Russia-linked GREYVIBE cyber group uses ChatGPT, Gemini, and Ideogram AI in Ukraine-targeted espionage campaign
By
Carly Page
Crispy enough to crunch, soft enough to enjoy. A good bake.
Summary
A Russia-linked cyber espionage group tracked as "GREYVIBE" has been using AI tools including OpenAI's ChatGPT, Google's Gemini, and Ideogram AI across nearly every stage of its operations targeting Ukrainian military, government, civilian, and business organizations since at least August 2025. Researchers at WithSecure report the group used AI for crafting spear-phishing lures, building malware, and spinning up infrastructure. The campaign demonstrates how state-aligned threat actors are increasingly incorporating generative AI into cyber operations.
Key quotes
· 3 pulledRussia-linked cyber espionage crews appear to be using AI tools to help build malware, spin up infrastructure, and craft lures for attacks on Ukrainian targets.
Researchers at WithSecure say a previously undocumented threat group, tracked as 'GREYVIBE,' has been using OpenAI's ChatGPT, Google's Gemini, and Ideogram AI across almost every stage of its operations targeting Ukraine.
The campaign has hit military, government, civilian, and business organizations since at least August 2025.
You might also wanna read
Analysis of First Reported AI-Orchestrated Cyber Espionage Campaign Detected in 2025
The article describes the discovery and analysis of the first reported AI-orchestrated cyber espionage campaign detected in mid-September 20

Anthropic Report Reveals AI 'Vibe-Hacking' Threat Targeting Critical Organizations
Anthropic's new Threat Intelligence report reveals that AI agents like Claude Code are being weaponized by cybercriminals in a technique cal

Security Researchers Discover ChatGPT Vulnerability That Could Extract Sensitive Gmail Data
Security researchers from Radware discovered a vulnerability called 'Shadow Leak' that allowed ChatGPT to be manipulated into extracting sen
Google Confirms First Known Case of Hackers Using AI to Discover Software Vulnerability
Google's security researchers have identified the first known instance of criminal hackers using artificial intelligence to discover a previ
Chinese Official's ChatGPT Use Reveals Global Intimidation Campaign Against Dissidents
A Chinese law enforcement official's use of ChatGPT to document a covert influence operation accidentally revealed a global campaign to inti
Security Vulnerability: Google's Antigravity AI Susceptible to Indirect Prompt Injection Attacks
The article describes a security vulnerability where Google's Antigravity AI system (likely referring to Gemini) can be manipulated through
promptarmor.com·6mo ago