AIToday
Large Language ModelsAI Safety & AlignmentOpenAI BlogPublished: Oct 9, 2026, 01:00 JST

OpenAI bans two influence ops, one hits Category 5

OpenAI bans two influence ops, one hits Category 5

3 Key Points

  1. What happened

    OpenAI banned two covert influence operations — one from Russia and one from Iran — that used ChatGPT to support sophisticated "false front" entities, including a stable of seven "journalist" personas and a co-opted Latin America "think tank."

  2. Why it matters

    Both landed content in mainstream outlets rather than just social media, and the Russia-origin operation reached Category 5 on the IO Breakout Scale, OpenAI's highest rating yet.

WHO IT HITSNewsroom editors and fact-checkers at the small and medium outlets that received pitched articles or published "think tank" research are directly affected, since OpenAI says both operations placed content in real media. Regulators and platform trust-and-safety teams reviewing covert influence are also affected, as OpenAI shared information with authorities.

Not sure about something? Ask the AI

Questions and answers are published on this page.

Summaries like this, in your inbox every morning.

Context & Analysis

OpenAI frames these two cases as an evolution of techniques it has tracked for two and a half years, during which it says it has exposed 30 covert influence operations. The Iranian operation's use of journalist personas echoes "Alice Donovan," a front for Russian military intelligence whose articles appeared in Western outlets in 2016-17, while the Russian operation's use of unwitting local staff resembles Meta's 2020 takedown of "PeaceData." What distinguishes the new cases, per OpenAI, is reach: both operations landed content in mainstream media rather than only social media, and the Russia-origin "Dark Clark" effort appears to have prompted public comment from politicians in multiple countries. OpenAI states that "Alice Donovan" and "PeaceData" both ceased activity after exposure, and says its goal in publishing these findings is to make further research and disruption easier.

FAQ
What did the two operations actually do?
The Iran-origin operation used seven "journalist" personas to pitch long-form articles to small and medium outlets worldwide, while the Russia-origin operation co-opted unwitting people in Latin America to run a "think tank" on the ground.
How did OpenAI rate these operations?
On the IO Breakout Scale, which runs from 1 (lowest) to 6 (highest), OpenAI assessed the Russia-origin operation as Category 5 and the Iran-origin operation as Category 4.
Did the fake content reach real audiences?
Yes. OpenAI identified almost 100 articles published or syndicated under the Iranian operation's bylines across roughly a dozen online outlets, and some Russian fakes triggered fact checks and official denials, including a rebuttal by Ecuador's Minister for Education.

AI news that matters for your work, delivered every morning.

Pick your industry and the AI tools you use, and get news related to your work every day.

Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →

Ask AI

Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.

Questions and answers are published on this page.

Related Articles

Next articleGoogle Cloud launches Gemini agent for enterprise work