EU launches Brussels AI team to tackle deepfakes and hacking
Brussels is building a new AI enforcement team to target deepfakes, illicit imagery and hacking, as the EU turns its AI Act into practical cross-border policing.

The European Commission is creating a new Brussels team to police AI abuse, with deepfakes, illicit imagery and hacking tools at the center of its mandate. The move adds another layer to the EU’s enforcement machine and signals that Brussels wants to translate its AI rules into concrete action across member states, not just publish broad principles.
The new team is meant to coordinate enforcement and monitor emerging threats as generative AI makes it easier to produce fake audio and video, spread sexually exploitative material and assist cyberattacks. That focus gives the Commission a tighter grip on the risks regulators say are moving faster than the law, especially when a manipulated clip or synthetic image can travel across borders in minutes.

The Brussels team is being built on top of an existing structure. The European AI Office, established within the Commission, supports the development and adoption of trustworthy AI while protecting people against risks. The AI Office and national market surveillance authorities are responsible for implementing, supervising and enforcing the AI Act, while the AI Board brings together representatives from each member state and is supported by the AI Office as its secretariat.
The AI Act took effect on 1 August 2024, and the first requirements kicked in on 2 February 2025, including bans on prohibited AI practices and AI-literacy obligations for providers and deployers. The Commission then published guidelines on prohibited AI practices on 29 July 2025, and it has also been working on a Code of Practice on Transparency of AI-generated Content to help carry out the law’s transparency rules. Article 50 transparency obligations apply from 2 August 2026.
Deepfakes have become one of the most pressing test cases. A European Parliament briefing in July 2025 said they are booming online, are increasingly easy to make with free mobile apps and limited digital skills, and are becoming harder to detect, especially in audio form. That helps explain why Brussels is putting deepfakes, illicit imagery and hacking into the same enforcement frame: each can be deployed quickly, cheaply and across borders, whether the harm is political impersonation, abuse or cybercrime.
For companies building or using AI in Europe, the practical pressure is rising. Firms are likely to face closer questions about training data, content moderation, watermarking and identity verification when their systems are used for abuse. With one central enforcement architecture in Brussels and practical guidance already flowing from the Commission, the EU is moving from lawmaking into day-to-day policing, a model that can set expectations far beyond the bloc for U.S. tech companies operating internationally.
This article was produced by Prism’s automated news system from verified source data, official records, and press releases, then run through automated quality and moderation checks before publishing. The system is built and supervised by the people who set the standards it runs under. Read our full AI policy.
Did this article answer your question?


