Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures
Attackers are leveraging official ChatGPT Custom GPTs and fake Google ads to deliver Remote Access Trojans (RATs) via ClickFix lures.
Velocity
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
The brief
Threat actors are currently exploiting the Custom GPT feature on ChatGPT's official website to facilitate malware infections. According to reports from The Hacker News and Dark Reading, these attackers are utilizing malicious Custom GPTs to deliver Remote Access Trojans, commonly known as RATs, through a technique described as ClickFix lures. This method leverages legitimate ChatGPT pages as entry points to deceive users into installing harmful software on their systems. The operation involves hosting fake ChatGPT models directly on the official platform, turning a trusted environment into a delivery mechanism for malicious payloads. Coverage from multiple outlets emphasizes the multi-pronged nature of this campaign. Cybernews reports that over 850 fake ChatGPT advertisements have been identified on Google, specifically targeting Windows users to trick them into installing malware.
GIGAZINE highlights that the exploitation of Custom GPTs allows attackers to use legitimate pages, which likely increases the perceived trust of the victim. TechRadar further confirms that hackers have successfully hosted these fake models on the official website, effectively weaponizing the platform's own customization tools to bypass traditional user skepticism regarding third-party links. This trend is significant because it represents a shift in how malware is delivered, moving from external phishing sites to the interior of trusted, high-traffic platforms. By using the official ChatGPT domain, attackers can bypass certain security perceptions that usually alert users to fraudulent activity. The use of ClickFix lures suggests a social engineering approach where users are prompted to fix a perceived technical error, leading them to execute the RAT. This allows the attackers to gain remote control over the infected Windows machines, as noted in the reporting by Cybernews regarding the specific targeting of that operating system.
Future developments to monitor include whether OpenAI implements new verification measures for Custom GPTs to prevent the hosting of such fake models. Based on the coverage from The Hacker News and Dark Reading, the primary point of concern remains the delivery of RATs via these lures. Additionally, the persistence of the 850+ fake Google ads reported by Cybernews indicates an ongoing effort to funnel Windows users toward these malicious infections. Observers should watch for updates on how these official pages are being flagged or removed to stop the distribution of the Remote Access Trojans.
Synthesized by PULSE from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 2h ago.
Quick answers
How are the attackers delivering the malware?
They are using malicious Custom GPTs hosted on the official ChatGPT website and ClickFix lures to deliver Remote Access Trojans (RATs).
What other methods are being used to attract victims?
Cybernews reports that over 850 fake ChatGPT ads on Google are being used to trick Windows users into installing malware.
Why is the use of Custom GPTs effective for hackers?
According to GIGAZINE, using legitimate ChatGPT pages as entry points makes the attacks more effective by exploiting the trust of the official platform.
Coverage (5)
- 850+ fake ChatGPT ads on Google trick Windows users into installing malware Cybernews · 1d ago
- Attacks exploiting ChatGPT's 'Custom GPT' to lead to malware infections, using legitimate ChatGPT pages as entry points. GIGAZINE · 1d ago
- Hackers host fake ChatGPT model on its official website TechRadar · 1d ago
- Malicious Custom GPTs Turn ChatGPT Into RAT Delivery Lure Dark Reading · 1d ago
- Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures The Hacker News · 1d ago
Topics
Related trends
Windows 11 26H2 update has known issues. You might want to wait
1 news sources are covering this Technology story right now — PULSE is tracking how fast it spreads.
Meta's Muse tops 5 million downloads, faster than ChatGPT, Claude
Meta's Muse has surpassed 5 million downloads, outpacing the early growth trajectories of rival AI platforms ChatGPT and Claude.
Windows 11 26H2 update arrives: What’s inside and who should install it ASAP
The Windows 11 26H2 update arrives with new features and critical guidance on who should install it immediately.
ChatGPT maker wants to be the App Store for AI as safety concerns grow
ChatGPT maker pursues an App Store model for artificial intelligence amid mounting safety concerns.
Microsoft releases Windows 11 version 26H2, calls it a "predictable and low-disruption update" with no compatibility concerns
4 news sources are covering this Technology story right now — PULSE is tracking how fast it spreads.
OpenAI takes on Microsoft with the launch of what feels a whole lot like ChatGPT's own office suite
OpenAI highlights ChatGPT Voice capabilities through an advertising campaign featuring grandmas.