Telegram (AI) YouTube Facebook X
Ру
Exploiting Grok: Chatbot Used to Spread Scam Links

Exploiting Grok: Chatbot Used to Spread Scam Links

Malefactors exploit Grok for posting prohibited links on X.

Malefactors have found a way to exploit Grok for posting prohibited links on X, as reported by Guardio Labs researcher Nati Tal.

Tal has termed this type of attack as Grokking and has informed the administrators of X about the issue.

Fraudsters often launch dubious video ads with adult content as bait. However, if a link is inserted into the main block of such a message, X will block the publication.

Instead, the malefactors have learned to hide the link in the small “From:” metadata field beneath the video card, which apparently is not scanned by the social network.

They then respond to the ad, asking Grok something like, “where is this video from” or “what is the link to this clip.”

The chatbot parses the hidden “From:” field and replies with the full malicious address in a clickable format.

Posts from Grok garner increased trust, boosting the reach and reputation of the post. In some cases, the ad is seen by millions of users.

Снимок экрана 2025-09-05 в 13.25.10
Source: Tal.

The researcher found that many such links lead to data-stealing malware, fake CAPTCHA tests, and other dubious resources.

Previously, the AI startup xAI published hundreds of thousands of dialogues between users and the Grok chatbot on Google and other search engines. In many cases, confidential information was disclosed without permission.

Подписывайтесь на ForkLog в социальных сетях

Telegram (основной канал) Facebook X
Нашли ошибку в тексте? Выделите ее и нажмите CTRL+ENTER

Рассылки ForkLog: держите руку на пульсе биткоин-индустрии!

We use cookies to improve the quality of our service.

By using this website, you agree to the Privacy policy.

OK