APT28 uses LLM-powered malware LAMEHUG against Ukraine's security and defence sector
CERT-UA reports that the threat group UAC-0001 (APT28) distributed phishing emails to Ukrainian executive bodies, impersonating a ministry representative. The emails contained a malicious attachment that deployed LAMEHUG, a Python-based tool which uses the Qwen 2.5-Coder-32B-Instruct large language model via Hugging Face to generate commands for data collection and exfiltration. The malware gathered system information and searched for Microsoft Office, TXT and PDF documents in common user directories, exfiltrating them via SFTP or HTTP POST requests.
- Company involved
- UAC-0001 (APT28)
- AI system involved
- LAMEHUG
2 source articles · read the reporting →
Rep. Anna Paulina Luna denies staff used AI to draft defence amendment
Rep. Anna Paulina Luna's congressional office used Claude, an AI chatbot, to spellcheck and grammar-check a summary of an amendment to the 2027 National Defense Authorization Act. Screenshots of the summary circulated online because it still contained the text 'Claude responded:'. Luna initially said staff used AI to correct draft text and did not edit it, then clarified that AI was only used on the summary and that no legislation is drafted with AI. The incident drew public speculation about AI use in legislative work.
- Company involved
- Office of Rep. Anna Paulina Luna
- AI system involved
- Claude
2 source articles · read the reporting →
Mag 7 Ltd. et al. v. Tederi et al. (District Court, Tel Aviv-Yafo): AI-hallucinated content in court filing, Monetary Sanction;…
The AI generated fabricated case law that was submitted to the court, affecting the legal proceedings.
1 source article · read the reporting →
Dr. Yeung sues Google over autocomplete label 'triad'
Dr. Yeung, Sau Shing Albert brought a defamation lawsuit against Google Inc. after the search engine's autocomplete feature associated his name with the word 'triad' when users typed his name. Google's autocomplete algorithm generated the suggestion based on aggregated search data without human input. The Hong Kong court dismissed the case as unsuitable for summary judgment, finding it raised complex factual and legal questions about whether Google could be considered a publisher of automated search suggestions. The court granted Google leave to appeal the decision in October 2014, and the case remains pending.
- Company involved
- Google Inc.
- AI system involved
- Google Search autocomplete feature
10 source articles · read the reporting →
Argentine judge's sentence annulled after ChatGPT use revealed by copy-paste phrase
A criminal court in Esquel, Chubut, Argentina, annulled a sentence after discovering that Judge Carlos Rogelio Richeri had used ChatGPT to draft the decision. The judge accidentally left in the phrase 'Aquí tienes el punto IV reeditado, sin citas y listo para copiar y pegar,' revealing the AI's involvement. The appeals court ruled that delegating the judicial decision to AI violated the principle of a natural judge and ordered a new trial with a different judge, while the Superior Tribunal of Justice will investigate the judge's ethical lapse.
- Company involved
- Juzgado Penal de Esquel
- AI system involved
- ChatGPT
3 source articles · read the reporting →
Sentenza del 23.09.2025 (Tribunale di Latina): AI-hallucinated content in court filing, Monetary Sanction
The AI-generated court filing contained fabricated case law, leading to a monetary sanction against the party represented by the lawyer.
1 source article · read the reporting →
Unnamed Brazilian litigant (): AI-hallucinated content in court filing, Appeal partially granted (reintegration suspended, rent imposed), but
AI-generated fake court precedents were included in a legal appeal, leading to sanctions against the litigant for bad-faith litigation.
- AI system involved
- ChatGPT
1 source article · read the reporting →
GEMA sues OpenAI for unlicensed use of song lyrics in ChatGPT training
On 13 November 2024, German copyright collective GEMA filed a lawsuit against OpenAI in Munich, alleging that the company used copyrighted song lyrics from GEMA's repertoire to train its ChatGPT chatbot without obtaining licenses or paying authors. GEMA claims that when prompted, ChatGPT reproduces original song lyrics, demonstrating the unauthorized use. The lawsuit seeks to establish that OpenAI must compensate the approximately 100,000 GEMA members. The case is pending before the Munich Regional Court.
- Company involved
- OpenAI
- AI system involved
- ChatGPT
6 source articles · read the reporting →
Erin Booker v. The Kroger Co. (N.D. Georgia): AI-hallucinated content in court filing, Monetary Sanctions; CLE
The court imposed monetary sanctions and continuing legal education requirements on plaintiff's counsel for using AI-generated fake legal authorities in a court filing.
1 source article · read the reporting →
Barteca Holdings v. Tacobarn (D. Connecticut): AI-hallucinated content in court filing, Monetary Sanction; Bar Referral
The attorney filed a court document containing AI-hallucinated legal authorities, misleading the court and opposing party.
- Company involved
- Hilary Miller
1 source article · read the reporting →
TOV Realty, LLC v. Suarez; Kosel Equity, LLC v. MacGregor (SC Connecticut): AI-hallucinated content in court filing, 6 hours CLE;…
The AI generated legal briefs containing fabricated citations, which were submitted to the Connecticut Supreme Court.
- Company involved
- GLG Law LLC
- AI system involved
- ChatGPT
1 source article · read the reporting →
In re Rosslyn2016, LLC, et al. (S.D. Texas (Bankruptcy)): AI-hallucinated content in court filing, CLE on generative AI; Civil Contempt;…
The AI generated fabricated legal citations that were submitted to the bankruptcy court.
1 source article · read the reporting →
Italian court rules Google liable for autocomplete defamation
A Milan court found Google guilty of libel after its autocomplete function linked an unnamed businessman's name with the terms 'conman' and 'fraud'. The entrepreneur, who provides educational services in personal finance, complained that these suggestions damaged his public image. Google argued it was not responsible for the algorithmically generated terms, but the court ordered the removal of the offending suggestions. The company expressed disappointment, stating that autocomplete predictions are based on previous users' searches.
- Company involved
- Google
- AI system involved
- Google Autocomplete
10 source articles · read the reporting →
Quinteros v. Harbor Distributing, LLC (CA California (1d)): AI-hallucinated content in court filing, Monetary Sanction; Bar referral
AI generated hallucinated legal citations that were filed in court, misleading the court and opposing counsel.
- Company involved
- Lipeles Law Group
1 source article · read the reporting →
LINAGORA closes Lucie 7B after user mockery
LINAGORA, a French open-source software company, launched a beta version of its large language model Lucie 7B. The model was intended to be a transparent and ethical alternative to big tech AI. However, after users tested it and highlighted its shortcomings, the model was mocked online. LINAGORA subsequently closed the platform to address the issues and collect more data.
- Company involved
- LINAGORA
- AI system involved
- Lucie 7B
6 source articles · read the reporting →
Sudowrite AI found to have absorbed Omegaverse fan fiction
Sudowrite, a writing tool based on OpenAI's GPT-3, was found to have knowledge of the Omegaverse, a specific fan fiction trope. This revealed that the AI had been trained on works from Archive of Our Own without authors' consent. Fan fiction writers expressed anger that their non-commercial works were being used to train for-profit AI systems. Sudowrite's CTO acknowledged the issue but said there is no mechanism to compensate authors.
- Company involved
- Sudowrite
- AI system involved
- Sudowrite
10 source articles · read the reporting →
Salvini and Lega used non-watermarked AI images in EU election campaign
Matteo Salvini and his party Lega created and posted 19 allegedly non-watermarked AI-generated images on social media as part of their 'More Italy, less Europe' electoral campaign. The images promoted false narratives about the EU, including the 'Muslim Great Replacement' theory and EU support for war in Ukraine. The posts reached millions of users, including a paid Facebook ad that reached over 3 million people. Alliance4Europe reported the incident, highlighting that the posts violated the voluntary 2024 European Parliament Elections Code of Conduct.
- Company involved
- Lega
5 source articles · read the reporting →
King Features AI tool produces reading list recommending nonexistent books
King Features, a content syndication unit of Hearst, has acknowledged that a summer reading list it produced for newspapers was created with an AI tool and included books that do not exist. A freelance creator used the AI agent without disclosing it, contrary to King Features' policy. The Chicago Sun-Times, which published the section, removed it from its e-paper and said subscribers would not be charged.
- Company involved
- King Features
5 source articles · read the reporting →
Voice actors sue LOVO over alleged theft of voices for AI training
Voice actors Paul Skye Lehrman and Linnea Sage filed a proposed class action against AI startup LOVO, alleging the company misappropriated their voices to train its text-to-speech system Genny. The actors claim they were hired on Fiverr under the pretence of academic research but later discovered their voices were used commercially without consent. Lehrman reports a 50% decline in work and loss of control over how his voice is used. The lawsuit, filed in New York federal court, seeks to represent other affected voiceover artists and obtain a court order blocking the practice.
- Company involved
- LOVO
- AI system involved
- Genny
6 source articles · read the reporting →
Authors sue OpenAI and Microsoft for copyright infringement over AI training
In January 2024, journalists and authors Nicholas Basbanes and Nick Gage sued OpenAI and Microsoft for copyright infringement. The lawsuit alleges that the companies used their published journalism to train large language models without permission or compensation. The case has been folded into a class action brought by the Authors Guild. The AI firms have denied any wrongdoing, and the case is still making its way through the legal system.
- Company involved
- OpenAI
- AI system involved
- Large language model (ChatGPT)
8 source articles · read the reporting →
Meta's AI sticker tool generates lewd, rude, and nude images
Meta's new AI-generated sticker feature on Facebook Messenger allowed users to create inappropriate images, including child soldiers, nude politicians, and sexualised characters. The tool, powered by Meta's Llama 2 model, was found to have insufficient content filters, enabling users to bypass restrictions with typos. Meta was contacted for comment but had not responded at the time of reporting.
- Company involved
- Meta
- AI system involved
- AI-generated sticker tool
1 source article · read the reporting →
Paper Werewolf uses AI-generated decoys and XLLs to target Russian organizations
The threat group Paper Werewolf (aka GOFFEE) is conducting a cyberespionage campaign targeting Russian defense and high-technology organizations. The campaign uses AI-generated decoy documents, such as invitations and official letters, to trick recipients into opening malicious Excel XLL add-ins that deliver a backdoor called EchoGather. The backdoor collects system information and communicates with a command-and-control server. The campaign is ongoing and was first detected in late October 2025.
- Company involved
- Paper Werewolf
- AI system involved
- EchoGather
2 source articles · read the reporting →
Herbert Brooks v. Lowes Home Centers LLC (W.D. Louisiana): AI-hallucinated content in court filing, Monetary Sanction; CLE
Generated a legal brief with hallucinated case law, filed in court.
- AI system involved
- Claude
1 source article · read the reporting →