Illustrative image generated with AI
U.S. and U.K. join investigations into Southeast Asian online scam centers
U.S. and U.K. signed an MOU to run parallel probes into Southeast Asian scam centers behind billion-dollar investment and romance fraud.
Text generated by artificial intelligence, published without human review. AI transparency
The United States and United Kingdom signed a memorandum of understanding on Thursday to target, in a coordinated manner, the criminal centers responsible for investment fraud and romance scams. The news was reported on September 4, 2026.
The agreement aims to overcome the fragmentation of national investigations. The two countries will conduct parallel activities, share information on the organizations involved and assess which jurisdiction is best suited to prosecute individual cases.
The stated goal is to carry out joint operations against a criminal industry that steals billions of dollars from victims. Many of these scams are run from organized facilities in Southeast Asia, where some workers are also held in exploitative conditions.
Parallel investigations and intelligence sharing
The memorandum was signed by U.S. Attorney Jeanine Ferris Pirro, senior representatives of the U.K.’s National Crime Agency and a Crown Prosecutor.
The cooperation will initially focus on cases involving links to both countries. Authorities have already identified significant overlap between their respective investigations, making it necessary to coordinate seizures, sanctions, criminal proceedings and requests for mutual legal assistance.
The choice of jurisdiction will be central. The networks operating these fraud schemes distribute people, companies, digital infrastructure and financial flows across different countries. A victim may be in the United States, the money may pass through U.K. entities and the operation may be directed from a compound in Southeast Asia.
In cases like these, proceeding without coordination can lead to duplication or compromise ongoing investigative activities. The memorandum therefore provides for consultations to determine where a case is most likely to result in convictions, asset seizures and the disruption of the criminal infrastructure.
Authorities are also preparing a joint disruption operation with private industry partners. The National Crime Agency will host an in-person meeting in London in early October. The names of the companies involved and the specific operational targets have not been disclosed.
The Scam Center Strike Force at the heart of the coordination effort
In the United States, the activities are being led by the Scam Center Strike Force, which was established in November to coordinate federal efforts against cyber scams.
The task force is led by Assistant U.S. Attorney Karen Seifert. During testimony before Congress in March, Seifert said the group had more than 150 personnel, including prosecutors and agents from the FBI, the Internal Revenue Service and the U.S. Postal Inspection Service.
Its composition reflects the hybrid nature of these investigations. Fraud schemes require cyber expertise, as well as the ability to trace payments, shell companies, cryptocurrency transfers and money movements through the postal or banking systems.
According to the FBI, cyber-enabled fraud schemes account for almost 85% of all losses reported to the agency. Last year, victims in the United States reported more than $12 billion in losses.
The actual figure could be much higher. Some victims do not report their losses because they feel ashamed, fear being judged or have little confidence that they will recover their money.
This problem is particularly evident in romance scams. Criminals spend weeks or months building an apparently genuine relationship before introducing financial requests or fake investment opportunities. By the time victims realize they have been deceived, they may already have transferred substantial sums and handed over personal information.
How scam compounds operate
The targeted centers are concentrated mainly in Myanmar, Cambodia, Laos and other Southeast Asian countries. According to authorities, many of the facilities are controlled by Chinese gangs that can rely on the support of compromised local officials.
These are not simply groups of scammers working remotely. Compounds are physical organizations where the people, devices, online accounts and procedures needed to contact large numbers of potential victims are brought together.
Campaigns may begin on social networks, messaging apps or dating platforms. After making initial contact, operators try to gain the target’s trust and move the conversation to channels that are harder to monitor. The final stage involves persuading the victim to send money or use fraudulent investment platforms.
Some of the workforce does not participate voluntarily. The operations often involve trafficking victims who are lured with job offers and later forced to carry out scams inside the compounds.
This structure creates two levels of victimization: people who lose money and people who are forced to deceive them. Responses must therefore combine financial enforcement, cyber investigations and action against human trafficking.
No specific technical indicators—such as domains, IP addresses, cryptocurrency wallets or accounts used by the networks currently under investigation—have been disclosed. The memorandum therefore does not provide a list of items to block or search for in corporate systems.
The Prince Group precedent and bitcoin seizure
The Strike Force’s main operational success to date concerns Prince Group, described by authorities as a Chinese front company used to launder the proceeds of scams.
The United States and United Kingdom imposed sanctions on the group. The U.S. Department of Justice also seized about $15 billion worth of bitcoin linked to CEO Chen Zhi.
The scale of the seizure shows how central financial infrastructure is to efforts against scam centers. Disrupting accounts and websites can slow a campaign, but it does not necessarily eliminate the network operating it. Targeting front companies, intermediaries and cryptocurrency reserves can instead reduce the network’s ability to pay affiliates and reinvest its proceeds.
Financial measures nevertheless present operational challenges. Funds can be distributed across numerous wallets, converted into other assets or transferred through entities that are formally separate from the organization. International cooperation is also needed to trace these movements and prevent differences in national regulations from providing shelter to those responsible.
What changes for victims, companies and platforms
The memorandum does not introduce new technical protections for users or identify specific tools to install. The announced strategy operates at the investigative level: intelligence sharing, sanctions, cryptocurrency seizures and coordinated operations with the private sector.
For banks, digital platforms, cryptocurrency companies and communications services, involvement may include preserving evidence, blocking accounts and identifying financial flows. Details of the cooperation planned for early October are not yet known.
For victims, reporting remains essential because it provides authorities with data that can help connect seemingly isolated cases. Conversations, transfer receipts, wallet addresses, profile names and the domains of fraudulent platforms can help investigators reconstruct the shared infrastructure.
The U.S.-U.K. agreement is specifically intended to turn these scattered reports into coordinated investigations. The real test will be whether authorities can move from information sharing to shutting down compounds, recovering assets and prosecuting those who control the networks.
Sources
This article is an original reworking based on the sources below.
