PulseAugur
EN
LIVE 14:31:05

Malware campaign exploits ChatGPT sharing feature for phishing

A new malware campaign called LLMShare is exploiting ChatGPT's content-sharing feature to distribute malicious software. Attackers create fake outage pages hosted on legitimate `chatgpt.com` links, which then prompt users to download harmful "desktop apps." This tactic bypasses security filters by using trusted OpenAI domains, making it a dangerous phishing technique. AI

IMPACT Attackers are leveraging trusted AI platforms for phishing, highlighting the need for enhanced security measures around AI-generated content and sharing features.

RANK_REASON This is a security vulnerability exploiting an existing product, not a new product release or core research.

Read on Mastodon — fosstodon.org →

AI-generated summary · Google Gemini · from 2 sources. How we write summaries →

Malware campaign exploits ChatGPT sharing feature for phishing

COVERAGE [2]

  1. Mastodon — fosstodon.org TIER_1 English(EN) · [email protected] ·

    "The "LLMShare" campaign, discovered by Push Security, uses Google ads to direct users searching for ChatGPT to a malicious shared ChatGPT page hosted on chatgp

    "The "LLMShare" campaign, discovered by Push Security, uses Google ads to direct users searching for ChatGPT to a malicious shared ChatGPT page hosted on chatgpt.com, allowing the attack to be delivered through a legitimate OpenAI domain." https://www. bleepingcomputer.com/news/s…

  2. Mastodon — mastodon.social TIER_1 English(EN) · [email protected] ·

    A sophisticated new campaign, dubbed LLMShare, is exploiting ChatGPT's legitimate content-sharing feature to deliver malware. Attackers are hosting fake OpenAI

    A sophisticated new campaign, dubbed LLMShare, is exploiting ChatGPT's legitimate content-sharing feature to deliver malware. Attackers are hosting fake OpenAI outage pages directly on `chatgpt.com/s/` links, then prompting users to download malicious "desktop apps." This bypasse…