OpenAI Bans Russian ChatGPT Accounts Used to Run Influence Operation

A sophisticated influence operation has been dismantled, with OpenAI taking swift action against a network of Russian-language ChatGPT accounts used to spread disinformation and propaganda. The operation, which had been ongoing since 2025, involved the use of AI-powered chatbots to generate convincing content that was then disseminated through various online channels.

According to reports, the affected ChatGPT accounts were created using stolen identities and login credentials, allowing their operators to bypass moderation checks and spread their influence more effectively. The operation’s scope is not entirely clear, but it appears to have targeted a wide range of online platforms, including social media, forums, and even some gaming communities.

At its core, the influence operation relied on a clever manipulation of the boundaries between different online services. By using cross-domain privilege escalation techniques, the operators were able to leverage vulnerabilities in various platforms’ permissions systems to gain unauthorized access to sensitive areas. This allowed them to create convincing profiles, engage with users, and even manipulate content to further their goals.

One expert notes that this type of operation is particularly insidious because it plays on the very nature of online communities, which are built around trust and shared identity. “When an attacker can convincingly adopt a persona or hijack an existing one,” they explain, “it becomes almost impossible for users to distinguish between authentic content and malicious propaganda.”

The takedown of this operation sends a clear message about the importance of robust cybersecurity measures in the age of AI-powered disinformation. As we increasingly rely on online platforms for information, social interaction, and even entertainment, it’s crucial that we remain vigilant against such threats. OpenAI’s swift action here should serve as a model for other companies to follow in protecting their users from similar attacks.

For those concerned about their own online security, the takeaway is clear: be cautious of unsolicited interactions or content that seems overly convincing. Verify the authenticity of sources and profiles, and report any suspicious activity to platform administrators immediately. By staying informed and mindful of potential threats, we can all play a role in protecting our online communities from these insidious influence operations.


Source: The Hacker News — 2026-08-26