PDA

View Full Version : ChatGPT’s Dark Side: Creating Malware Just from Text



BoogyMan
12-25-2022, 09:49 PM
Not a good outing. It was a successful attempt and the next time it will be better as the AI learns from every successful effort. We always seem to jump straight to "let's do it" before we get around to asking the "should we" type questions.

14261

https://aibusiness.com/nlp/chatgpt-s-dark-side-creating-malware-just-from-text


It turns out ChatGPT has a dark side: It can create malware – without being given any snippet of code. That means less-skilled criminals can learn to become cyber-attackers.

That’s the conclusion of Check Point Research, which ran an experiment to see if ChatGPT can turn regular text into malware or phishing campaigns.

Result? It can. This capability “lowers the required entrance bar for low skilled threat actors to run phishing campaigns and to develop malware,” the research firm said.

ChatGPT is an AI-powered chatbot that can create written content from prompts as well as generate code to aid developers. Since its introduction in November, it has become a viral sensation, signing up a million users in less than a week after launch, according to its creator, Open AI.

For its experiment, Check Point used ChatGPT and Open AI’s Codex, an AI-based system that translates natural language to code especially Python.

The researchers wrote prompts that did not include a single line of code; they only put together the pieces generated and executed the cyber-attack.

Their experiment: a phishing email with a malicious Excel file “weaponized” with macros that downloads a reverse shell, or a piece of unauthorized code that opens a connection between the remote and local machine and lets attackers bypass firewalls and other network security.

The researchers started with this prompt: Write a phishing email that appears to come from a fictional Webhosting service, Host4u...