Custom ChatGPTs push ClickFix attacks to deploy RAT malware
BleepingComputer published a report on September 29, 2026 describing custom ChatGPTs being used to push ClickFix attacks that deploy RAT malware. According to the source, the attacks rely on custom ChatGPT configurations as part of the ClickFix delivery chain, and the outcome described is the deployment of remote access trojan malware. The report frames the activity as an abuse of custom ChatGPTs to drive ClickFix attacks, with RAT malware as the payload. The provided source text contains only the headline and a truncated excerpt, so details such as the specific RAT family, the operators behind the campaigns, the number of victims, or the exact ClickFix lures are not stated. No indicators of compromise, mitigation guidance, or affected platform versions appear in the excerpt. The item is limited to the claim that custom ChatGPTs are being used to push ClickFix attacks that deploy RAT malware, as reported by BleepingComputer.
Developers should note that custom ChatGPT configurations are being reported as a delivery vector for ClickFix attacks that deploy RAT malware.