A coordinated influence operation, codenamed PRISONBREAK, was uncovered by Citizen Lab and Clemson University researchers, revealing the use of artificial intelligence to incite unrest in Iran. The operation involved a network of over 50 inauthentic accounts on the social media platform X, which were created in 2023 but became active primarily in 2025. These accounts systematically disseminated AI-generated imagery, deepfake videos, and fabricated news content designed to encourage Iranian citizens to revolt against the Islamic Republic. The campaign's activity was closely synchronized with real-world military actions, notably the Israeli Defense Forces' strikes against Iranian targets in June 2025. Researchers found that the operation mimicked legitimate news outlets to lend credibility to its disinformation, and some posts achieved tens of thousands of views, despite overall limited organic engagement. The PRISONBREAK network targeted large public communities on X and may have paid to promote its content, amplifying its reach within Iranian online spaces. After evaluating alternative explanations, Citizen Lab concluded that the most plausible scenario is that an unidentified Israeli government agency, or a closely supervised contractor, orchestrated the campaign. The operation's primary objective was to destabilize the Iranian regime by leveraging advanced AI tools to manipulate public opinion and sow discord. The campaign's timing and messaging were at least partially coordinated with Israeli military operations, suggesting a hybrid approach combining kinetic and information warfare. The use of AI-generated content marks a significant evolution in influence operations, enabling more convincing and scalable disinformation efforts. While the campaign's direct impact on Iranian society appears limited, its ability to reach large audiences and its sophisticated use of technology raise concerns about future state-sponsored influence operations. The PRISONBREAK case highlights the growing intersection of geopolitical conflict, artificial intelligence, and social media manipulation. Researchers emphasize the importance of monitoring such operations, as they represent a new frontier in psychological and information warfare. The findings underscore the need for robust detection and mitigation strategies to counter AI-enabled disinformation campaigns targeting vulnerable populations during periods of geopolitical tension.

Track how attackers are adapting to this technology.
3 events from the most recent confirmed update back to the earliest known activity.
By October 3, 2025, CyberScoop reported on Citizen Lab's findings that the Israeli government was likely responsible for the AI-generated disinformation campaign targeting Iran. This represented a public attribution of the operation to a likely state sponsor.
On October 2, 2025, Citizen Lab published its investigation into PRISONBREAK in multiple language editions, describing an AI-enabled influence operation targeting Iran. The report framed the activity as a coordinated disinformation campaign intended to undermine the Iranian government.
Citizen Lab reported that an AI-enabled influence operation dubbed PRISONBREAK was aimed at destabilizing and ultimately overthrowing the Iranian regime. The campaign used coordinated online influence tactics and AI-generated content directed at Iranian audiences.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
4 references tracked. Mallory keeps watching after this page renders.
cyberscoop.com
Open sourcecitizenlab.ca
Open sourcecitizenlab.ca
Open sourcecitizenlab.ca
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.