Cybercriminals used AI tools including FraudGPT to create sophisticated phishing emails impersonating OpenAI's ChatGPT Premium subscription service, targeting users globally to steal credentials and financial information.
A sophisticated phishing campaign emerged globally that impersonated OpenAI's ChatGPT Premium subscription service to steal user credentials and financial information. Cybersecurity firm Symantec identified emails spoofing ChatGPT's branding with subject lines like 'Action Required: Secure Continued Access to ChatGPT with a $24 Monthly Subscription' that directed users to malicious domains such as fnjrolpa.com hosting counterfeit OpenAI login pages. Barracuda Networks observed similar campaigns in late 2024 where over 1,000 emails originated from the unrelated domain topmarinelogistics.com. The campaign leveraged AI tools including FraudGPT, described as a dark web derivative of ChatGPT, which enabled scammers to craft grammatically flawless and contextually convincing emails at scale in over 20 languages. Microsoft's 2023 analysis highlighted that AI-generated phishing content eliminated traditional telltale spelling errors, making detection more difficult. The phishing domains were registered via international IP addresses to obscure their origins and complicate traceability. The report notes that phishing remains the most prevalent cybercrime with 3.4 billion spam emails sent daily, and that the average cost of a data breach now exceeds $4 million. The campaign exploited ChatGPT's widespread adoption and used official-looking logos and typography to appear authentic.
Domain classification, causal taxonomy, severity scores, and national security assessments were LLM-classified and may contain errors.
Using AI systems to gain a personal advantage over others such as through cheating, fraud, scams, blackmail or targeted manipulation of beliefs or behavior. Examples include AI-facilitated plagiarism for research or education, impersonating a trusted or fake individual for illegitimate financial benefit, or creating humiliating or sexual imagery.
Human
Due to a decision or action made by humans
Intentional
Due to an expected outcome from pursuing a goal
Post-deployment
Occurring after the AI model has been trained and deployed