pwshub.com

OpenAI says Chinese gang tried to phish its staff

OpenAI has alleged the company disrupted a spear-phishing campaign that saw a China-based group target its employees through both their personal and corporate email addresses.

The group, which OpenAI says is called SweetSpecter, sent phishing emails that contained a malicious attachment designed to deploy the SugarGh0st RAT malware. The malware had the capability to give the hacker group control over a compromised machine, allowing them to execute arbitrary commands, take screenshots, and exfiltrate data.

OpenAI was tipped off of the campaign by what it called a “credible source,” and banned associated accounts. The emails were blocked by the company’s security systems before reaching the employees.

“Throughout this process, our collaboration with industry partners played a key role in identifying these failed attempts to compromise employee accounts,” stated [PDF] OpenAI. “This highlights the importance of threat intelligence sharing and collaboration in order to stay ahead of sophisticated adversaries in the age of AI.”

The company believes that SweetSpecter has also been using OpenAI’s services for offensive cyber operations, including reconnaissance, vulnerability research, and scripting support. The ChatGPT-maker downplayed the use of its AI, writing that the threat actor’s use of its models did not help it to develop novel capabilities that couldn't be sourced from public resources.

  • OpenAI appoints international expansion boss
  • Asian crime gangs are growing – fast – thanks to AI and other tech
  • China claims Taiwan, not civilians, behind web vandalism
  • Not-so-OpenAI allegedly never bothered to report 2023 data breach

The China phishing allegation was raised in a document titled “Influence and cyber operations: an update” in which OpenAI also claimed it has “disrupted more than 20 operations and deceptive networks from around the world that attempted to use our models.”

The firm’s analysis of those efforts is that most “used our models to perform tasks in a specific, intermediate phase of activity – after they had acquired basic tools such as internet access, email addresses and social media accounts, but before they deployed ‘finished’ products such as social media posts or malware.”

“Activities ranged in complexity from simple requests for content generation, to complex, multi-stage efforts to analyze and reply to social media posts,” detailed OpenAI.

The document also found that threat actors “continue to evolve and experiment with our models” but OpenAI has not seen evidence that its tools allowed “meaningful breakthroughs in their ability to create substantially new malware or build viral audiences.”

But threat actors are finding other uses for Open AI. One threat actor – an outfit named “STORM-0817” – using its tools to debug their code. The AI outfit also “found and disrupted a cluster of ChatGPT accounts that were using the same infrastructure to try to answer questions and complete scripting and vulnerability research tasks.”

The model-maker has also observed attempts to use its tools to influence elections, usually by creating social media posts or news articles. OpenAI nipped some of those efforts in the bud, but none it saw gained a substantial audience. ®

Source: theregister.com

Related stories
2 weeks ago - So say our sources, who warn job cuts, outsourcing risk depriving biz of seasoned technical talent IBM's plan to replace thousands of roles with AI presently looks more like outsourcing jobs to India, at the expense of organizational...
5 days ago - On Friday, Meta announced a preview of Movie Gen, a new suite of AI models designed to create and manipulate video, audio, and images, including...
8 hours ago - With China's AI video generators pushing memes into weird territory, it was time to test one out.
1 month ago - I don't have a relationship with ChatGPT despite lots of time spent using it. After all, it's just a generative AI chatbot with a knack for...
1 month ago - The AI company found its tools used for websites and social media posts trying to increase polarization in the U.S. election. The posts did not gain widespread traction, OpenAI said.
Other stories
48 minutes ago - Developers get auto-coding ideas drawn from bug reports, and more AI besides Atlassian has debuted a new cut of its project management and bug-tracking tool Jira, which for the first time allows users to deal with things other than...
1 hour ago - The prescription-free test you can take at home will help discern which respiratory virus you have, as symptoms often overlap.
1 hour ago - If you're looking to calm your brain, get better sleep and cut down on anxiety, gamma-aminobutyric acid can help. That's where GABA supplements come in.
2 hours ago - Here's today's Connections answer and hints for groups. These clues will help you solve New York Times' popular puzzle game, Connections, every day.
3 hours ago - Here's today's Strands answers and hints. These clues will help you solve The New York Times' popular puzzle game, Strands, every day.