CyberNotableReported
5.1
Malicious Custom GPTs Used to Deliver Remote Access Trojans via ClickFix Lure
Dark ReadingLO·3 days ago
Attackers are abusing ChatGPT's custom GPT feature to impersonate legitimate software and lure users into running malicious PowerShell commands, a novel twist on the ClickFix technique. The campaign leverages trusted AI platforms to lower user defenses, though the full scale and targeting remain unclear. This marks an evolution in social engineering that could broaden the attack surface for enterprise environments.