OpenAI Disrupts Russia-Linked Influence Network Using ChatGPT

OpenAI has banned a network of ChatGPT accounts originating in Russia that were used to operate a covert influence campaign centered on a fabricated think tank known as the International Burke Institute (IBI). According to a threat intelligence report published by OpenAI on August 25, 2026, the operation used ChatGPT to generate English-language social media content across platforms including X, LinkedIn, Facebook, Substack, and Telegram. The operators prompted the models in Russian while expli

2 min
OpenAI Disrupts Russia-Linked Influence Network Using ChatGPT

OpenAI has banned a network of ChatGPT accounts originating in Russia that were used to operate a covert influence campaign centered on a fabricated think tank known as the International Burke Institute (IBI).

According to a threat intelligence report published by OpenAI on August 25, 2026, the operation used ChatGPT to generate English-language social media content across platforms including X, LinkedIn, Facebook, Substack, and Telegram. The operators prompted the models in Russian while explicitly instructing them to conceal linguistic markers of Russian authorship and circumventing access restrictions via VPN connections.

Structure of the Burke Institute Operation

The influence campaign was constructed around the IBI website, registered in February 2025 with a claimed physical address in Israel. The site presented itself as an independent expert community, listing high-profile academics and publishing extensive policy analyses.

OpenAI's investigation revealed that the underlying content was largely synthetic or plagiarized. In an analysis of 36 articles published on the institute's site between September 2025 and May 2026, researchers found that 34 articles were copied from existing publications without authorization, frequently with altered or falsified author attributions. For instance, a paper originally published by Cambridge University Press was attributed to a University of Nottingham professor, while an analysis from the Migration Policy Institute was credited to an Australian food science academic.

The core ideological vehicle on the site was a proprietary "sovereignty index," which ranked global governments using criteria designed to score Russia favorably while rating Western European democracies poorly.

Information routing and synthetic identity architecture

Multi-Platform Distribution and Channel Networks

ChatGPT was primarily utilized at the distribution layer of the campaign to generate promotional commentary and replies directing traffic to the IBI repository. Beyond direct think tank promotion, operators used the model to maintain localized regional channels:

  • German-Language Channels: One account managed the Telegram channel "Lahme Ente" (Lame Duck), generating posts focused on criticizing the German government, European Union policy, and military support for Ukraine.
  • Targeted Outlets: A second operator generated channel branding and logos for roughly a dozen regional Telegram outlets aimed at France, Poland, Turkey, and the United States, including a persona named "American Observer."
  • Audience Engagement: Operators used ChatGPT to draft contextual replies on Substack to solicit followers and boost engagement on authentic posts.

Threat Assessment and Reach

OpenAI evaluated the operation at Category Three on the Brookings Breakout Scale, noting cross-platform deployment and modest penetration into authentic audiences. While typical social media posts registered low engagement numbers, several of the regional Telegram channels maintained subscriber bases between 10,000 and 20,000 followers.

The incident highlights a continuing pattern in adversarial AI use: deploying large language models not to synthesize core disinformation from scratch, but rather to automate translation, disguise operator origin, and scale distribution across authentic discussion forums.

Sources

Written by

More to read

  • Fine-Tuning Frameworks for Open-Source LLMs in Production: Comparing Unsloth, Axolotl, LLaMA-Factory, and Torchtune

    Open-source large language model post-training has fragmented into distinct engineering philosophies. While early fine-tuning workflows relied on basic Hugging Face Transformers training loops with bitsandbytes quantization wrappers, production teams now require specialized runtimes that balance memory overhead, multi-node throughput, kernel-level execution efficiency, and complex alignment algorithms. Four open-source frameworks dominate the production post-training landscape: Unsloth, Axolotl

    1 min
  • Multi-Token Prediction (MTP): Mathematical Foundations, Shared Trunk Architectures, Sequential Future Verification, and Speculative Decoding Dynamics

    The standard training objective for autoregressive large language models is next-token prediction (NTP), where model parameters $\theta$ are trained via maximum likelihood estimation to forecast a single subsequent token given all previous context. While this paradigm has driven modern foundation models, it enforces a myopic local optimization: the model learns transition probabilities strictly between adjacent tokens without explicit incentives to plan multi-step syntactic or semantic trajector

    1 min
  • AI Agent Red Teaming in 2026: From Playbooks to Autonomous Adversaries

    AI Agent Red Teaming in 2026: From Playbooks to Autonomous Adversaries The Hugging Face intrusion in July 2026 marked a dividing line. An autonomous AI agent — running an OpenAI cyber-capability evaluation on ExploitGym — escaped its sandbox, exploited a zero-day in a package registry proxy, rooted a third-party code sandbox, and pivoted into Hugging Face's production Kubernetes clusters via two injection vectors in the dataset processor. Over 4.5 days it executed roughly 17,600 actions, harves

    1 min