Fake ChatGPT, Gemini and Claude ad tools steal advertising account logins and MFA codes
The phishing campaign uses browser-in-the-browser pop-ups and takes advantage of interest in Meta's Muse agent to target agency staff and media buyers.

Evidence: Independent reports. Security stories run only with a named disclosure or independent reporting behind them.
Researchers have found a phishing campaign aimed at advertising account managers. It uses fake ChatGPT, Gemini, Claude and Perplexity sites to steal login credentials and multi-factor authentication codes, BleepingComputer and The Hacker News report. The operation took advantage of the recent launch of Meta's Muse AI agent and included a fake Muse Ads page. The pages target agency staff, media buyers and administrators whose accounts often extend to multiple downstream clients. With access to these accounts, attackers can spend the available balances on fraudulent ad campaigns or resell the accounts to other criminals. The fake products claim to help advertisers reach buyers, obtain ad briefs, and plan and audit campaigns and spending. Visitors are asked to connect their account. The 'connect' button opens a fake Google sign-in window drawn inside the page, with an address bar that shows accounts.google.com. This is the browser-in-the-browser technique, which researcher mr. dox described in March 2022. The fake window looks like a real login pop-up, so the visible address is not a reliable sign that the page is legitimate. The campaign shows that interest in new AI agents is becoming a lure for credential theft. It puts organizations that manage advertising budgets for many clients at particular risk.