Sophisticated phishing exploit abuses OpenAI's verified domain to target users
altryne · x · 2026-08-26
Security researchers uncovered a sophisticated phishing attack exploiting OpenAI's systems. Emails were sent from the verified domain [email protected] with a blue checkmark, making them appear legitimate. The scam directed users to a fake login portal (authportal.co). Users also received deceptive iOS app notifications, which further enhanced the attack's credibility.
Related event: Phishers Abuse OpenAI's Verified Domain to Target Users(3 posts)→
More from Safety
- Questioning if AI safety training overlooks pre-ChatGPT literature — JacquesThibs · 2026-08-26
- WSJ editor defends AI-written op-ed, sparking copyright debate — adariostrange · 2026-08-26
- AI cloning of UGC creators sparks ethics debate: face training replaces real humans — bigaiguy · 2026-08-26
- Healthcare AI Weekly: Epic's Roadmap, FDA Regulation Shifts — HealthcareAIGuy · 2026-08-26
- Dev tests paraphrase model to evade AI detector Pangram amid Druckenmiller WSJ AI op-ed row — ivan_bezdomny · 2026-08-26
- Stripe Blocked $300M Fraud for OpenCode, $8B for Cline — Meer_AIIT · 2026-08-26