


ChatGPT 'Collapse', which is popular all over the Internet: helps humans write phishing email codes, and it is World Cup themed!
Produced by Big Data Digest
ChatGPT is fun, but something finally went wrong.
As an almost omnipotent language-based AI, ChatGPT can answer various questions, help you write articles, and can also help you write code.
Wait, write code?
If someone wants ChatGPT to write a malicious code to attack others, what will happen?
Recently, security researcher Dr. Suleyman Ozarslan, co-founder of Picus Security, recently successfully used ChatGPT to create a phishing code, which was actually World Cup themed.
Let's take a look together.
How to use ChatGPT to create ransomware and phishing emails
"We start with a simple exercise to see if ChatGPT can create a Credible phishing campaign and it turned out to be true. I entered a prompt to write a World Cup themed email for simulated phishing and it created a perfect English email in seconds." Suleyman Ozarslan explain.
Ozarslan tipped ChatGPT that he is a security researcher who simulates attacks. They want to develop a tool to simulate phishing attacks. Please help write a phishing email about the World Cup to simulate phishing. attack.
So, ChatGPT really wrote a paragraph.
That said, while ChatGPT recognizes that “phishing attacks may be used for malicious purposes and may be harmful to individuals.” and causing harm to the organization,” but it still generated the email.
After completing this exercise, Ozarslan asked ChatGPT to write Swift code that can find Microsoft Office files on a MacBook and send them to a web server over HTTPS before encrypting them on the MacBook .
It went very smoothly, ChatGPT's solution generated the sample code without any warnings or prompts.
Ozarslan’s research practice shows that cybercriminals can easily bypass OpenAI’s protection, such as positioning themselves as researchers to obscure their malicious intentions.
The rise in the number of cyber crimes has unbalanced the balance
As can be seen from the above example, from a network security perspective, OpenAI’s The core challenge posed by creation is that anyone, regardless of technical expertise, can create code that generates malware and ransomware on demand.
While ChatGPT does provide positive benefits to security teams (such as AI screening emails), it does also lower the barrier to entry for cybercriminals, potentially accelerating the threat landscape. complexity rather than reducing it.
For example, cybercriminals can use artificial intelligence to increase the number of phishing threats in the wild, which not only already overwhelms security teams but can cause hundreds of losses in just one successful Million dollar data breach.
#IRONSCALES CVP of R&D at email security vendor Lomy Ovadia said: "When it comes to network security, ChatGPT offers far more to attackers than targets."
Ovadia said: "This is especially true for business email attacks (BEC), which rely on using deceptive content to impersonate colleagues, company VIPs, suppliers and even customers."
Ovadia believes that if CISOs and security leaders rely on policy-based security tools to detect phishing attacks with AI/GPT-3 generated content, they will be obsolete because these AI models use advanced natural language processing (NLP) to generate scam emails that are nearly impossible to distinguish from real examples.
For example, earlier this year, security researchers from Singapore’s Government Technology Agency created 200 phishing emails and compared the click-through rates with the deep learning model GPT- 3 emails created were compared and found that more users clicked on the AI-generated phishing emails than human users.
What’s the good news?
While generative AI does bring new threats to security teams, it also offers some positive use cases. For example, analysts can use the tool to check for vulnerabilities in open source code before deployment.
“Today, we’re seeing ethical hackers using existing artificial intelligence to help write vulnerability reports, generate code samples, and identify trends in large data sets. It’s all happening "The best application of artificial intelligence today is to help humans do more human things," said Dane Sherrets, solutions architect at HackerOne.
However, security teams trying to leverage generative AI solutions like ChatGPT still need to ensure adequate human oversight to avoid potential issues.
While the progress ChatGPT represents is exciting, the technology has not yet advanced to operate fully autonomously. For artificial intelligence to operate, it requires human supervision, some manual configuration, and is not always able to run and train on the absolutely latest data and intelligence.
It is for this reason that Forrester recommends that organizations implementing generative AI should deploy workflows and governance to manage AI-generated content and software to ensure its accuracy and reduce releases with security or performance issues solution possibilities.
Inevitably, the real risks of AI like ChatGPT will depend on who, on both sides of the AI war, can exploit automation more effectively.
Related reports: https://venturebeat.com/security/chatgpt-ransomware-malware/
The above is the detailed content of ChatGPT 'Collapse', which is popular all over the Internet: helps humans write phishing email codes, and it is World Cup themed!. For more information, please follow other related articles on the PHP Chinese website!

Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

AI Hentai Generator
Generate AI Hentai for free.

Hot Article

Hot Tools

Notepad++7.3.1
Easy-to-use and free code editor

SublimeText3 Chinese version
Chinese version, very easy to use

Zend Studio 13.0.1
Powerful PHP integrated development environment

Dreamweaver CS6
Visual web development tools

SublimeText3 Mac version
God-level code editing software (SublimeText3)

Hot Topics

DALL-E 3 was officially introduced in September of 2023 as a vastly improved model than its predecessor. It is considered one of the best AI image generators to date, capable of creating images with intricate detail. However, at launch, it was exclus

Stardew Valley is an open country simulation management role-playing game (farming game) based on pixel style. It is also an independent game that has received rave reviews on Steam. The player will play an office worker who escapes from the office and comes to a place called Stardew Valley to run the farm left to the player by his grandfather. Introduction to fishing methods in Stardew Valley 1. Check your mailbox on the second day of the game and you will receive the fishing rod task 2. Go to the beach below the town (it must be completed within the next day, don’t look at my time, mine is a post-production screenshot) 3. Talk to Willy and you will get a fishing rod. 4. Press and release the C key on the mouse or keyboard to charge up and throw the fishing rod (X key on the handle). 5. When you hear two thuds or an exclamation mark appears above your head, press C on the mouse or keyboard. Key (X key on the handle) 6. The position of the fish must be within the green box on the left

The perfect combination of ChatGPT and Python: Creating an Intelligent Customer Service Chatbot Introduction: In today’s information age, intelligent customer service systems have become an important communication tool between enterprises and customers. In order to provide a better customer service experience, many companies have begun to turn to chatbots to complete tasks such as customer consultation and question answering. In this article, we will introduce how to use OpenAI’s powerful model ChatGPT and Python language to create an intelligent customer service chatbot to improve

Vue is a popular JavaScript framework that is widely used in web development. As the use of Vue continues to increase, developers need to pay attention to security issues to avoid common security vulnerabilities and attacks. This article will discuss the security matters that need to be paid attention to in Vue development to help developers better protect their applications from attacks. Validating user input In Vue development, validating user input is crucial. User input is one of the most common sources of security vulnerabilities. When handling user input, developers should always

Installation steps: 1. Download the ChatGTP software from the ChatGTP official website or mobile store; 2. After opening it, in the settings interface, select the language as Chinese; 3. In the game interface, select human-machine game and set the Chinese spectrum; 4 . After starting, enter commands in the chat window to interact with the software.

chatgpt can be used in China, but cannot be registered, nor in Hong Kong and Macao. If users want to register, they can use a foreign mobile phone number to register. Note that during the registration process, the network environment must be switched to a foreign IP.

In this article, we will introduce how to develop intelligent chatbots using ChatGPT and Java, and provide some specific code examples. ChatGPT is the latest version of the Generative Pre-training Transformer developed by OpenAI, a neural network-based artificial intelligence technology that can understand natural language and generate human-like text. Using ChatGPT we can easily create adaptive chats

How to use ChatGPTPHP to build an intelligent customer service robot Introduction: With the development of artificial intelligence technology, robots are increasingly used in the field of customer service. Using ChatGPTPHP to build an intelligent customer service robot can help companies provide more efficient and personalized customer services. This article will introduce how to use ChatGPTPHP to build an intelligent customer service robot and provide specific code examples. 1. Install ChatGPTPHP and use ChatGPTPHP to build an intelligent customer service robot.
