• Hackers host fake ChatGPT model on its official website but real

    From TechnologyDaily@1337:1/100 to All on Wednesday, September 30, 2026 17:15:22
    Hackers host fake ChatGPT model on its official website but really it's just malware

    Date:
    Wed, 30 Sep 2026 16:10:00 +0000

    Description:
    A fake model leading to a fake CAPTCHA... what could go wrong?

    FULL STORY ======================================================================Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Attackers abused custom ChatGPT bots and Google Sites to deliver ClickFix malware Fake troubleshooting
    prompts tricked victims into executing malicious commands Campaign shows trusted AI platforms increasingly leveraged in social engineering attacks Criminals are using custom GPTs in combination with Google services to
    deliver a ClickFix attack to their targets and deploy dangerous malware that can control the victims camera and microphone, experts have warned.

    A new campaign was recently spotted by security researchers Huntress , and as soon as it was shut down, a new one popped up within days. Abusingn
    legitimate services At the center of the scam is a ChatGPT feature called Custom GPT. This is a version of the AI tool that a user can configure for a specific purpose, so instead of starting every conversation with a blank AI, users can create their own one, with a set of instructions, knowledge and files, and different tools and capabilities. But perhaps most importantly, they can create one with unique names, personalities, and conversation starters. Latest Videos From TechRadar Watch full video here:

    A custom GPT is hosted on ChatGPT.com, so when a user navigates to one via a link in an email or an instant message, they have no reason to be suspicious, since the URL starts with chatgpt.com.

    In this case, unidentified hackers created a custom GPT which they named Plus 5.6. OpenAI names their models GPT-3.5, GPT-5 Pro, and similar, so Plus 5.6 definitely sounds like something OpenAI might use, especially for users who dont really keep tabs on the progress in the AI industry. This GPT was told
    to display a single message, regardless of the prompt. That message is Were currently experiencing limited availability on the primary domain, followed
    by instructions to navigate to a backup domain. You may like Experts warn ChatGPT's Workspace Agent Builder can be hijacked to create malicious AI workers Some Mac users think they're installing OpenAI Codex, but it's actually a malware that can steal passwords in seconds ChatGPT joins Microsoft, Google in most-impersonated brands online

    This backup domain is hosted on Google Sites. In itself, Sites is a
    legitimate service for people who want to build websites without needing to know how to code. In this case, it is also likely used to appear legitimate, although those with an eye for detail might wonder why would OpenAI use
    Google when it would be perfectly capable of creating a backup domain itself and have it redirect automatically.

    Navigating to this backup domain shows the attackers true intentions: the
    site displays a fake Cloudflare CAPTCHA check, asking the visitor to copy and paste a piece of code into the Windows Run program. This is the typical ClickFix attack: the victim is shown a fake problem, and immediately shown a solution. Are you a pro? Subscribe to our newsletter Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed! Contact me with news and offers from other Future brands Receive email from us on behalf of our trusted partners or sponsors By submitting your information you agree to the Terms & Conditions and Privacy Policy and are aged 16 or over. Deploying a RAT The solution leads to the downloading and running of a Remote Access Trojan (RAT) Huntress calls
    @input. This payload gives attackers almost full control of the infected Windows computer, showing them the victims screen, and letting them operate the device remotely. They can switch on the webcam, microphone, and system audio to watch and listen.

    They can search through every file on the computer, including the contents of documents, to find valuable information, but before doing any of that, they can take stock of the machine, checking what security software is installed, what programs are running, and how the device connects to a wider network.

    The malware can also download and run additional components and separate strains. In fact, in most cases Huntress investigated, it did exactly that - without the victims noticing a thing. To remain out of sight, @input contacts its operators through encrypted lookouts that blend into ordinary web
    traffic, the researchers said. They also added that the tool appears to be part of a well-maintained, professionally run framework.

    Huntress says the campaign impacted dozens of users, with the companys SOC responding to at least 40 incidents stemming from the specific Google Sites domain involved in this attack. The researchers reached out to OpenAI, which helped take down the custom GPT on September 25. However, a new one emerged two days later. The best antivirus for all budgets Our top picks, based on real-world testing and comparisons

    Read our full guide to the best antivirus 1. Best overall: Bitdefender Total Security 2. Best for families: Norton 360 with LifeLock 3. Best for mobile: McAfee Mobile Security Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.



    ======================================================================
    Link to news story: https://www.techradar.com/pro/security/hackers-host-fake-chatgpt-model-on-its- official-website-but-really-its-just-malware


    --- Mystic BBS v1.12 A49 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)