
Hackers Abuse OpenAI’s Official Domain in Novel “LLMShare” Phishing Campaign
Security firm Push Security has exposed a new attack vector dubbed “LLMShare,” where threat actors exploit ChatGPT’s native sharing features to host phishing pages directly on OpenAI’s official domain. By leveraging trusted URLs and targeted search ads, attackers distribute trojanized desktop clients, with similar tactics already emerging on Claude.












