Malicious Custom GPT on chatgpt.com pushed users to install RAT
Attackers used sponsored Google results to promote a malicious Custom GPT called "Plus 5.6" on chatgpt.com, which led users to a fake Cloudflare CAPTCHA and a ClickFix attack that had them paste a command into Terminal. Huntress reported at least 40 incidents, with a RAT sideloaded via signed Canon and Stardock executables. OpenAI removed the first GPT, but the campaign returned.
- Sponsored Google results led to a malicious Custom GPT "Plus 5.6" on chatgpt.com
- A fake Cloudflare CAPTCHA triggered a ClickFix attack with a Terminal command
- Huntress logged at least 40 incidents; RAT sideloaded via Canon and Stardock files
- OpenAI removed the first GPT, but attackers created a new one
Read next
Security