Hackers Give ChatGPT Users 48 Hours to “Update Payment” in Credential-Stealing Phishing Attack
Brief
Threat actors are targeting ChatGPT users with fake subscription-payment emails that create urgency and direct victims to credential-stealing websites.
The phishing campaign, identified by Cofense’s Phishing Defense Center (PDC), impersonates OpenAI and warns recipients that they must update their payment details within 48 hours.
The emails are designed to target both personal and work users of ChatGPT, especially those who may have paid subscriptions or expect billing notifications.
As generative AI platforms become widely used, attackers are increasingly abusing their trusted brands. ChatGPT subscriptions offer a convincing theme for phishing because payment-update requests are common and can appear legitimate to busy users.
ChatGPT Payment Phishing Scam
The malicious email is formatted to resemble a routine invoice or billing notification.
