Threat actors deploy malicious custom GPTs on ChatGPT to distribute RATs
Dark Reading reports that threat actors are deploying malicious custom GPTs within ChatGPT and abusing legitimate domains from OpenAI and Google in a ClickFix-style campaign designed to lure users into downloading Remote Access Trojans (RATs). Claims are as reported; this summary makes no determination about accuracy or significance.
- First detected
- Sep 30, 2026
- Last updated
- Sep 30, 2026
Newly detected
This development was detected recently and reporting may still arrive.
Follow this development to see meaningful updates as new evidence emerges.
Save keeps this for later. Follow tracks meaningful changes as new evidence emerges — it shapes your Following Feed, alerts, and digest eligibility, and doesn't promise an instant notification.
Why it matters
Exploiting trusted AI domains allows attackers to bypass reputation-based web filtering and deceive users. Enterprise defenders must account for ecosystem abuse in custom GPT marketplaces and reinforce defenses against social engineering tactics prompting local script execution.
Coverage
Primary/vendor sources vs independent reporting
Primary / vendor source: information published directly by the company, organization, government body or project involved. Useful as a primary source, but not independent confirmation.
Independent reporting: reporting or analysis from a source independent of the organization making the underlying claim.
How this developed
Sep 30, 2026
Development detected
New reporting added
Malicious Custom GPTs Turn ChatGPT Into RAT Delivery LureDark ReadingSource
Related Intelligence
- DevelopmentDevelopingAlso involving ChatGPT
OpenAI launches Dots agentic assistant
During its DevDay keynote, OpenAI announced Dots, an agentic assistant powered by its GPT-6 Astra model. Designed to compete with Meta's Muse AI, Dots operates as an always-on background system capable of executing tasks across connected applications while continuously learning user preferences over time. Claims are as reported; this summary makes no determination about accuracy or significance.
7 independent sources - DevelopmentDevelopingAlso involving ChatGPT
Meta to unveil new AI products as Muse tops US app charts
The Financial Times reports that Meta will unveil new AI products as its personal AI agent app, Muse, becomes the most downloaded application in the United States. Claims are as reported; this summary makes no determination about accuracy or significance.
4 independent sources - DevelopmentDevelopingAlso involving ChatGPT
British Columbia sued OpenAI over mass shooting role
The Canadian province of British Columbia has filed a lawsuit against OpenAI, claiming the ChatGPT developer failed to act after the account of a mass shooting attacker was flagged. Claims are as reported; this summary makes no determination about accuracy or significance.
2 independent sources - DevelopmentDevelopingAlso involving ChatGPT
OpenAI launches office suite features in ChatGPT
At DevDay, OpenAI announced a suite of enterprise and collaboration features for ChatGPT. The updates include shared workspaces, collaborative documents and slides, an open plugin system with MCP event automation, and integrations for Slack and Microsoft Teams. Claims are as reported; this summary makes no determination about accuracy or significance.
2 independent sources