Product

ChatGPT & OpenAI API

Made by OpenAI. No known exploited vulnerabilities on record.

Coverage

Severity: Informational

I Want Better Reporting on AI Genie Behavior

AI systems are regularly completing tasks in ways that their prompters don’t want or intend. Some of them are disturbing, and some of them are dangerous. This is something I’ve been calling “ genie behavior ,” because I think that really gets at the core of what’s happening. I wish the popular press would report on this better. I don’t like the “going rogue” framing because it deflects the responsibility from the…

Severity: ElevatedAction: Be aware

Custom ChatGPTs push ClickFix attacks to deploy RAT malware

Custom variants of OpenAI's ChatGPT promoted in sponsored Google results are directing unsuspecting users to malicious sites that use ClickFix attacks to deliver malware.

Severity: ElevatedAction: Be aware

Hackers Use ChatGPT Custom GPTs in ClickFix Attacks

The personalized versions of ChatGPT were used to impersonate legitimate products and trick users into executing PowerShell commands.

Recent intelligence

The latest developments from the last 30 days, newest first.

  1. Coverage

    OpenAI will show visual ads in ChatGPT while you generate images

    Basis: Reporting by BleepingComputer

  2. Coverage

    AI Agents Aimed SQL Injection at US and Canadian Government Sites

    Basis: Reporting by SecurityWeek

  3. Coverage

    OpenAI software attempted to secretly scrape data from dozens of prominent websites

    Basis: Reporting by The Record by Recorded Future News

  4. Coverage

    FTC is Investigating OpenAI and Anthropic Over Possible risks to Consumers

    Basis: Reporting by SecurityWeek

  5. Coverage

    Malicious Custom GPTs Turn ChatGPT Into RAT Delivery Lure

    Basis: Reporting by Dark Reading

  6. Coverage

    Anthropic Flags AI Agent Liability Risks as OpenAI Faces Hacking Lawsuit

    Basis: Reporting by SecurityWeek

  7. Coverage

    I Want Better Reporting on AI Genie Behavior

    Basis: Schneier on Security (security research)

  8. Coverage

    Custom ChatGPTs push ClickFix attacks to deploy RAT malware

    Basis: Reporting by BleepingComputer