Hackers host fake ChatGPT model on its official website — but really it's just malware

https://cdn.mos.cms.futurecdn.net/SSrgDUXsJwUVxtvheg4YCM-2560-80.jpg
  • Attackers abused custom ChatGPT bots and Google Sites to deliver ClickFix malware
  • Fake troubleshooting prompts tricked victims into executing malicious commands
  • Campaign shows trusted AI platforms increasingly leveraged in social engineering attacks

Criminals are using custom GPTs in combination with Google services to deliver a ClickFix attack to their targets and deploy dangerous malware that can control the victim’s camera and microphone, experts have warned.

A new campaign was recently spotted by security researchers Huntress, and as soon as it was shut down, a new one popped up within days.

Abusingn legitimate services

At the center of the scam is a ChatGPT feature called “Custom GPT”. This is a version of the AI tool that a user can configure for a specific purpose, so instead of starting every conversation with a blank AI, users can create their own one, with a set of instructions, knowledge and files, and different...

Copyright of this story solely belongs to www.techradar.com. To see the full text click HERE