Topic overview
Briefly
- Burnham received messages from a hoaxer pretending to be Trump aide Susie Wiles after taking office
- The FBI had already been investigating hacks targeting Wiles's phone and contacts since 2025
- Russian pranksters have previously duped Cameron, Wallace, and Johnson using similar impersonation
What happened
The incident involving Prime Minister Andy Burnham and a hoaxer impersonating White House chief of staff Susie Wiles represents a significant security concern for the British government. According to officials, the fraudulent communication occurred shortly after Burnham assumed office on July 20, 2026, when he entered 10 Downing Street. The impersonator managed to establish contact through text messages, engaging the newly installed prime minister in a series of exchanges before Burnham became suspicious of the correspondent's authenticity. A source familiar with the messages characterized them as being 'of no significance,' though this assessment has done little to quell concerns about how such a breach could occur at the highest level of government. The UK government has remained tight-lipped about the specifics, with a spokesperson declining to provide details by stating, 'We do not comment on national security matters.' However, it has been confirmed that no telephone conversation took place between Burnham and the imposter, and the suspicious activity was promptly reported to the appropriate authorities once detected.
This security lapse is particularly concerning given the pre-existing vulnerabilities surrounding Susie Wiles's communications. The FBI had already been investigating attempts by unknown individuals to access her personal phone, a matter first reported by The Wall Street Journal in May 2025. In that earlier incident, Wiles reportedly told associates that her phone had been compromised, with the hacker using her contacts list to message other high-ranking American officials, including US senators, governors, and business executives. The fact that a hoaxer could exploit this known vulnerability to target the British prime minister suggests either a continuation of the same security breach or a copycat operation that successfully leveraged the compromised contact information. British officials were reportedly concerned that Wiles's phone had been hacked again, indicating that the previous intrusion may not have been fully resolved or that new vulnerabilities had emerged.
The Burnham incident fits into a broader pattern of hoax communications targeting senior British politicians over the past three decades. Russian pranksters Alexei Stolyarov and Vladimir Kuznetsov, known professionally as Lexus and Vovan, have been particularly prolific in this regard. In June 2024, they released footage of a video call with then-foreign secretary David Cameron, whom they tricked into believing he was speaking with former Ukrainian president Petro Poroshenko. The 15-minute conversation ended when Cameron realized he had been duped. Earlier, in March 2022, the same duo targeted Defence Secretary Ben Wallace by impersonating Ukrainian prime minister Denys Shmyhal. In May 2018, they posed as Armenian prime minister Nikol Pashinyan in a call to Boris Johnson during his tenure as foreign secretary, during which Johnson discussed the UK's relationship with Moscow and the Salisbury nerve agent attack. These incidents demonstrate a persistent vulnerability in government communication protocols that has remained unaddressed despite repeated embarrassments.
The implications of the Burnham hoax extend beyond mere embarrassment. Such security breaches raise serious questions about the vetting processes for communications reaching the prime minister, particularly during the critical transition period following a change in government. The fact that an imposter could penetrate the communication channels of 10 Downing Street so soon after Burnham took office suggests potential gaps in the security apparatus during governmental transitions. Furthermore, the international dimension of the hoax, involving the impersonation of a senior American official, adds diplomatic complexity to an already sensitive situation. While officials have downplayed the significance of the exchanged messages, the incident underscores the ongoing threat posed by sophisticated social engineering attacks against government officials and highlights the need for enhanced verification protocols to prevent future breaches of this nature.

Comprehensive report
Full story,
in detail.
Trace the developments that led here, see how the story evolved, and understand the forces and wider context surrounding it.
