Researchers uncovered a human-operated phishing platform that impersonates AI advertising products tied to Google Gemini, Anthropic Claude, OpenAI ChatGPT, Perplexity, Meta Muse, and Manus to steal credentials and MFA codes through browser-in-the-browser login traps. The campaign uses fake brand-specific landing pages, phishing emails, and shared infrastructure to target ad account owners and can lead to account takeover, ad fraud, and long-term business disruption. #GoogleGemini #AnthropicClaude #OpenAIChatGPT #Perplexity #MetaMuse #Manus #museadsai #SocketIO
Keypoints
- The phishing platform uses browser-in-the-browser windows to steal credentials and MFA codes.
- Fake ads products impersonate Gemini, Claude, ChatGPT, Perplexity, Muse, and Manus.
- The campaign fingerprints victims and sends data to attacker-controlled endpoints in real time.
- It targets agency staff, media buyers, and manager-account administrators for ad account abuse.
- Related activity also includes Google Ads refund lures, recruitment sites, and NetSupport RAT delivery.
Read More: https://thehackernews.com/2026/10/fake-chatgpt-gemini-and-claude-ad.html