Skip to content

Disinformation

What is Disinformation?

False or misleading information deliberately created and spread to deceive, manipulate public opinion, or undermine trust in institutions.

Information Security

Each of these is named in at least one of the same controls as disinformation. The number is how many controls name both.

What the standards actually require on disinformation

Requirements naming disinformation across 6 standards, quoted from the control text.

Pillar 2 promotes annual Safer Internet Day campaigns and continuous awareness-raising on online safety, privacy, harassment, disinformation and well-being.

BIK-E5 · Awareness-raising and Safer Internet Day

Mitigate confabulation per RISK-02 including: grounding + retrieval-augmented generation (RAG) + citation requirements + uncertainty quantification + benchmarks.

NISTAI600-7 · Confabulation, Bias, Information Integrity, Privacy, IP (Risks 2, 4, 5, 6, 7, 8, 10, 11)

Generative AI and Foundation Models require specific governance attention beyond traditional AI risk frameworks per Japan AI Guidelines for Business + augmented by AISI Japan AI Safety Institute + Hiroshima AI Process Code of Conduct + emerging AI Bill.

JP-AIG-Generative-AI-Foundation-Model-Specific-Risks-Hallucination-Watermarking-Copyright-LLM-Multimodal · Japan AI Guidelines Generative AI + Foundation Model Specific Risks + Hallucination + Watermarking + Copyright + LLM + Multimodal + Prompt Injection + Jailbreak + Model Extraction + Pre-Deployment Capability Evaluation + AISI Frontier AI

Employ chosen technical and procedural means that corrupt the picture an adversary is working from. Misdirection routes hostile activity into deception environments, virtual sandboxes where malicious code can be diverted and adversary tradecraft safely observe...

3.13.3e · Confuse and Mislead Adversaries

Operate AI incident reporting + information safety + misinformation + manipulation mitigation per OECD 2024 Update. AI incident reporting and information sharing must (a) participate in OECD AI Incidents Monitor (AIM) and related international AI incident repo...

OECDAI24-4 · AI Incident Reporting, Information Safety, Misinformation, and Manipulation Mitigation

Member States should address AI impacts on media, information integrity, and freedom of expression, including risks from AI-generated disinformation.

UNESCO-AI-PA9 · Communication and Information

Questions people ask about disinformation

What is Disinformation?
False or misleading information deliberately created and spread to deceive, manipulate public opinion, or undermine trust in institutions.
Why is Disinformation important for compliance?
Disinformation is a key concept in Information Security. Understanding disinformation helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Disinformation?
Disinformation appears in the requirement text of EU Better Internet for Kids (BIK+) Strategy, NIST AI 600-1: Generative AI Profile, Japan AI Guidelines, NIST SP 800-172, OECD Recommendation on Artificial Intelligence (2024 Update). Across these standards we have identified 8 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about Disinformation?
Explore our compliance framework pages to see how disinformation applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how Disinformation applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.