MediumNewsLLM-specific
Custom ChatGPTs push ClickFix attacks to deploy RAT malware
- Published
- Record updated
Summary
Malicious custom variants of ChatGPT, promoted through sponsored Google results, directed users to sites using ClickFix attacks to deliver malware. Huntress identified the campaign, which it says affected dozens of users, and found that only two of at least 40 related incidents involved a custom GPT. The payload is a remote access trojan that establishes persistence through a Run key and a scheduled task, both named 'Canon Configuration Reader.'
Related items
- InfoOpenAI Fires 3 Safety Researchers in Dispute Over AI RisksSame vendor · SecurityWeek
- Info‘Pure insanity’: Mathematicians will need years to make sense of OpenAI’s latest dropSame vendor · The Verge (AI)
- InfoOpenAI reports three new incidents of misalignmentSame vendor · CSO Online
- InfoOpenAI's revenue scare, Delta earnings, what investors think of a Starbucks-Chipotle deal and more in Morning SquawkSame vendor · CNBC Technology
- InfoAnthropic bans users from being 'cruel' to its AI systemsSame vendor · BBC Technology