Cyber Security

Over 100,000 stolen ChatGPT accounts are for sale on Dark Web

0

Over 100,000 OpenAI ChatGPT account credentials have been stolen by information-stealing malware which were put up for sale on illicit dark web marketplaces between June 2022 and May 2023.

According to a new report by cybersecurity company Group-IB, the credentials were discovered within information stealer logs made available for sale on the cybercrime underground.

The number of available logs containing compromised ChatGPT accounts reached a peak of 26,802 in May 2023. The Asia-Pacific region has experienced the highest concentration of ChatGPT credentials being offered for sale over the past year.

Asia-Pacific had almost 41,000 compromised accounts, Europe had nearly 17,000, and North America ranked fifth with 4,700. The countries with the most number of compromised ChatGPT credentials include Pakistan, Brazil, Vietnam, Egypt, the U.S., France, Morocco, Indonesia, and Bangladesh.

Information stealers are a malware category that targets account data stored on applications such as email clients, web browsers, instant messengers, gaming services, cryptocurrency wallets, and others.

The majority of logs containing ChatGPT accounts have been breached by the notorious Raccoon info stealer, followed by Vidar and RedLine.

Additional information about logs available on such markets includes the lists of domains found in the log as well as the information about the IP address of the compromised host.

Many enterprises are integrating ChatGPT into their operational flow. Employees enter classified correspondences or use the bot to optimize proprietary code. As ChatGPT’s standard configuration retains all conversations, this could inadvertently offer a trove of sensitive intelligence to threat actors if they obtain account credentials.

In order to mitigate such risks, it’s recommended that users follow appropriate password hygiene practices and secure their accounts with two-factor authentication (2FA) to prevent account takeover attacks.

Image Credits : Check Point

Priyanka R
Cyber Security Enthusiast, Security Blogger, Technical Editor, Author at Cyber Safe News

LockBit ransomware affiliate arrested in Arizona

Previous article

New Condi malware hijacks TP-Link Wi-Fi routers

Next article

You may also like

Comments

Leave a reply

Your email address will not be published. Required fields are marked *