{
  "id": 10982100,
  "title": "Hackers host fake ChatGPT model on its official website — but really it's just malware",
  "url": "https://urgent.news/2026/09/30/hackers-host-fake-chatgpt-model-on-its-official-website-but-really",
  "topic": "ai",
  "section": "AI",
  "published": "2026-09-30T16:10:00.000Z",
  "source": {
    "name": "TechRadar",
    "slug": "techradar",
    "url": "https://www.techradar.com/pro/security/hackers-host-fake-chatgpt-model-on-its-official-website-but-really-its-just-malware"
  },
  "original_language": "en",
  "account": "Cybercriminals exploited a ChatGPT feature named \"Custom GPT\" and Google Sites to distribute a dangerous malware known as ClickFix. By creating a custom GPT, hackers were able to craft a convincing fake troubleshooting prompt that lured unsuspecting users to execute malicious commands. The false message, \"We're currently experiencing limited availability on the primary domain,\" directed victims to a backup domain hosted on Google Sites. Upon visiting this site, users were asked to copy and paste a piece of code into the Windows Run program, which initiated the ClickFix attack. This malware, referred to as \"@input\" by security experts, granted attackers extensive control over the infected Windows computer. They could monitor the user's screen, operate the device remotely, access webcam and microphone, and search through every file on the system. In most cases, the malware successfully completed these actions without the victim's knowledge. The hackers employed encrypted lookouts to maintain their anonymity while communicating with the malware operators. OpenAI, the company behind ChatGPT, removed the custom GPT on September 25, but a new version appeared just two days later. This attack highlights the increasing use of trusted AI platforms in social engineering attacks, as cybercriminals leverage legitimate services to deceive victims and deploy dangerous malware.",
  "summary": "A fake model leading to a fake CAPTCHA... what could go wrong?",
  "key_points": [
    "Cybercriminals used ChatGPT's Custom GPT feature to create a fake troubleshooting prompt.",
    "Malware named ClickFix was distributed via a backup domain on Google Sites.",
    "Attackers gained full control over infected Windows computers with ClickFix malware."
  ],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}