Storm-1516 Reportedly Spread Fabricated Narratives Targeting Firebird Data Center in Armenia

Foreign state actors, including those from Russia and China, are utilizing AI-generated content to manufacture and amplify opposition to data center construction projects in the U.S. and Armenia. These campaigns involve fabricated news articles, AI-generated imagery, and automated social media accounts designed to exploit local grievances and erode trust in infrastructure and Western technology. While the impact on public opinion is still being assessed, these efforts represent a coordinated attempt to deepen domestic fractures and undermine technological development.

Alethea reported that Storm-1516, a Russian influence operation, targeted Firebird's NVIDIA-powered data center under construction in Hrazdan, Armenia, with purportedly fabricated media narratives designed to make the project appear dangerous and economically unstable. The campaign allegedly used imitation tech-news articles to cast the facility as a liability for Armenia's infrastructure and Western-aligned technology ambitions.

Source: AI Incident Database

Risk classification

  • Primary risk domain: 4 Malicious actors
  • Primary risk subdomain: 4.1 Disinformation, surveillance, and influence at scale

Foreign state actors are using AI-generated content and social media campaigns to conduct coordinated, large-scale influence operations aimed at manipulating U.S. public opinion and political debate surrounding data centers.

Additional risk subdomains

  • 3.2 Pollution of information ecosystem and loss of consensus reality: The high-volume generation of AI 'slop' and fabricated news articles pollutes the information ecosystem and degrades the quality of public discourse.

Causal factors

  • Entity: Human
  • Intent: Intentional
  • Timing: Post-deployment

The risk is driven by human adversaries who intentionally use deployed AI systems to generate and spread divisive propaganda.

EU AI Act risk tier

  • Risk tier: 3 Limited Risk

Risk Level 3: Limited Risk. The report describes the use of chatbots like ChatGPT and AI-generated content (images and narrated videos) to create deepfakes and synthetic media, which are subject to transparency obligations under the EU AI Act.

AI system and alleged parties

  • AI system: ChatGPT (OpenAI)
  • AI purpose: Social Media Content Generation; Writing Assistant
  • Behaviour type: Assistant
  • Alleged developer: Generative AI system developers
  • Alleged deployer: Storm-1516, Pro-Russian information manipulation actors, Operators of inauthentic media sites, Information manipulation actors
  • Alleged harmed parties: X (Twitter) users, United States-Armenia technology cooperation stakeholders, United States-Armenia relations, Social media users, Public trust in AI infrastructure, General public of Armenia, General public, Firebird, Epistemic integrity

Harm severity

Highest direct severity in any category: Substantial. Severity is scored from Negligible to Catastrophic in each harm category, for harm the reports describe as caused directly or indirectly by the AI system.

  • Physical: direct Negligible, indirect Negligible
  • Infrastructure: direct Negligible, indirect Negligible
  • Property: direct Negligible, indirect Negligible
  • Financial: direct Negligible, indirect Negligible
  • Environmental: direct Negligible, indirect Negligible
  • Malicious content: direct Minor, indirect Minor
  • Differential treatment: direct Negligible, indirect Negligible
  • Civil rights: direct Negligible, indirect Negligible
  • Democracy: direct Minor, indirect Minor
  • Privacy: direct Negligible, indirect Negligible
  • Psychological: direct Negligible, indirect Negligible
  • Epistemic: direct Minor, indirect Minor
  • Child sexual exploitation and abuse: direct Negligible, indirect Negligible

Malicious content

Reported: Yes, the report explicitly describes the creation and spread of malicious propaganda and AI-generated 'slop' content.

Directly caused: Operatives used ChatGPT to generate covert social media campaigns, including a comic strip on X blaming data centers for high electricity bills, and AI-generated 'slop' images like an obscene hand gesture carved into crops.

Indirectly caused: The campaigns amplified existing domestic grievances and local opposition to data centers across mainstream and fringe social media platforms.

Inferred additional harm: It is likely that thousands of additional AI-generated images, videos, and text posts were spread across platforms like Facebook, Instagram, and TikTok, reaching a wider audience than documented.

Democracy

Reported: Yes, the report explicitly describes attempts by foreign adversaries to stoke domestic discord and influence public opinion ahead of elections.

Directly caused: Foreign actors used AI-generated content to turn local controversies into 'domestic fracture points' to deepen divisions and weaken the U.S. from within.

Indirectly caused: The campaigns exploit genuine public concerns to manipulate political debate, potentially influencing voters and putting pressure on elected officials heading into midterm elections.

Inferred additional harm: Continued use of AI-driven covert influence operations could systematically erode public trust in democratic institutions, infrastructure planning, and the integrity of political discourse.

Epistemic

Reported: Yes, the report explicitly describes the generation of fabricated news articles and false narratives using AI.

Directly caused: The Russian operation Storm-1516 created fabricated articles on domains imitating TechCrunch and Gizmodo, falsely attributing claims about grid instability and earthquake risks to real tech journalists.

Indirectly caused: The proliferation of AI-narrated 'breaking news' videos on TikTok and AI-generated 'slop' on Facebook pollutes the information environment, making it harder for citizens to distinguish organic grassroots concerns from foreign propaganda.

Inferred additional harm: The widespread dissemination of highly realistic fabricated news and AI-narrated content likely misleads a portion of the public, eroding shared consensus reality regarding technological and infrastructure developments.

People affected

  • Occurrences reported: 1
  • People reportedly exposed: 10000

Potential causes

Management

  • Misreading Narrative Threats: Failure to recognize coordinated narrative campaigns as security reconnaissance.
  • Siloed Threat Intelligence: Management did not integrate CISO, CCO, and government affairs response.
  • Slow Response Windows: Organizations lacked proactive monitoring to catch fake claims before escalation.

Technology

  • Abuse of GenAI Tools: Operatives used ChatGPT to generate deceptive social media campaigns.
  • AI-Generated Slop and Images: Anonymously run pages used AI to scale emotional, anti-data center imagery.
  • Fake News Generation: Russian Storm-1516 used AI to generate fake tech journalist articles.

Data Inputs

  • Thermal and Satellite Data: Thermal and satellite imagery was used to exaggerate environmental impacts.
  • Inauthentic Location Data: Accounts run from Bangladesh used fake local US names to mimic residents.

Human Factors

  • Public Anxiety and Hostility: Deep public ambivalence and fear about AI infrastructure were easily exploited.
  • Susceptibility to Rage Bait: Users engaged with emotionally charged, AI-generated 'rural rage bait'.
  • Adoption of Adversary Tactics: Domestic political candidates copied foreign AI-generated video aesthetics.

Process and Methods

  • Inadequate Platform Moderation: Social media platforms failed to quickly block AI-generated campaigns.
  • Lack of Attribution Capabilities: Difficulty in identifying the source of AI-generated content in real time.
  • Absence of Joint Threat Response: Security and communication teams worked in silos rather than a unified front.

Regulatory Environment

  • Lack of AI Content Standards: Absence of regulations on labeling AI-generated political content.
  • Weak Foreign Influence Oversight: Dismantling of government teams that tracked foreign influence operations.
  • Permit and Siting Vulnerabilities: Fragmented local regulatory processes allowed campaigns to stall infrastructure.

Information quality

  • Classification confidence: High
  • Reason for confidence: The reports provide high-quality, detailed threat intelligence from credible sources (The New York Times and Alethea) with specific examples of campaigns, platforms used, and attribution details. The role of AI systems like ChatGPT is explicitly stated and confirmed by OpenAI, leaving little ambiguity about the nature of the incident.
  • Ambiguities identified: The exact reach and quantitative impact of the campaigns on public opinion remain difficult to measure, as noted by the reports.
  • Alternative interpretations: Some actors argue that the opposition to data centers is entirely organic and that foreign interference is being exaggerated by industry lobbyists to discredit legitimate environmental concerns.

Foreign state actors from China, Russia, and Iran are using generative AI to manufacture and scale disinformation campaigns targeting U.S. and Armenian data center projects. By exploiting local infrastructure disputes, these adversaries aim to undermine Western technological development and degrade public trust. While direct impact remains limited, it represents a substantial information warfare and economic security concern.

  • Overall national security impact: Substantial
  • Response level: Substantial
  • Scope: Multiple nations
  • Primary target: United States
  • Other affected: Armenia
  • Alleged perpetrator: China, Russia, and Iran

Threat characteristics

  • Imminence: Long-term. Represents an ongoing strategic influence capability and persistent threat to public discourse rather than an immediate, acute crisis.
  • Autonomy: Human-controlled. AI systems served as content generation tools under direct human control, requiring human prompting and deployment to execute the operations.
  • Novelty: Evolved capability. Represents an evolved capability where traditional state-sponsored disinformation playbooks are augmented and scaled using generative AI tools.

Impact by dimension

  • Physical security: Minor. No direct physical damage or cyber-physical attacks occurred. The campaign targeted public perception of data centers rather than executing kinetic or control system attacks.
  • Information security: Substantial. Foreign state actors from China, Russia, and Iran deployed AI-generated content, cloned news sites, and deepfakes in coordinated covert campaigns to manipulate public opinion.
  • Sovereignty: Minor. Attempts to manipulate local infrastructure decisions and political discourse ahead of elections represent foreign interference, though core government functions remain undisrupted.
  • Economic security: Substantial. The campaigns specifically target data center construction, which is vital for AI compute infrastructure, aiming to undermine US and Western technological development and strategic advantage.
  • Societal stability: Minor. AI-generated content and social media campaigns were used to exploit local grievances and deepen domestic divisions, though they did not trigger large-scale civil unrest.
Explore in the interactive Incident Tracker