North Korean Hackers Use ChatGPT for Deepfake ID in Cyberattack

September 17, 2025
North Korean hackers, identified as the Kimsuky group, used ChatGPT to create a deepfake military ID for a cyberattack on South Korean targets, according to a report by Genians.

Kimsuky, a North Korean state-sponsored hacking group, has reportedly used ChatGPT to create a deepfake military ID document as part of a cyberattack on South Korean targets. This information was revealed in a report by Genians, a South Korean cybersecurity firm, and reported by Bloomberg.

The hackers crafted a fake draft of a South Korean military identification card using the AI tool to enhance the credibility of a phishing attempt. The email containing the fake ID linked to malware designed to extract data from the recipients' devices. The attack targeted South Korean journalists, researchers, and human rights activists focused on North Korea.

Genians' research indicates that the hackers bypassed ChatGPT's restrictions on generating government ID replicas by altering prompts to request mock-ups for legitimate purposes. This incident highlights the increasing use of AI in cyber-espionage activities by North Korean operatives.

The Kimsuky group has been previously linked to other espionage efforts against South Korean entities. The U.S. Department of Homeland Security has identified Kimsuky as a unit tasked by the North Korean regime with global intelligence-gathering missions.

We hope you enjoyed this article.

Consider subscribing to one of our newsletters like Cybersecurity AI Weekly or Daily AI Brief.

Also, consider following us on social media:

Subscribe to Cybersecurity AI Weekly

Weekly newsletter about AI in Cybersecurity.

Whitepaper

Tensordyne Napier: What If One Rack Could Do the Work of Nine?

Tensordyne

This Tensordyne whitepaper presents Napier, an inference-focused AI processor and rack-scale system based on the company’s TDN Math logarithmic number system. It examines infrastructure requirements for large mixture-of-experts and agentic models, compares major inference architecture approaches, and details the TDN AIP processor, TDN72 pod, TDN Link fabric, and Napier Ultra configuration. The paper reports simulation-based performance, cost, and accuracy-validation results, including Tensordyne’s projected comparison of one Napier rack with a nine-rack Nvidia Rubin plus Groq deployment; the chip is reported as taped out and in fabrication.

Read more