Skip to main content
See every side of every news story
Published • loading... • Updated

A Real ChatGPT Page Is Being Used to Trick People Into Installing Malware

Huntress said the campaign hit dozens of users and triggered at least 40 incidents as attackers used fake AI prompts to install a remote access trojan.

TL;DR Attackers created a fake ChatGPT model called “Plus 5.6” on the real ChatGPT website. It sent users to a fake security check that tricked them into running a malicious Windows command. That command could install malware that could access files, the screen, the webcam, the microphone, and more. There was a time when spotting a sketchy download meant looking for misspelled websites, strange pop-ups, and other obvious red flags. But that get…

9 Articles

Lean Left

Infection of the device with malware begins after executing the PowerShell command.

A Custom GPT hosted on ChatGPT convinces victims to reach a false security check that starts a ClickFix chain until the installation of a remote access trojan (RAT).The campaign shows how attackers are transforming trust in AI platforms and legitimate services into a new attack surface The malevolent Custom GPT article: so ChatGPT becomes the first ring of a ClickFix attack comes from Cyber Security 360.

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 50% of the sources are Center
50% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

Tech Radar broke the news in Bath, United Kingdom on Wednesday, September 30, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal