Phishing Campaign Abuses ChatGPT Shared Content Feature to Distribute Malware (infosecurity-magazine.com)
0xBASE INTEL BRIEF
- Malicious Google ads and SEO poisoning used to lure victims.
- Phishing pages hosted on legitimate chatgpt.com/s/ domain.
- Conditional rendering evades security scanners.
- Also abuses shared conversations on ChatGPT and Claude.
"Push Security reports that threat actors are using ChatGPT's shared content feature to host phishing pages on legitimate chatgpt.com/s/ URLs. Victims are drawn via malicious Google ads and SEO poisoning to a fake ChatGPT outage page, then redirected to a download site that installs malware, likely infostealers. The campaign also targets Claude users with shared conversation guides containing malicious commands."
#phishing
#AI platform abuse
#malvertising
no comments yet.