Two male students at Lancaster Country Day School used AI tools to generate and share non-consensual deepfake pornographic images of over 50 female classmates, leading to severe psychological harm, school leadership resignations, lawsuits, and new state legislation.
From November 2023 through May 2024, two Lancaster Country Day School students in Pennsylvania allegedly used AI tools to create and exchange hundreds of sexualized deepfake images depicting female classmates and other girls. Authorities later identified 60 victims, 59 of them minors. The students were adjudicated delinquent in juvenile court, and families later sued the school and unnamed AI companies over the incident.
Risk classification
- Primary risk domain: 4 Malicious actors
- Primary risk subdomain: 4.3 Fraud, scams, and targeted manipulation
The students used AI to generate non-consensual sexual imagery of specific female classmates for targeted humiliation and harassment, which directly aligns with sub-domain 4.3 under Boundary Rule B1.
Additional risk subdomains
- 1.2 Exposure to toxic content: The incident involved the creation and sharing of highly toxic synthetic child sexual abuse material (deepfake pornography) in a group chat.
- 6.5 Governance failure: The incident exposed significant regulatory and legal gaps, as existing child pornography laws did not cover synthetic AI-generated images, requiring new legislation (Act 125).
Causal factors
- Entity: Human
- Intent: Intentional
- Timing: Post-deployment
The harm was caused by the intentional actions of human users (students) who utilized a post-deployment AI tool to generate non-consensual deepfake pornography of their classmates.
EU AI Act risk tier
- Risk tier: 3 Limited Risk
Limited Risk: The report describes the use of an AI program to generate deepfake images, which falls under the category of AI-generated content requiring specific transparency obligations under the EU AI Act.
AI system and alleged parties
- AI system: unspecified
- AI purpose: Deepfake Image Generation; Image Generation
- Behaviour type: Tool
- Alleged developer: Synthetic video generation technology developers, Synthetic media generation technology developers, Synthetic image generation technology developers, Deepfake technology developers
- Alleged deployer: Two unnamed Lancaster Country Day School students, Synthetic media creators, Students, Minors, Deepfake creators, AI-generated CSAM creators
- Alleged harmed parties: Victims of deepfake child abuse, Victims of deepfake abuse, Victims of CSAM, Students, Privacy, Minors, Lancaster Country Day School students, Lancaster Country Day School, Girls, Families of Lancaster Country Day School students, Epistemic integrity, Educational communities
Harm severity
Highest direct severity in any category: Substantial. Severity is scored from Negligible to Catastrophic in each harm category, for harm the reports describe as caused directly or indirectly by the AI system.
- Physical: direct Negligible, indirect Negligible
- Infrastructure: direct Negligible, indirect Negligible
- Property: direct Negligible, indirect Negligible
- Financial: direct Negligible, indirect Minor
- Environmental: direct Negligible, indirect Negligible
- Malicious content: direct Substantial, indirect Negligible
- Differential treatment: direct Minor, indirect Negligible
- Civil rights: direct Minor, indirect Negligible
- Democracy: direct Negligible, indirect Negligible
- Privacy: direct Minor, indirect Negligible
- Psychological: direct Minor, indirect Negligible
- Epistemic: direct Negligible, indirect Negligible
- Child sexual exploitation and abuse: direct Substantial, indirect Negligible
Financial
Reported: The report describes a civil lawsuit seeking a statutory minimum of $150,000 in damages per defendant, but does not explicitly quantify realized financial losses.
Directly caused: N/A
Indirectly caused: The school and the defendants face significant legal defense costs and potential damages from the federal lawsuit filed by the victims' parents.
Inferred additional harm: Significant legal fees for the school, the defendants, and the victims' families, as well as potential settlement or judgment costs.
Malicious content
Reported: The report explicitly describes toxic and malicious content created directly by the incident.
Directly caused: Two male students generated hundreds of deepfake nude images of over 50 female classmates and shared them in a Discord group chat.
Indirectly caused: N/A
Inferred additional harm: The generated images may have been further shared or saved on other devices or platforms beyond the initial Discord group chat.
Differential treatment
Reported: The report explicitly describes systematic differential treatment of individuals caused directly by the incident.
Directly caused: Over 50 female students were exclusively targeted for sexualized deepfake generation by male classmates, creating a hostile and unsafe educational environment specifically for female students.
Indirectly caused: N/A
Inferred additional harm: N/A
Civil rights
Reported: The report explicitly describes violations of human and civil rights caused directly and indirectly by the incident.
Directly caused: The female students' right to a safe, non-discriminatory educational environment was violated by the targeted sexual harassment and the school's alleged failure to protect them, leading to a Title IX lawsuit.
Indirectly caused: N/A
Inferred additional harm: N/A
Privacy
Reported: The report explicitly describes privacy violations caused directly by the incident.
Directly caused: The personal likenesses (faces) of over 50 female students were harvested and used without consent to generate synthetic pornographic images.
Indirectly caused: N/A
Inferred additional harm: N/A
Psychological
Reported: The report explicitly describes severe psychological and mental-health harm to the victims caused directly by the incident.
Directly caused: The creation and sharing of the deepfakes caused the victims to feel hurt, vulnerable, and scared to go to school, resulting in anxiety, panic attacks, depression, and PTSD, with some students unable to eat or get out of bed.
Indirectly caused: N/A
Inferred additional harm: Long-term psychological trauma and ongoing anxiety about the potential future resurfacing of these digital images are highly likely to affect the 50+ victims.
Child sexual exploitation and abuse
Reported: The report explicitly describes a CSEA incident involving AI-generated CSAM cases.
Directly caused: Two 16-year-old boys generated hundreds of deepfake nude images of their minor female classmates, which was characterized as child sexual abuse material.
Indirectly caused: N/A
Inferred additional harm: N/A
People affected
- Occurrences reported: 2
- People reportedly harmed: 50
- People reportedly exposed: 50
Potential causes
Management
- Failure of Mandated Reporting: School leadership did not fulfill moral or legal duties to report abuse.
- Lack of AI Misuse Policies: School handbook lacked explicit rules and discipline guidelines for AI misuse.
Technology
- Unsafeguarded AI Tools: AI platforms allowed generation of non-consensual deepfake pornography.
- Lack of Platform Filters: AI companies failed to block generation of explicit material depicting minors.
Data Inputs
- Use of Classmate Photos: Real faces of female students were harvested to train or seed the AI model.
Human Factors
- Malicious Student Conduct: Male students intentionally generated explicit deepfakes of classmates.
- Inadequate Parental Oversight: Parents failed to monitor children's online activities and use of AI tools.
Process and Methods
- Flawed Internal Investigation: School dropped the initial probe after the suspect simply denied the claims.
- Failure to Report Tip: School did not report the November 2023 tip to police or child services.
Regulatory Environment
- Legal Loophole for AI CSAM: Existing laws did not define AI-generated images of minors as child abuse.
- Delayed Legislative Action: Pennsylvania Act 125 was not yet in effect during the incidents.
Information quality
- Classification confidence: High
- Reason for confidence: The reports provide consistent, detailed accounts of the incident across multiple local news sources, including details of the victims, the timeline, the school's response, the legal proceedings, and the legislative impact.
- Ambiguities identified: There is some minor variation in the reported number of victims (some sources say 'more than 20', others say 'over 50').
- Alternative interpretations: None.
Two high school students used consumer AI tools to generate non-consensual deepfake pornographic images of over 50 classmates. While causing severe localized psychological harm and prompting legislative action, the incident does not present a direct threat to national security, critical infrastructure, or state sovereignty.
- Overall national security impact: Minor
- Response level: Moderate
- Scope: Single nation
- Primary target: United States
- Alleged perpetrator: Two 16-year-old male students
Threat characteristics
- Imminence: Long-term. The localized crisis is resolved, representing an ongoing policy and regulatory challenge rather than an imminent national security threat.
- Autonomy: Human-controlled. The AI tools were directly operated by human users to generate specific content, with no autonomous decision-making by the system.
- Novelty: Evolved capability. Deepfakes are an established threat, but the ease of generating high-volume, non-consensual CSAM using consumer-grade AI represents an evolved capability.
Impact by dimension
- Physical security: Negligible. No physical infrastructure, kinetic systems, or human safety systems were targeted or affected in this localized incident.
- Information security: Negligible. No national intelligence capabilities, classified models, or state-sponsored disinformation campaigns were involved.
- Sovereignty: Negligible. The incident did not threaten state authority or core government operations, though it did prompt local legislative updates to address legal gaps.
- Economic security: Negligible. No strategic economic systems, financial markets, or critical technological infrastructure were targeted or compromised.
- Societal stability: Minor. While causing severe psychological harm and violating the privacy and civil rights of over 50 minors, the societal impact remains localized rather than a threat to national stability.