No Result
View All Result
Global Finances Daily
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
  • Login
Global Finances Daily
No Result
View All Result
Home Protection

Attackers Are Spreading Malware Through ChatGPT

December 20, 2025
in Protection
0
Attackers Are Spreading Malware Through ChatGPT



You (hopefully) know by now that you can’t take everything AI tells you at face value. Large language models (LLMs) sometimes provide incorrect information, and threat actors are now using paid search ads on Google to spread conversations with ChatGPT and Grok that appear to provide tech support instructions but actually direct macOS users to install an infostealing malware on their devices.

The campaign is a variation on the ClickFix attack, which often uses CAPTCHA prompts or fake error messages to trick targets into executing malicious commands. But in this case, the instructions are disguised as helpful troubleshooting guides on legitimate AI platforms.

How attackers are using ChatGPT

Kaspersky details a campaign specific to installing Atlas for macOS. If a user searches “chatgpt atlas” to find a guide, the first sponsored result is a link to chatgpt.com with the page title “ChatGPT™ Atlas for macOS – Download ChatGPT Atlas for Mac.” If you click through, you’ll land on the official ChatGPT site and find a series of instructions for (supposedly) installing Atlas.

However, the page is a copy of a conversation between an anonymous user and the AI—which can be shared publicly—that is actually a malware installation guide. The chat directs you to copy, paste, and execute a command in your Mac’s Terminal and grant all permissions, which hands over access to the AMOS (Atomic macOS Stealer) infostealer.

A further investigation from Huntress showed similarly poisoned results via both ChatGPT and Grok using more general troubleshooting queries like “how to delete system data on Mac” and “clear disk space on macOS.”


What do you think so far?

AMOS targets macOS, gaining root-level privileges and allowing attackers to execute commands, log keystrokes, and deliver additional payloads. BleepingComputer notes that the infostealer also targets cryptocurrency wallets, browser data (including cookies, saved passwords, and autofill data), macOS Keychain data, and files on the filesystem.

Don’t trust every command AI generates

If you’re troubleshooting a tech issue, carefully vet any instructions you find online. Threat actors often use sponsored search results as well as social media platforms to spread instructions that are actually ClickFix attacks. Never follow any guidance that you don’t understand, and know that if it asks you to execute commands on your device using PowerShell or Terminal to “fix” a problem, there’s a high likelihood that it’s malicious—even if it comes from a search engine or LLM you’ve used and trusted in the past.

Of course, you can potentially turn the attack around by asking ChatGPT (in a new conversation) if the instructions are safe to follow. According to Kaspersky, the AI will tell you that they aren’t.



Editorial Team

Editorial Team

Related Posts

This Waterproof JBL Portable Speaker Is on Sale for $40 Right Now
Protection

This Waterproof JBL Portable Speaker Is on Sale for $40 Right Now

May 2, 2026
Amazon Prime Members Can Get Two of These E-Books Free in May 2026
Protection

Amazon Prime Members Can Get Two of These E-Books Free in May 2026

May 1, 2026
Is Apple Intelligence Making Up Words Now?
Protection

Is Apple Intelligence Making Up Words Now?

May 1, 2026
10 Hacks Every Opera Browser User Should Know
Protection

10 Hacks Every Opera Browser User Should Know

May 1, 2026
Hacks Every Google Chat User Should Know
Protection

Hacks Every Google Chat User Should Know

May 1, 2026
This LG 4K Portable Projector Is $200 Off Right Now
Protection

This LG 4K Portable Projector Is $200 Off Right Now

May 1, 2026
Load More
Next Post
Stop beating yourself up about saving - here’s the shortcut that works in seconds 

Stop beating yourself up about saving - here’s the shortcut that works in seconds 

Popular News

  • Ripple

    Ripple Confirms 13,000 Banks And $12.5 Trillion in Payments, One Analyst Says It Points To $625 XRP

    0 shares
    Share 0 Tweet 0
  • Pi Network Price Rises Ahead of Consensus 2026

    0 shares
    Share 0 Tweet 0
  • AI drives 1.5% of US GDP growth in Q1 2026, boosting economic outlook

    0 shares
    Share 0 Tweet 0
  • Bitcoin Long-Term Holder Rate Returns To 2021 Levels, Good News For Crypto?

    0 shares
    Share 0 Tweet 0
  • Why White-Collar Workers Are Struggling To Find Jobs In 2024

    0 shares
    Share 0 Tweet 0

Latest News

Cointelegraph

Law Firm Files Restraining Notice for Kelp Exploit ETH

May 4, 2026
0

A US law firm has filed a restraining notice to block the transfer of frozen Ether from the Kelp exploit,...

Berkshire Hathaway is now sitting on a record $397 billion in cash. And it’s not the only firm reluctant to invest in the stock market.

Berkshire Hathaway is now sitting on a record $397 billion in cash. And it’s not the only firm reluctant to invest in the stock market.

May 4, 2026
0

Berkshire Hathaway has added to a giant pile of cash, and sending a message for investors to be patient.

North Korea denies TRM Labs data tying it to major crypto hacks - 1

North Korea denies TRM Labs data tying it to major crypto hacks

May 4, 2026
0

North Korea has rejected allegations of state-backed cryptocurrency theft even as new data ties it to most global hack losses...

ECB’s Kazimir: June rate hike all but inevitable

ECB’s Kazimir: June rate hike all but inevitable

May 4, 2026
0

ECB’s Kazimir: June rate hike all but inevitable

Global Finances Daily

Welcome to Global Finances Daily, your go-to source for all things finance. Our mission is to provide our readers with valuable information and insights to help them achieve their financial goals and secure their financial future.

Subscribe

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use
  • Editorial Process

© 2025 All Rights Reserved - Global Finances Daily.

No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers

© 2025 All Rights Reserved - Global Finances Daily.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.