Attackers Use Custom ChatGPT GPTs to Spread Remote-Access Malware
Security researchers have identified a campaign in which threat actors create malicious custom GPTs within ChatGPT and abuse legitimate OpenAI and Google domains to lure victims. The technique follows a ClickFix-style approach, tricking users into executing steps that ultimately deliver a remote access trojan (RAT) to their systems.