← Back to Feed

Malicious Custom GPTs Turn ChatGPT Into RAT Delivery Lure

September 30, 2026 · Dark Reading · Severity: MEDIUM

In yet another ClickFix-style campaign, threat actors abuse legitimate domains from OpenAI and Google to fool unsuspecting users.

Key Takeaways

  • According to Dark Reading, this development warrants attention from teams monitoring the evolving threat landscape.
  • Security teams should review their exposure and implement appropriate defensive controls.
  • Security teams should review their exposure and implement appropriate defensive controls.
☕ Buy a Coffee