Evidence over alarm
← Back to the incident library
Malicious useCASE STUDY / Reported by Microsoft and OpenAI

An espionage group gets help with its homework

Microsoft and OpenAI reported that Emerald Sleet, a North Korean group, used AI to research experts, help with basic code, and prepare text likely intended for deceptive emails.

Source: Microsoft Threat Intelligence
ACTIVITYIndividual activity dates not disclosed
PUBLICLY DISCLOSEDFeb 14, 2024
THE AI’S ROLEAI helps with individual tasks
THE 10-SECOND TAKEAWAY

AI was already helping attackers prepare their work.

HOW IT WORKED

Follow the chain.

An explanation, not a technical reproduction.
Operator
AI research
Potential contacts
SIMPLIFIED VIEW · 1 / 3
STEP 01

Find people to approach

AI helped research relevant experts and organizations.

Source: Microsoft Threat Intelligence
Move through the story at your own pace.
1 / 3
THINK OF IT THIS WAY

A deceptive caller gets a research assistant and a writing assistant. The caller still directs the plan.

An analogy for the mechanism; not an additional claim about the incident.
KEEP THE EVIDENCE IN VIEW

What we know.
What we don’t.

Reported outcomes

The providers observed AI-assisted research, drafting, and coding. OpenAI terminated the associated accounts. OpenAI

Important limits

The reporting does not establish a successful break-in caused by this AI use.

At the time, the providers assessed the added capabilities as limited. This case is an example of assistance, not an autonomous attack.

WHY IT MATTERS

The lesson beyond
this one case.

Ordinary productivity help can support harmful work. The important question is what the assistance enables, and what actually happened next.

What happened in response? +

The associated accounts were disabled. OpenAI

FROM THE INCIDENT TO THE DEFENSE

What could help
an organization?

The providers observed AI-assisted research and drafting likely intended for deceptive emails, without establishing a successful AI-caused break-in.

Employees

Check identity and requests

Assess who is asking, what they want, and whether the request fits the relationship; verify sensitive requests separately even when the writing sounds natural.

What this does—and does not—establish

Fluent writing is neither proof of legitimacy nor proof of AI use. Training alone cannot identify every deceptive message.

Security operations

Investigate suspicious communications

Email and identity security tools can help connect a suspicious message with related messages, sign-ins, or account changes for investigation.

What this does—and does not—establish

This reporting describes preparation. It does not establish which messages reached victims or which defensive tools were present.

Editorial connections to relevant controls, not evidence that a particular technology would have prevented this case. Each guide links to the security guidance behind its recommendations.

Explore the full AI security framework
TRACE IT TO THE SOURCE

Read the evidence.

Explore more original accounts in the source report library ↗.

These are source-reported findings. An independent assessment, when available, is labeled explicitly.

01
Staying ahead of threat actors in the age of AIMicrosoft Threat Intelligence · Feb 14, 2024 · provider investigation
02
Disrupting malicious uses of AI by state-affiliated threat actorsOpenAI · Feb 14, 2024 · provider investigation

Reviewed Sep 10, 2026 · Editorial methodology · Structured data