OpenAI said it banned accounts apparently linked to entities in the People’s Republic of China after they used ChatGPT to support surveillance-related planning, targeted profiling, and research on critics and other individuals. According to the company, the activity focused on drafting plans, proposals, and promotional materials for social media monitoring tools rather than having the model directly perform monitoring or build operational systems.
The reported use cases included a proposal for a "High-Risk Uyghur-Related Inflow Warning Model" that would compare transport booking data with police records, efforts to identify funding sources for an X account critical of the Chinese government, attempts to identify organizers of a petition in Mongolia, and requests to summarize politically sensitive news relevant to China. OpenAI said it could not independently verify whether the proposed tools were ultimately deployed by Chinese government entities, but described the activity as part of broader malicious use of AI tied to surveillance and influence operations.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
On October 1, 2025, OpenAI published a case study describing PRC-linked abuse involving surveillance and influence-related activity. The company said the observed behavior appeared consistent with individual users leveraging ChatGPT for planning and research rather than large-scale institutional deployment.
OpenAI reported that it banned accounts apparently linked to PRC government entities for using ChatGPT to support surveillance-related planning, targeted profiling, and research on critics and other individuals. The activity included proposals for a social media monitoring tool, a Uyghur-related travel warning model, and targeted open-source research requests.
OpenAI disclosed that it banned a cluster of ChatGPT accounts, dubbed Operation “Peer Review,” that likely originated in China and used the service to support surveillance-related research, profiling, and development of the Qianyue social media monitoring tool. OpenAI said the activity involved manual prompting for political research, document translation and analysis, comment drafting, and code debugging, but it found no evidence its own models powered the surveillance tool itself.
OpenAI said it had previously reported in February on a case involving the design of an AI-powered social media listening tool allegedly intended for Chinese security forces.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.