Security/press release/2026-09-29

Attackers exploit ChatGPT Custom GPTs to deploy Remote Access Trojans via fake CAPTCHA

Attackers are exploiting OpenAI's Custom GPT feature on ChatGPT.com to distribute Remote Access Trojans (RATs). This new attack vector involves creating malicious Custom GPTs that trick users into a multi-stage process, often including fake CAPTCHA verification. The process ultimately leads to the installation of malware, with one report detailing an eight-stage "ClickFix chain." Multiple security news outlets, including IT Security Guru, Help Net Security, TechRadar Pro, GIGAZINE, and finance.biggo.com, have reported on this vulnerability and active exploitation, confirming the use of legitimate ChatGPT pages as entry points for these infections.

5 articles from 5 outlets covered this story. No difference in framing or figures was found between them. The underlying claim is sourced from a press release.

What do all outlets agree on?

5 outlets covered “Attackers exploit ChatGPT Custom GPTs to deploy Remote Access Trojans via fake CAPTCHA”. All of them report the following:

  • Attackers are exploiting ChatGPT's Custom GPT feature
  • The attacks aim to deliver Remote Access Trojans (RATs)
  • Legitimate ChatGPT pages are used as entry points
  • Fake CAPTCHA verification is a common tactic
  • The attack involves multiple stages

Did outlets disagree about this?

No. All 5 outlets covering “Attackers exploit ChatGPT Custom GPTs to deploy Remote Access Trojans via fake CAPTCHA” reported it the same way — no difference in framing or figures was found between them.

Which outlets covered this?

All 5 articles found on this story, grouped by the stance of the piece. Every link goes to the original publisher.

What related stories are there?

Which companies does this involve?

Get the week in AI in one email

What happened, which outlets reported it, and where their coverage differed. One issue a week.

The first issue hasn’t gone out yet. Subscribe and it’s the one you’ll get.

We’ll send the digest and nothing else. One-click unsubscribe. Privacy.