Malicious Custom GPTs Turn ChatGPT Into RAT Delivery Lure
Summary
Threat actors are creating malicious custom GPTs that leverage OpenAI's platform to deliver Remote Access Trojans (RATs) to unsuspecting users. These attacks often use legitimate domains from OpenAI and Google to appear more trustworthy, acting as a lure in ClickFix-style campaigns.
IFF Assessment
This article describes a new method for delivering malware, which poses a direct threat to defenders and their organizations.
Defender Context
Defenders should be aware of the increasing sophistication of social engineering tactics involving AI tools like custom GPTs. Users need to be educated on the risks of interacting with unverified custom GPTs and the potential for them to be used as delivery mechanisms for malware, emphasizing the need for cautious engagement with AI-generated content and applications.