News

Malicious Ads Mimicking AI Chatbots Target Login Credentials and MFA Codes

Security researchers have uncovered a phishing campaign that exploits the popularity of generative AI tools by creating convincing fake advertising portals for ChatGPT, Gemini, and Claude. The fraudulent pages are designed to closely mimic legitimate login interfaces, tricking users into entering their credentials.

What makes this campaign particularly dangerous is its ability to intercept multi-factor authentication codes. Even users who have enabled MFA—a security practice widely recommended as a defense against account compromise—may find their accounts vulnerable if they enter codes into these fake portals. The attackers can relay these codes in real time to gain complete access to the compromised accounts.

Users are advised to verify URLs carefully before entering any login information, especially when accessing AI tools through search results or advertisements. Bookmarking official sites and enabling hardware security keys where available provide stronger protections than traditional SMS or authenticator app codes against this type of attack vector.

Sources