Technologies
Back
Cybersecurity & Privacy

Malicious Custom GPTs Turn ChatGPT Into RAT Delivery Lure

Dark Reading
Advertisement468 × 90
Malicious Custom GPTs Turn ChatGPT Into RAT Delivery Lure

A new cybersecurity campaign is exploiting the popularity of OpenAI's custom GPTs to distribute Remote Access Trojans (RATs). Threat actors are leveraging legitimate domains associated with OpenAI and Google to create convincing lures that trick users into downloading malicious payloads. This technique, described as a 'ClickFix' style attack, relies on social engineering to bypass standard security filters by masquerading as helpful AI tools. Once a user interacts with these malicious GPTs, they are prompted to perform actions that lead to the execution of malware, granting attackers unauthorized access to their systems. Security researchers warn that as the ecosystem of custom AI agents grows, users must exercise extreme caution when interacting with third-party GPTs. This incident highlights the evolving nature of AI-based threats, where attackers repurpose trusted platforms to facilitate sophisticated phishing and malware delivery campaigns.

This is a summary. Read the full article at the original source:

Dark Reading
Advertisement468 × 90
Share
Cybersecurity & Privacy

Related stories

Advertisement970 × 250