Like SEO, LLMs May Soon Fall Prey to Phishing Scams
ID: 77699121-29e9-5bd4-b319-f792c1b5a7c6
STIX ID: report--77699121-29e9-5bd4-b319-f792c1b5a7c6
Feed Name: Dark Reading
Netcraft's test shows GPT-4.1-family models frequently return incorrect or unowned domains when asked for brand login pages; many suggested domains were unregistered, parked, or belonged to unrelated entities. The report warns attackers can weaponize these hallucinated URLs by creating AI-optimized content (GitBook pages, blogs, GitHub repos) so LLMs and AI-enabled search engines recommend phishing or malicious sites, and urges model developers and brands to implement URL verification, monitor AI-suggested impersonations, and pre-register high-risk lookalikes.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
