Attackers impersonate popular AI brands to spread malware (opens in a new tab)
Why readSophos MDR telemetry quantifies AI-brand impersonation: 34 of 86 AI-tagged cases over 12 months confirmed malicious, using fake Perplexity, Claude, ChatGPT and Copilot lures.
Sophos X-Ops reviewed managed detection and response cases from 2 July 2025 to 29 June 2026, finding 34 confirmed malicious cases involving AI out of 86 initially tagged, plus four uncovered later. Attackers impersonated Perplexity, Claude, ChatGPT and Copilot to deliver infostealers, backdoors and malicious browser extensions. The stated methodology and case counts make the numbers usable, though this is Help Net Security's write-up rather than the Sophos original.