Home · Technology · Oct 1 archive
Malware Uses Real ChatGPT Page to Trick Victims
Developing
In Short: Security researchers at Huntress uncovered a new malware campaign that uses a real ChatGPT page to trick users into installing malware.
The campaign involves a bot named 'Plus 5.6,' which mimics an official OpenAI product by using ChatGPT’s Custom GPT feature.
In some instances, victims reached the fake GPT page through a sponsored Google search result, making it appear legitimate.
The fake page claimed ChatGPT was experiencing availability issues and offered a 'backup domain.' This link led to a Google Sites page disguised as a Cloudflare security check.
Users were instructed to copy and paste a command into their Windows system, which ultimately gave attackers extensive control over the PC, including access to the webcam, microphone, and ability to install more malware.
What this adds
The malware campaign does not exploit a software bug but instead tricks users into executing harmful commands themselves.
What's still developing
- Researchers have also spotted Android malware using Gemini to change its behavior while running.
- Researchers at Huntress (via TechRadar ) found attackers abusing ChatGPT’s Custom GPT feature to create a bot called “Plus 5.6.” The name was chosen to sound like an official OpenAI model, and because Custom GPTs are hosted on ChatGPT.com, anyone opening the link would see a legitimate ChatGPT address in their browser.
- Instead of exploiting a software bug, ClickFix tricks you into doing the dangerous part yourself by presenting a fake problem and then offering a supposed fix.
Sources
- Android Authoritylink
