OpenAI has exposed two influence operations from Russia and Iran and banned the ChatGPT accounts connected to them. The Russian campaign, called Dark Clark, reached category 5 out of 6 on the Breakout Scale after politicians in Latin America reacted to its fabrications. The finding matters for business because the attackers placed fake material in legitimate outlets instead of relying on social media noise.

OpenAI bans ChatGPT accounts behind Russian and Iranian influence operations

How Dark Clark and Bogus Bylines operated

The Russian operation targeted Latin America with disinformation aimed at discrediting Ukraine and destabilizing local politics. Its operators ran a think tank through a fictitious persona and appear to have drawn in local staff members without their knowledge. Fabricated audio files and documents later prompted fact-checks and official denials in Ecuador and Peru. OpenAI said this was the first category 5 case in two and a half years of its reporting.

The Iranian operation, named Bogus Bylines, relied on seven fake journalists to place nearly 100 articles about the US-Iran conflict in online outlets around the world. Those personas produced commentary for social media as well, but that activity gained almost no traction. The contrast between the two campaigns shows different routes to the same goal: one built institutional cover, the other built author identities. Both avoided large bot networks described in earlier disclosures.

OpenAI noted that both groups used AI mainly for internal reporting and for adapting propaganda across languages. That pattern differs from fears of fully automated content farms generating thousands of posts per day. The company also recalled a previous Russian campaign built around social media and a fake think tank. In the new cases, the emphasis shifted toward credibility, with real news brands carrying the planted stories.

What planted stories mean for corporate trust

For companies that use AI in communications, sales, and research, the shift toward legitimate outlets raises the cost of verification. A fabricated document or audio file that triggers an official denial can enter market analysis, due diligence files, or regional risk assessments before correction. Small firms feel this through dependence on open sources, while large firms feel it through wider exposure across markets. Monitoring of regional media now requires the same discipline as monitoring social channels.

The limits of the disclosure deserve attention when selecting tools and procedures. OpenAI reported account bans and described tactics, but did not publish a full list of affected outlets or a method for retroactive screening. The news by itself does not mean that any specific publication is compromised or that AI detection alone solves the problem. Buyers should ask vendors how provenance is checked, how corrections propagate, and what evidence supports attribution.

The marker to watch is whether other AI providers or election observers report similar placements in established media over the next reporting cycles. A second category 5 case or confirmed coordination across platforms would confirm that institutional planting has become standard practice. That outcome would force corporate security and communications teams to treat every unsourced document as unverified by default.