Skip to main content
Security IncidentNew

Threat actors deploy malicious custom GPTs on ChatGPT to distribute RATs

Dark Reading reports that threat actors are deploying malicious custom GPTs within ChatGPT and abusing legitimate domains from OpenAI and Google in a ClickFix-style campaign designed to lure users into downloading Remote Access Trojans (RATs). Claims are as reported; this summary makes no determination about accuracy or significance.

First detected
Sep 30, 2026
Last updated
Sep 30, 2026

Newly detected

This development was detected recently and reporting may still arrive.

Follow this development to see meaningful updates as new evidence emerges.

Save keeps this for later. Follow tracks meaningful changes as new evidence emerges — it shapes your Following Feed, alerts, and digest eligibility, and doesn't promise an instant notification.

Why it matters

Exploiting trusted AI domains allows attackers to bypass reputation-based web filtering and deceive users. Enterprise defenders must account for ecosystem abuse in custom GPT marketplaces and reinforce defenses against social engineering tactics prompting local script execution.

Coverage

Primary/vendor sources vs independent reporting

Primary / vendor source: information published directly by the company, organization, government body or project involved. Useful as a primary source, but not independent confirmation.

Independent reporting: reporting or analysis from a source independent of the organization making the underlying claim.

How this developed

  1. Sep 30, 2026

    1. Development detected

    2. New reporting added