Skip to Main Content

CYBERSECURITY

ChatGPT Phishing Campaign Targets User Credentials

A recent phishing campaign impersonating OpenAI leverages fake ChatGPT billing emails and a deceptive login page to steal user credentials and payment data.

Read time
6 min read
Word count
1,258 words
Date
Sep 27, 2026
Key Takeaways:
Security researchers at Cofense uncovered a phishing campaign impersonating OpenAI and ChatGPT.
The phishing emails claim subscription payments need attention and warn of a 48-hour deadline.
The fraudulent login page closely mimics the official ChatGPT experience to capture user credentials.
The sender's email address in this campaign originated from an nxcli.io domain.
ChatGPT Phishing Campaign Targets User Credentials. Visualization by Stable Diffusion
Visualization by Stable Diffusion
🌟 Non-members read here

A recent phishing campaign targets ChatGPT users, leveraging fake billing emails from OpenAI to steal login credentials and payment information. This attack exploits common concerns about subscription payments, directing unsuspecting users to convincing fraudulent websites. Individuals must exercise caution and verify communication authenticity to protect their personal and financial data.

Security researchers at Cofense identified this phishing operation. The scam begins with an email that appears to be a routine subscription notice from OpenAI. However, the embedded link directs users to a deceptive copy of the ChatGPT login page. This sophisticated campaign aims to compromise account credentials and payment details.

Understanding the Deception: Anatomy of a Phishing Attack

The phishing emails are meticulously crafted to appear legitimate, employing various tactics to trick recipients. These messages utilize the official ChatGPT logo and prominently display warnings about an overdue subscription payment. The email creates a sense of urgency, stating that recipients have only 48 hours to update their payment information. A large “Update Payment Information” button provides a clear call to action, ostensibly to resolve the issue.

The emails conclude with a sign-off from “The OpenAI Team,” lending an air of authenticity. This combination of familiar branding, bold text, and a tight deadline is designed to pressure individuals into acting quickly without proper scrutiny. Many users checking emails on the go or during busy periods might find these messages believable, overlooking critical red flags. The attackers rely on immediate reactions rather than careful verification.

A significant indicator of the scam lies in the sender’s email address. Cofense found that these phishing messages originated from an unusual domain, such as support@9527db6e1a[.]nxcli[.]io. This domain has no official affiliation with OpenAI. Legitimate OpenAI communications typically come from domains like @openai.com, @mail.openai.com, or @email.openai.com, among other official channels. Therefore, checking the full sender address is crucial. It is important not to rely solely on the display name shown in the inbox, as scammers can easily manipulate this to appear trustworthy while using an unrelated backend address. Always expand the sender information to view the actual email address.

The deceptive links within these phishing emails also employ clever redirection techniques. Clicking the “Update Payment Information” button initially sends users through a Google API redirect before forwarding them to the attacker’s malicious site. This intermediate step can make a suspicious link appear more credible because Google’s presence might mistakenly imply legitimacy. Attackers frequently abuse trusted services in this manner. For instance, similar tactics have involved hackers using legitimate Google Cloud tools to send phishing messages that resembled authentic Google notifications. Therefore, the mere presence of “Google” within a link does not guarantee a safe destination. While hovering over a button on a computer might reveal the destination, redirects can sometimes obscure the final malicious URL. The safest practice involves completely avoiding links embedded in suspicious emails.

Identifying Fake Login Pages and Protecting Your Information

Once a user clicks through the deceptive link, the sophistication of the scam intensifies. Cofense reports that the phishing page closely replicates the authentic ChatGPT login experience. This includes familiar logos, text, and icons, making it difficult for an untrained eye to distinguish from the real platform. However, the crucial difference lies in the browser’s address bar. The domain displayed in the browser does not match the legitimate ChatGPT login domain. If a victim proceeds to enter their login information on this fake site, the malicious page captures these credentials and transmits them directly to the attacker.

Following the data theft, the page typically redirects the victim to an error screen. This error can easily be perceived as a temporary login issue, by which point the attacker has already compromised the user’s credentials. This highlights the critical importance of always checking the address bar before inputting any sensitive information, such as passwords. While scammers can replicate the visual design of a login page, they cannot spoof the legitimate domain name associated with OpenAI. Always confirm that the URL in your browser matches the official website you intend to visit.

Proactive Measures and Recovery Steps

To protect against such sophisticated phishing attempts, users must adopt several proactive security habits. When an email warns of a payment problem from ChatGPT, the safest approach is to disregard the link provided in the message. Instead, open your web browser, navigate directly to ChatGPT.com, or launch the official ChatGPT application. From there, you can sign in and check your subscription status directly. For web subscriptions, OpenAI advises checking “Settings” then “Billing” or, for some accounts, “Settings,” “Account,” “Payment,” and “Manage.” If the subscription was initiated through Apple or Google Play, management should occur directly within those respective app stores.

Always scrutinize the sender’s actual email address. As demonstrated by the nxcli.io domain used in this campaign, unofficial domains are a clear indicator of a phishing attempt. OpenAI publishes its legitimate communication domains, providing a definitive reference for verification. It is essential to develop a habit of examining the browser’s address bar before entering any passwords or payment information. If the domain appears unfamiliar or incorrect, immediately close the page. Instead, access the service through its official application or by manually typing the correct website address into your browser. This practice also protects against fake banking sites, similar to incidents where criminals used sponsored search ads to direct victims to fraudulent bank login pages.

Never reuse your ChatGPT password across different online accounts. Employing a unique, strong password for each service is a fundamental security practice. Password managers are excellent tools for generating and securely storing complex, unique passwords, ensuring that a single compromised password does not unlock multiple accounts. Furthermore, enabling two-factor authentication (2FA) is a critical layer of security. OpenAI supports 2FA, which can be activated from the “Security” section of your ChatGPT settings. Depending on the account, 2FA options may include authenticator apps, push notifications, text messages, or passkeys. While 2FA creates a significant barrier for attackers who might obtain your password, it is important to note that enabling 2FA does not automatically terminate existing logged-in sessions.

If you suspect you have entered your password on a suspicious site, immediate action is necessary. Change your password for ChatGPT right away. Then, open ChatGPT and navigate to “Settings,” “Security,” and “Active sessions.” Review all listed devices and sessions. If any entries appear unfamiliar or suspicious, log them out individually. OpenAI also offers a “Log out of all sessions” option, which can sign you out across every device, although this process may take up to 30 minutes. If you use integrated sign-in options such as Google, Microsoft, or Apple for ChatGPT, ensure those accounts are also secured. If payment card information was compromised, contact your card issuer immediately using the number on the back of your card. Inform them of the potential compromise and monitor recent transactions for any unauthorized activity. Your card issuer will likely recommend replacing the card to prevent future fraudulent charges.

The Cofense report indicates this phishing campaign targeted both personal and work-related ChatGPT accounts. If you used work credentials or a company-managed account, promptly notify your IT or security department. They can assess the situation, review account activity, and implement additional security measures as needed. The effectiveness of this scam lies in its ability to mimic routine communications. A payment alert feels like a common occurrence, often leading people to lower their guard. The best defense is to always verify the authenticity of such messages by directly accessing the service rather than clicking suspicious links. Staying vigilant and following these security protocols significantly reduces the risk of falling victim to phishing attacks.

References