Fake ChatGPT, Gemini, and Claude Ad Portals Capture Credentials and MFA Codes

Fake ChatGPT, Gemini, and Claude Ad Portals Capture Credentials and MFA Codes

Researchers uncovered a human-operated phishing platform that impersonates AI advertising products tied to Google Gemini, Anthropic Claude, OpenAI ChatGPT, Perplexity, Meta Muse, and Manus to steal credentials and MFA codes through browser-in-the-browser login traps. The campaign uses fake brand-specific landing pages, phishing emails, and shared infrastructure to target ad account owners and can lead to account takeover, ad fraud, and long-term business disruption. #GoogleGemini #AnthropicClaude #OpenAIChatGPT #Perplexity #MetaMuse #Manus #museadsai #SocketIO

Keypoints

  • The phishing platform uses browser-in-the-browser windows to steal credentials and MFA codes.
  • Fake ads products impersonate Gemini, Claude, ChatGPT, Perplexity, Muse, and Manus.
  • The campaign fingerprints victims and sends data to attacker-controlled endpoints in real time.
  • It targets agency staff, media buyers, and manager-account administrators for ad account abuse.
  • Related activity also includes Google Ads refund lures, recruitment sites, and NetSupport RAT delivery.

Read More: https://thehackernews.com/2026/10/fake-chatgpt-gemini-and-claude-ad.html