Generating Phishing Attacks using ChatGPT

05/09/2023
by   Sayak Saha Roy, et al.
0

The ability of ChatGPT to generate human-like responses and understand context has made it a popular tool for conversational agents, content creation, data analysis, and research and innovation. However, its effectiveness and ease of accessibility makes it a prime target for generating malicious content, such as phishing attacks, that can put users at risk. In this work, we identify several malicious prompts that can be provided to ChatGPT to generate functional phishing websites. Through an iterative approach, we find that these phishing websites can be made to imitate popular brands and emulate several evasive tactics that have been known to avoid detection by anti-phishing entities. These attacks can be generated using vanilla ChatGPT without the need of any prior adversarial exploits (jailbreaking).

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/02/2018

Include Me Out: In-Browser Detection of Malicious Third-Party Content Inclusions

Modern websites include various types of third-party content such as Jav...
research
08/09/2019

Catching the Phish: Detecting Phishing Attacks using Recurrent Neural Networks (RNNs)

The emergence of online services in our daily lives has been accompanied...
research
09/20/2020

Phishing Detection Using Machine Learning Techniques

The Internet has become an indispensable part of our life, However, It a...
research
05/22/2018

A Survey on Malicious Domains Detection through DNS Data Analysis

Malicious domains are one of the major resources required for adversarie...
research
05/23/2023

Understanding the Country-Level Security of Free Content Websites and their Hosting Infrastructure

This paper examines free content websites (FCWs) and premium content web...
research
02/05/2020

Demystifying content-blockers: A large scale study of actual performance gains

With the evolution of the online advertisement and tracking ecosystem, c...
research
01/07/2020

Is Cryptojacking Dead after Coinhive Shutdown?

Cryptojacking is the exploitation of victims' computer resources to mine...

Please sign up or login with your details

Forgot password? Click here to reset