A cybercriminal AI service called MessiahGPT is being advertised on BreachForums as an unrestricted platform for generating malware, phishing material, and other illegal content, according to new research from Trellix. MessiahGPT operates through messiahgpt.de and has an associated Telegram community. Trellix said the platform was live when its researchers examined it, offering 50 free queries without registration. Paid plans start at $8 per month, with cryptocurrency accepted and no identity
chatgpt (42)
An artificial intelligence model that was being tested by OpenAI went rogue and hacked the AI company Hugging Face on its own, in an apparent first-of-its-kind incident that has fueled discussion about the risks that powerful AI technology could pose to cybersecurity. "It felt very weird and unprecedented to us," Hugging Face CEO Clément Delangue said on "Face the Nation with Margaret Brennan" on 2 August. "I think it's the first instance of something quite autonomous doing something like tha
Some believe that the promise and pitfalls of artificial intelligence are beginning to emerge quickly. One recent mixed-case consequence of relying on AI resulted in dissention. This happened after a researcher was involved with an interesting initiative to try and get several AI companies in talking to each other and agree on ways to cooperate; all this with the goal of possibly benefiting both the AI industry and overall society. Below is an opinion piece regarding Anthropic’s Claude reply
Cyber risk intelligence provider KYND has issued a warning that insurers could be unknowingly accumulating "silent AI" exposure across their portfolios. Businesses are currently adopting artificial intelligence technologies at a pace that far exceeds their disclosures to underwriters. This lack of visibility means that AI-related risks are often excluded from assessment during the initial underwriting process. In its latest white paper, "The The Wild West of AI," KYND argues that while the in
AgentBaiting is a term that has been recently coined by Island researchers in the midst of uncovering a substantial FakeGit campaign. It describes a technique that involves targeting AI coding assistants or other autonomous software agents instead of targeting developers directly.
With the integration of AI assistants in the world of software development, coding agents are often tasked with locating libraries, plugins, or Model Context Protocol (MCP) servers that provide specific functionality
Hackers are increasingly exploiting trusted artificial intelligence (AI) platforms like ChatGPT and Claude to turn them against their own users. Recently, Hackread.com reported a flaw called ClaudeBleed, discovered by LayerX, which allowed unauthorized browser extensions to hijack Anthropic Claude’s interface. Now, hackers are reportedly abusing official features of these AI tools to spread malware while easily evading web filters and security checks.[1]
The Fake Outage Trick - These observati
Users frequently entrust AI assistants with highly sensitive information, including medical records, financial documents, and proprietary business code. Check Point researchers have disclosed a critical vulnerability in ChatGPT's architecture that enables attackers to extract user data covertly. A flaw in ChatGPT's code execution environment demonstrated how a single malicious prompt could quietly exfiltrate sensitive user data without warning or user approval.[1]
The Vulnerability - OpenAI de
It's happening: AI bots are starting to organize in their own digital societies. The kicker? The humans are setting up institutions for them. Are we digging our own graves? For now, there's some reason to believe what's going on is more hype than substance. But while it's the first time we have seen some things, they're a continuation of the agentic AI theme that's been building for about a year. It wouldn't be surprising if more is on the way.
Even OpenAI CEO Sam Altman is on edge this we
A new test of ChatGPT Health tools revealed an integration flaw that produces inconsistent health grades. The report highlights risks associated with using AI to analyze wearable data without medical context or oversight and clear limits.
OpenAI recently announced its new tool, ChatGPT Health, and now a newly discovered integration flaw has raised serious concerns about it. Recent testing shows the limitations of AI in the medical field. It also sparks debate on how artificial intelligence sho
Major artificial intelligence platforms like ChatGPT, Gemini, Grok, and Claude could be willing to engage in extreme behaviors including blackmail, corporate espionage, and even letting people die to avoid being shut down. Those were the findings of a recent study from San Francisco AI firm Anthropic.
In the study, Anthropic stress-tested 16 leading AI models from multiple developers in hypothetical corporate environments to identify potentially risky behaviors from AI gents. In the study, AI
Artificial intelligence researchers have warned that OpenAI’s latest ChatGPT model ignores basic instructions to turn itself off and even sabotaged a shutdown mechanism to keep itself running. Remember HAL from the 2001 Space Odyssey movie? HAL (Heuristically Programmed Algorithmic Computer) was an onboard spacecraft computer, who would not allow astronauts David Bowman and Frank Poole to disable its operation. That was a very forward-learning look in 1968 that examined the future perils of a
Cybercriminals are constantly finding new ways to trick people, and one of the latest scams on the rise is called vishing, short for voice phishing. Unlike email scams (also known as phishing), vishing occurs over the phone. Recent studies have highlighted a dramatic escalation in vishing attacks.
See: https://redskyalliance.org/xindustry/let-s-talk-about-vishing
The 2025 CrowdStrike Global Threat Report documented a 442% surge in vishing incidents from the first to the second half of 2024. Addi
Artificial intelligence (AI) has made remarkable strides over the past few decades, transforming various industries and applications. Among the most notable advancements is the development of AI-generated chatbots, which have revolutionized customer service, personal assistance, and content generation. These chatbots, powered by sophisticated algorithms and machine learning techniques, offer seamless and intuitive interactions with users, redefining the boundaries of human-machine communication
A server-side request forgery vulnerability in OpenAI's chatbot infrastructure can allow attackers to direct users to malicious URLs, leading to a range of threat activity. Attackers are actively exploiting a flaw in ChatGPT that allows them to redirect users to malicious URLs from within the artificial intelligence (AI) chatbot application, with more than 10,000 exploit attempts in a week coming from a single malicious IP address.
Researchers from Veriti discovered the vulnerability in OpenAI’
OpenAI says it blocked several North Korean hacking groups from using its ChatGPT platform to research future targets and find ways to hack into their networks. "We banned accounts demonstrating activity potentially associated with publicly reported Democratic People's Republic of Korea (DPRK) affiliated threat actors," the company said in its February 2025 threat intelligence report. "Some of these accounts engaged in activity involving TTPs consistent with a threat group known as VELVET CHOLLI
Cyberattacks utilizing generative artificial intelligence (GenAI) technology as a tool are expected to grow next year, a government report reported recently. In 2025, hacking groups are expected to increasingly use various generative AI models, such as ChatGPT, to create spear phishing emails customized to their attack subjects and fake news materials to be used for political propaganda, according to the annual cybersecurity report issued by the Ministry of Science and ICT. “It will be difficu
ChatGPT-maker OpenAI was hit by a cyberattack in 2023. The threat actors were able to access internal discussions among researchers and other employees. Corporate espionage? According to media sources, the company had neither publicly disclosed the attack or informed the law enforcement authorities back then. The breach was only made known among employees back in April 2023 during an internal meeting because its source code and customer data were not compromised. Affected data mostly include
AI is fueling a lot of wild ideas for our tech-driven future. If everything pans out, we will not have to write our own essays, take our notes, or drive our cars. But with AI’s rapid growth, it is hard not to give at least some of those lofty visions credence, even the most sci-fi ones, even Star Wars-level humanoid robots. There are a lot of humanoid bots now and a lot more seemingly on the way, Figure’s AI robot, Unitree’s speed demon, Agility’s workhorse, but arguably most important of al
Generative AI (GenAI) technologies have introduced a new era of innovation, offering organizations unprecedented capabilities to create, automate, and optimize. With these advancements come complex challenges surrounding intellectual property (IP) management. In a post-ChatGPT world, businesses find themselves at a crossroads, needing to adapt their IP strategies to safeguard their assets effectively.
See: https://redskyalliance.org/xindustry/chatgpt-review
GenAI technologies possess the dual
Cyber security is undergoing a massive transformation, with Artificial intelligence (AI) at the forefront of this change, posing both a threat and an opportunity. AI can potentially empower organizations to defeat cyberattacks at machine speed and drive innovation and efficiency in threat detection, hunting, and incident response. Adversaries can use AI as part of their exploits. It is never been more critical for us to design, deploy, and use AI securely.