Cyberscoop AI-Driven Influence Operations Disrupted by OpenAI
Article Content
- •OpenAI disrupted Russian and Iranian AI-driven influence operations.
- •The Russian operation targeted Latin America, spreading propaganda against Ukraine.
- •Fake journalist personas were created to publish misleading articles in legitimate media.
OpenAI disclosed the shutdown of two influence operations linked to Russia and Iran that utilized AI tools, including ChatGPT, to create fake journalist personas and covert think tanks. The Russian operation, named 'Dark Clark', targeted Latin American politics, particularly aiming to undermine Ukraine's reputation while posing as a legitimate think tank. The Iranian campaign similarly employed AI to fabricate narratives about the U.S.-Iran conflict, using multiple fake journalist identities to publish articles in mainstream media. OpenAI's findings indicate that these operations were sophisticated, with evidence suggesting that local employees were unaware of their affiliations with foreign actors. The efforts highlight the growing use of AI in state-sponsored disinformation campaigns, raising concerns about the integrity of information in global media. OpenAI has not attributed these activities to specific government agencies but noted the complexity of the operations involved.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Internet Research Agency and LKM Company in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What specific tactics were used in these operations?
How were local employees involved?
What are the implications for media integrity?
Continue Reading
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…
Critical Authentication Bypass in Rejetto HFS Exploited Within 24 Hours Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with attacks traced to…