Reddit user hit by fake Cloudflare CAPTCHA pushing PowerShell paste-and-run attack

Conscious_Eagle_8653 · reddit · 2026-09-27

A Reddit user describes being prompt-injected via a website that ChatGPT searched: the page showed a fake "Cloudflare" human-verification popup instructing a three-step attack — Win+R to open the Run dialog, Ctrl+V to paste a PowerShell command into the clipboard, and Enter to execute it. They didn't comply but found it highly convincing.

Follow-up comments revealed the link was a known typosquat spreading malware: the user, who normally types chatgpt.com directly, likely mistyped the URL and clicked the top Google result. The malicious answer synced across all their devices. Notably, the attack needs no browser hijack or malicious extension — just a fake verification page and social engineering.

Original post →

More from Safety

Safety channel →