CyberNotableReportedDeveloping
4.8
Threat actors weaponize ChatGPT custom GPTs in ClickFix social engineering campaign
SecurityWeekLO·4 days ago
Threat actors are abusing legitimate OpenAI and Google domains in a ClickFix-style campaign to trick users into installing remote access trojans (RATs). The attack leverages custom GPTs as a lure, exploiting trust in well-known platforms. This marks an evolution in social engineering tactics, increasing the credibility of malicious payloads.