
Malicious Custom GPT on ChatGPT Used to Deploy Remote Access Trojan via ClickFix Attack Chain
hacker attacksmalwarenewscyber securityprivacyartificial intelligencephishingremote access trojansecurity awarenesssocial engineeringtrojan
A malicious Custom GPT hosted on ChatGPT is being used to convince victims to reach a fake security verification page that initiates a ClickFix attack chain, ultimately leading to the installation of a remote access trojan (RAT). The campaign demonstrates how attackers are exploiting trust in AI platforms and legitimate services to create a new attack surface. The attack leverages the ChatGPT platform as the initial entry point in a multi-stage social engineering operation.