s Face?
The IWF’s 2026 research says a LoRA can build a realistic deepfake of a named child from about 20 existing pictures in about 15 minutes. Separate from that still-image route, emerging models can add synthetic audio so a cloned face is paired with a cloned child’s voice in a generated video.
What Does the Crime and Policing Act 2026 Change for These Tools?
It creates an offence of adapting, possessing, supplying or offering to supply a CSA image generator, with a maximum sentence of five years, across England and Wales, Scotland and Northern Ireland. The Act also extends the manuals offence to AI imagery and lets the Secretary of State license bodies such as Ofcom to hold those generators for testing.
Disclaimer: This article is news reporting and analysis for information only. It is not legal advice, not a guide to criminal liability, and not a substitute for child-protection or safeguarding advice. Anyone who thinks a child is at risk, or who needs to act on an image-based offence, should contact the police, CEOP, or a qualified solicitor before making decisions. Figures, guidance and legal statuses are those given by the named agencies in the sources above and may change as new reports and laws land.
-
AI3 months agoFable 5 Came Back Under a Commerce On-Off Switch
-
AI4 months agoGoogle’s SpaceX GPU Lease Has a Sept. 30 Deadline
-
CRYPTO4 months agoPlasma One’s XPL Locks Face a 1.81 Billion Cliff
-
APPS4 months agoDGO’s Rs 549 World Cup Pass Cost Fans Sleep and Data
-
AI4 months agoMoonshot AI’s $30 Billion Ask Became a $35 Billion Close
-
NEWS4 months agoColorOS 17 Device List Spans Oppo, OnePlus and Realme
-
GAMING4 months agoXbox Cuts 3,200 Jobs After Five Years of Thin Returns
-
GAMING3 months agoThe RTX 4050 Under Rs 70,000 Hides a Wattage Gap
