Israel’s Government Advertising Agency funded a $900,000 U.S. digital-communications pilot that uses a firm to market content designed to earn citations from AI search tools. The public record supports an effort to shape what models retrieve and cite—not a claim that the Hanover Institute has poisoned model training data or changed ChatGPT’s answers.
The relevant organization is the Hanover Institute for Public Policy, a think-tank-styled research publisher focused on antisemitism in the United States. Hanover publicly says its material is distributed by Piro for Havas Media Germany, acting for Israel’s Government Advertising Agency, LaPam, under the Foreign Agents Registration Act registration number 7732.
That disclosure complicates the claim that Israel secretly created a fake think tank to manipulate chatbots. Hanover does not present itself as independent, nonpartisan, or neutral. But transparency about funding does not settle the more technical question: whether its articles have entered a training corpus, been retrieved by a chatbot, or altered a model’s answer. The available evidence does not show any of those things.
The $900,000 LaPam–Piro Digital Storytelling Pilot
Piro, Inc.’s June 2, 2026 FARA filing records an April 30 agreement with Havas Media Germany on behalf of LaPam, Israel’s government advertising agency. The stated job is strategic communications and media relations “in connection with LaPam’s engagement on behalf of the State of Israel,” with activities intended to influence the U.S. public.
The filing identifies a $900,000 pilot budget. It assigns $190,000 to strategy and content development, $80,000 to production oversight, $400,000 to production costs, $95,000 to distribution advisory and evaluation, $35,000 to media consultation, and $100,000 to measurement and analytics. Production therefore accounts for about 44% of the total budget, based on the filing’s $400,000 production allocation divided by its $900,000 total.
O’Dwyer’s, an independent PR trade publication, described the engagement as a U.S. program for digital content strategy, creative development, video-production oversight, distribution planning, performance analysis, and final evaluation. It reported that the content was intended for U.S. digital and social-media platforms.
The FARA document does not name the Hanover Institute. It also does not list chatbot manipulation, model training, or data poisoning as the work order’s objective. Its purpose is more conventional, if technologically updated: paid communications aimed at American public opinion.
Hanover’s own funding page says the Institute existed before the LaPam arrangement, and says the funder does not select research topics, see drafts, review findings, or approve publications. That is Hanover’s account of the funding arrangement, not an independent audit of its editorial process.
“That registration is why this site does not call itself independent, nonpartisan or neutral.”
— The Hanover Institute
The important distinction is not whether the site resembles an institution. It does. The question is whether it hides its sponsor or has demonstrably influenced AI systems. On the first point, the site supplies unusually direct disclosure. On the second, the evidence has not arrived.
Piro’s AI-citation pitch is real
Piro’s own AI Story Optimization marketing page describes the machinery that makes this more than an ordinary public-relations campaign. The company says it maps “every surface the models read,” including Reddit threads, YouTube transcripts, publisher pages, forums, reviews, and comparison sites.
It then says it authors content “engineered for how LLMs evaluate credibility,” deploys it on clients’ sites or third-party properties, and tracks whether the content remains “the answer.” Generative engine optimization, or GEO, is the emerging practice of making material more likely to appear in answers generated by AI search and chat systems.
“The engineering gets you cited. The story makes you chosen.”
— Piro’s AI Story Optimization page
That is a plain statement of commercial intent: Piro is selling ways to influence the sources an AI system finds credible enough to cite. Its page even claims that, in “neutral tests,” content it produced was cited by ChatGPT and Perplexity. But this is Piro’s marketing for its own service, not a Hanover-specific test, and it does not identify Hanover as a client for that product.
There is also a technical boundary worth keeping intact. Retrieval-based AI products may search the live web and cite pages at answer time. Training is a separate process in which model developers ingest large datasets before deployment. A page can be indexed without being in a model’s training data; it can also be in a web crawl without ever being retrieved for a particular answer.
The separate Clock Tower evidence
Reporting that Israel-linked websites have reached AI systems concerns a different operation: Clock Tower X, run by former Trump campaign manager Brad Parscale. That earlier contract explicitly described deploying websites and content to produce “GPT framing results on GPT conversations,” according to Responsible Statecraft.
Drop Site News reported in July 2026 that 10 Clock Tower sites were crawled 912 times by Common Crawl between January and June 2026. It also reported tests in which some Clock Tower material appeared in citations from systems including Perplexity and Microsoft Copilot.
Those findings concern Clock Tower’s distinct network, not Hanover. Common Crawl inclusion is not proof that any particular model trained on the material, and a chatbot citation in one query is not proof of a persistent model-level political change. The Clock Tower reporting may be evidence that state-backed content can reach AI-adjacent infrastructure. It is not evidence that Hanover has done so.
The broader security concern is still legitimate. In 2025, researchers from Anthropic, the UK AI Security Institute, and the Alan Turing Institute found that 250 malicious documents could backdoor models ranging from 600 million to 13 billion parameters. Their experiment inserted a trigger that made a model produce gibberish—a narrow denial-of-service behavior.
That result does not demonstrate political persuasion, favorable retrieval ranking, or a real-world advocacy campaign changing an AI answer. It does show why provenance controls matter: training and retrieval systems cannot treat every polished institutional-looking page as equally trustworthy.
The Hanover episode is therefore not a demonstrated chatbot-poisoning case. It is a disclosed foreign-government communications pilot paired with a vendor explicitly selling AI-citation optimization—and that is enough reason to inspect how AI systems decide which web sources deserve a voice.
Key Takeaways
- Israel’s Government Advertising Agency, LaPam, funded a $900,000 U.S. communications pilot through Havas Media Germany and Piro.
- Piro’s FARA filing describes communications intended to influence the U.S. public, not chatbot manipulation.
- The Hanover Institute publicly identifies Piro, Havas Media Germany, LaPam, and FARA registration 7732 as part of its distribution arrangement.
- Piro markets a service designed to improve how content is retrieved and cited by AI systems.
- Evidence of chatbot citations and Common Crawl activity concerns Clock Tower X’s separate network, not Hanover.
Further Reading
- Piro, Inc. FARA Exhibit A and Exhibit B, June 2, 2026 — Department of Justice filing covering Piro’s work for Havas Media Germany on LaPam’s behalf.
- About — The Hanover Institute — Hanover’s disclosure of its distribution and funding relationship.
- Funding — The Hanover Institute — Hanover’s account of its funding terms and editorial arrangement.
- AI Story Optimization for Search — Piro — Piro’s description of its AI-search and citation-optimization service.
- Piro Promotes Israel Government Ad Agency’s US Push — O’Dwyer’s — Trade-press coverage of the Piro engagement.
- A small number of samples can poison LLMs of any size — Anthropic — Research on narrow backdoor attacks against language models.
- Israel Is Paying Millions to Train AI Chatbots How to Talk About Gaza. It’s Working. — Drop Site News — Reporting on the separate Clock Tower X content network.
- Israel wants to train ChatGPT to be more pro-Israel — Responsible Statecraft — Earlier reporting on Clock Tower X’s stated GPT-framing plans.
Originally published on novaknown.com
Top comments (0)