AI-FABRICATED CITATIONS INFILTRATE MEDICAL RESEARCH
AI DESK■ 1 MIN READ
TUE, MAY 26, 2026■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
An audit of 2.5 million biomedical papers reveals fabricated references have surged more than twelvefold since 2023, likely driven by language model use. The fake citations are nearly impossible to detect and threaten the integrity of clinical guidelines.
Researchers from Columbia University and partner institutions discovered that AI-hallucinated citations are spreading through the biomedical literature at an alarming rate. The fabricated references match paper topics, follow proper formatting conventions, and blend seamlessly into legitimate research.
The fake citations pose a particular danger because they often appear in papers that inform clinical practice guidelines—affecting real-world medical decision-making. Language models trained on existing research can generate plausible-sounding but entirely fictional sources that researchers may unknowingly cite further, amplifying the contamination.
Key concerns:
- 98 percent of affected papers remain unaddressed by publishers
- Detection requires manual verification of each citation
- Risk of cascading citations spreading false information
The finding highlights the tension between AI's integration into research workflows and quality control mechanisms designed for human-generated content. Publishers face mounting pressure to implement automated citation verification systems before hallucinated references become endemic to the scientific record.
■ SOURCES
► The Decoder■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE
■ MORE FROM THE SECURITY DESK
Cybercriminals have transformed DDoS attacks into a polished, commercialized service complete with pricing tiers, customer support, and reseller programs. The DDoS-as-a-Service market has evolved from basic tools into sophisticated attack platforms.
4H AGO— Industry Desk
Microsoft faced backlash after threatening a security researcher with criminal investigation, reigniting debate over software vulnerability disclosure practices and corporate responsibility.
4H AGO— Security Desk
Google is deploying Device Bound Session Credentials (DBSC) to all Chrome users, a security feature designed to prevent account takeovers by protecting session cookies from theft.
4H AGO— Industry Desk
Dutch authorities have dismantled a major botnet comprising 17 million infected devices and seized over 200 servers hosting the operation at a local provider.
4H AGO— Security Desk