Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures
Summary
Threat actors are leveraging ChatGPT's Custom GPTs feature to disguise malicious links as legitimate product offerings. These links lead unsuspecting users to sites that use 'ClickFix' lures to deliver malware.
IFF Assessment
FOE
This indicates a new method for threat actors to deliver malware by exploiting trusted AI platforms, posing a direct threat to users.
Defender Context
Defenders should be aware of this emerging attack vector that uses trusted AI platforms as a vector for malware delivery. Users need to be educated about the risks of clicking on links originating from custom GPTs, even if they appear legitimate, and vigilant about potential social engineering tactics.