
Threat Actors Exploit Custom GPTs to Deliver RAT Malware via ChatGPT
CybersecurityMalwareSocial EngineeringAI ThreatsRATChatGPTCustom GPTsClickFixOpenAIRemote Access Trojan
Threat actors are conducting a ClickFix-style campaign that abuses malicious custom GPTs to turn ChatGPT into a delivery mechanism for RAT (Remote Access Trojan) malware. The attackers exploit legitimate domains from OpenAI and Google to deceive unsuspecting users into downloading malicious payloads. The campaign leverages the trusted reputation of these legitimate platforms to bypass user suspicion and security controls.