Security Company Cisco Talos issued a bulletin on June 7 revealing that there arehackerSetting up fake AI tool websites to spread ransomware such as CyberLock, Lucky_Gh0$t, Numero, etc.vaulting horse (gymnastics),The corresponding hackers are known to have torrented Novaleads, ChatGPT, InVideo AI and other platforms.

1AI Reference Report learned that, for example, the cottage Novaleads platform, although in fact the original Novaleads company is mainly engaged in "customer relationship management services" software, not involved in AI, but the hackers themselves pinched a fake brand called "Novaleads AI" and registered the corresponding domain name and set up an official website to distribute the so-called AI software, but the corresponding software is actually a ransom horse. Although the original Novaleads company actually specialized in "customer relationship management service" software and was not involved in AI, hackers made up a fake brand called "Novaleads AI", registered the corresponding domain name, set up an official website, and distributed the so-called AI software, which is in fact a ransomware, and after running it, they will ask for $50,000 worth of digital currency as ransom from the victims.
As for the fake ChatGPT platform, the hackers provide the so-called "ChatGPT 4.0 full version installer" to users who don't know about AI, and the corresponding file name is "ChatGPT 4.0 full version - Premium.exe", and all files on the victim's computer will be encrypted after running it. Premium.exe", after the victim runs it, all files less than 1.2GB in size on the computer will be encrypted.
In the case of InVideo AI, hackers set up a fake official website to disseminate a Numero Trojan horse. After running, the corresponding Trojan horse will continuously monitor the victim's desktop windows and overwrite all the window titles, buttons, and contents with "1234567890", rendering the interface unusable or unrecognizable, and restarting the program once every 60 seconds in order to completely paralyze the victim's system. Every 60 seconds, the program will be restarted in order to completely paralyze the victim's system.