ChatGPT Outputs Malicious Link Prompting PowerShell Hijack
Ok-Combination3165 · reddit · 2026-08-07
A Reddit user reported that ChatGPT provided a malicious link (safepage-gpt.com) in its response. The website presents a fake Cloudflare verification page, tricking users into pressing Win+R and automatically copying a malicious PowerShell script to the clipboard.
The script attempts to bypass execution policies and download further malicious code from a remote server. Fortunately, the user identified the scam and did not execute the command. This highlights a significant vulnerability in how LLMs handle link generation and content safety filtering.
More from Safety
- Sam Altman on the AI dilemma: trade-offs between loss of control and power centralization — r0ck3t23 · 2026-08-24
- Debate erupts over lethal military robots vs. failing civilian units — teortaxesTex · 2026-08-24
- Only 1 of 20 Potential Presidential Candidates Answered AI Pause Query — DavidSKrueger · 2026-08-24
- Chinese Transforming Robot Dog Sparks US Trade Policy Criticism — TinfoilTricorn · 2026-08-24
- Turkey blocks at least 12 Grok posts on national security grounds — Unusual_Variation293 · 2026-08-24
- Nature Comment: Provenance, not interpretability, grounds trust in autonomous science — gabepgomes · 2026-08-24