{"id":101438,"date":"2026-07-10T09:16:06","date_gmt":"2026-07-10T09:16:06","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/101438\/"},"modified":"2026-07-10T09:16:06","modified_gmt":"2026-07-10T09:16:06","slug":"japan-arrests-15-year-old-for-allegedly-using-chatgpt-in-cyberattack-heres-what-happened-firstpost","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/101438\/","title":{"rendered":"Japan arrests 15-year-old for allegedly using ChatGPT in cyberattack: Here&#8217;s what happened \u2013 Firstpost"},"content":{"rendered":"<p>A cybercrime case involving a 15-year-old student in Japan has reignited debate over the role of generative artificial intelligence in online attacks. The teenager has been arrested after allegedly using ChatGPT to help develop software that deleted tens of thousands of user accounts from an anime streaming service, causing prolonged disruption and financial losses for the company.<\/p>\n<p>While the investigation centres on one individual, authorities believe the incident illustrates a wider challenge facing governments and technology companies. As AI tools become increasingly capable of writing and refining code, cybersecurity experts have warned that they could also lower the technical barriers for people seeking to launch cyberattacks.<\/p>\n<p>STORY CONTINUES BELOW THIS AD<\/p>\n<p>Here\u2019s what happened and why the case matters.<\/p>\n<p>What is the teenager accused of doing?<\/p>\n<p>According to Tokyo\u2019s Metropolitan Police Department, the high school student from Tokorozawa, near Tokyo, allegedly sent fraudulent commands to the servers of Bandai Namco Filmworks on 4 November 2025. The company, a subsidiary of Bandai Namco Holdings, operates the Bandai Channel anime streaming platform.<\/p>\n<p>Investigators say the attack resulted in the unauthorised deletion of 46,812 user accounts. Those accounts were removed without the knowledge or permission of their owners, forcing the company to halt services while it attempted to recover its systems.<\/p>\n<p>Police have charged the teenager with fraudulent obstruction of business, alleging that the attack was carried out deliberately and continued even after the company introduced countermeasures. Investigators say the student repeatedly changed his IP address\u2014around 30 times\u2014to bypass restrictions and continue sending malicious commands.<\/p>\n<p>The disruption lasted for more than a month, during which Bandai Namco Filmworks suspended parts of its service and refunded affected subscribers.<\/p>\n<p>How did ChatGPT become part of the investigation?<\/p>\n<p>One aspect that has attracted particular attention is the student\u2019s own account of how he developed the attack.<\/p>\n<p>During questioning, he told investigators that he initially wrote the code himself but later relied on ChatGPT to improve it.<\/p>\n<p>\u201cI created the source code for the withdrawal process myself. Since the processing was taking a long time, I asked ChatGPT and completed it in a different programming language,\u201d he told investigators, according to The Asahi Shimbun.<\/p>\n<p>Police say the teenager claimed he did not target the company out of personal resentment. Instead, he reportedly chose the streaming platform because it had a large number of user accounts that he believed he could access.<\/p>\n<p>The student had reportedly been teaching himself programming since primary school and told investigators he enjoyed analysing network communications. Authorities had first arrested him in June on suspicion of logging into the service using another subscriber\u2019s account, an investigation that later uncovered the larger attack.<\/p>\n<p>STORY CONTINUES BELOW THIS ADWhy is this case significant?<\/p>\n<p>Although cybercriminals have long used automated tools, investigators believe this could be among the first cases in Japan where generative AI has been directly linked to the development of software used in a cyberattack.<\/p>\n<p>The case does not suggest that ChatGPT independently carried out the attack. Instead, police allege that the AI chatbot helped refine existing code and translate it into another programming language, making the software more efficient.<\/p>\n<p>The incident has renewed concerns about how accessible sophisticated programming assistance has become. Generative AI systems can explain coding concepts, identify errors and rewrite software in different languages, making them valuable productivity tools for developers. At the same time, cybersecurity experts have warned that such capabilities can also be misused by individuals attempting to build malicious software.<\/p>\n<p>The cyberattack also had wider consequences beyond the deleted accounts. The month after the incident, Bandai Namco Filmworks disclosed that information associated with as many as 1.36 million accounts\u2014including email addresses, account balances and payment details\u2014might have been exposed. The company said it had found no evidence that the data had subsequently been published or exploited.<\/p>\n<p>In a statement carried by Japanese media, the company said, \u201cWe take this situation very seriously and will continue to conduct regular checks and strive to prevent any recurrence.\u201d<\/p>\n<p>STORY CONTINUES BELOW THIS AD<\/p>\n<p>Following the arrest, a senior investigator with Tokyo\u2019s Metropolitan Police Department also warned against treating online offences as harmless experiments.<\/p>\n<p>\u201cCyberspace is highly anonymous, and people may be tempted to commit crimes casually, but these actions can lead to grave consequences,\u201d the investigator said.<\/p>\n<p>As governments continue to grapple with the rapid growth of generative AI, the case is likely to become an important reference point in discussions about how AI tools should be governed, monitored and safeguarded against criminal misuse.<\/p>\n","protected":false},"excerpt":{"rendered":"A cybercrime case involving a 15-year-old student in Japan has reignited debate over the role of generative artificial&hellip;\n","protected":false},"author":2,"featured_media":26426,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[52800,52797,52798,580,1393,4322,223,157,52799],"class_list":["post-101438","post","type-post","status-publish","format-standard","has-post-thumbnail","category-openai","tag-account-deletion","tag-ai-cybercrime-japan","tag-bandai-namco","tag-chatgpt","tag-cyber-security","tag-cyberattack","tag-generative-ai","tag-openai","tag-teen-hacker"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/101438","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=101438"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/101438\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/26426"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=101438"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=101438"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=101438"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}