Attackers abuse shared ChatGPT and Claude chats to spread malware

Disclosure: Some links in this article are affiliate links. AI Maestro may earn a commission if you make a purchase, at no…

By AI Maestro May 30, 2026 1 min read
Attackers abuse shared ChatGPT and Claude chats to spread malware


Attackers abuse shared ChatGPT and Claude chats to spread malware

Attackers are exploiting shared chat links in ChatGPT and Claude to push malware. Both platforms let users share conversations publicly via URL. Victims stumble onto these chats through paid search ads. Because the links sit on trusted domains, security tools don’t flag them, and users are more likely to trust what they see.

IndicatorTypehxxps://claude[.]ai/share/8e6401b5-4849-46c4-a3cb-29e1c3c49131URLhxxps://chatgpt[.]com/s/cb_6a0f1e6bbec88191aa7fede27163f08dURLopenew[.]appdomainde8c50e8ccd240ef9d10ec26c26eeb37a4d1cad7c1e0edf3bb6e5689ec2dde78SHA256

Security firm Push Security says attackers craft shared chats that mimic official outage notices or install guides. One newer twist uses ChatGPT’s code-rendering feature to build a full fake error page right inside a shared chat, then pushes users to download an infected desktop app. On Claude, shared chats pose as Apple support walkthroughs laced with malicious Terminal commands.

Push Security calls the attack technique “LLMShare.” BleepingComputer and Kaspersky have both documented similar campaigns.

Subscribe now

Stay ahead of AI. Get the most important stories delivered to your inbox — no spam, no noise.

Name
Scroll to Top