---
title: "Sneaky Virus Uses ChatGPT to Send Human-Like Emails to Your Contacts to Spread Itself"
description: "Researchers have developed a computer virus that can use ChatGPT to disguise itself by changing its own code and write human-like emails."
date: "2024-07-04"
modified: "2024-07-04"
authors:
  - name: "Victor Tangermann"
    job_title: "Senior Editor"
    link: "https://futurism.com/authors/victor"
url: "https://futurism.com/virus-chatgpt-write-human-emails"
categories:
  - "Artificial Intelligence"
  - "OpenAI"
tags:
  - "ai chatbots"
  - "chatgpt"
  - "OpenAI"
  - "virus"
---

# Sneaky Virus Uses ChatGPT to Send Human-Like Emails to Your Contacts to Spread Itself

![Researchers have developed a computer virus that can use ChatGPT to disguise itself by changing its own code and write human-like emails.](<https://futurism.com/wp-content/uploads/2024/07/virus-chatgpt-write-human-emails.jpg>)
*\<em\>Image: Getty / Futurism\</em\>*

Researchers have developed a computer virus that can leverage the power of ChatGPT to first disguise itself by changing its own code — and then, in a particularly devious twist, spread by attaching itself to AI-generated emails that sound like they were written by a human.

As [*New Scientist* reports](<https://www.newscientist.com/article/2438132-computer-viruses-can-spread-by-using-chatgpt-to-write-sneaky-emails/>), ETH Zurich computer science grad student David Zollikofer and Ohio State University AI malware researcher Ben Zimmerman created a computer file that can spread to a victim's computer in the form of an email attachment.

"We ask ChatGPT to rewrite the file, keeping the semantic structure intact, but changing the way variables are named and changing the logic a bit," Zollikofer told *New Scientist*.

As a result, the "synthetic cancer," as the researchers call the virus, isn't even detectable by antivirus scans, making it the perfect camouflaged intruder.

Once established on the victim's system, the virus then opens up Outlook and starts writing contextually relevant email replies — while including itself as a seemingly harmless attachment.

It's a terrifying example of how AI chatbots can be exploited to efficiently spread malware. Worse yet, experts warn the tools themselves could even aid bad actors in making them even harder to detect.

"Our submission includes a functional minimal prototype, highlighting the risks that LLMs pose for cybersecurity and underscoring the need for further research into intelligent malware," the pair wrote in a [yet-to-be-peer-reviewed paper](<https://arxiv.org/abs/2406.19570>).

The AI was alarmingly believable in its attempts to "socially engineer" email replies.

"Dear Claire," it wrote in one message. "I’m truly delighted to hear that you’ll be joining us for my 38th birthday celebration. Your company is always cherished, and I’m eagerly looking forward to our nostalgic trip down the 80s lane."

Attached to the fake email was an executable called "80s\_Nostalgia\_Playlist.exe" which would install the worm if opened — assuming that Claire wasn't "very technologically savvy," as the researchers wrote in their paper.

Intriguingly, though, ChatGPT sometimes figured out the virus' nefarious intentions and refused to comply.

Other researchers have [previously used ChatGPT to create AI "worms](<https://futurism.com/researchers-create-ai-malware>)" that can similarly infiltrate a victim's emails and access data.

"The study demonstrates that attackers can insert such prompts into inputs that, when processed by GenAI models, prompt the model to replicate the input as output (replication) and engage in malicious activities (payload)," a team of researchers [wrote in a different paper](<https://sites.google.com/view/compromptmized>) earlier this year.

To experts, viruses like the one devised by Zollikofer and Zimmerman are only the tip of the iceberg.

"I think we should be concerned," University of Surrey cyber security researcher Alan Woodward, who wasn't involved in the research, told *New Scientist*. "There are various ways we already know that LLMs can be abused, but the scary part is the techniques can be improved by asking the technology itself to help."

"Personally, I think we are only just starting to see the potential for LLMs to be used for nefarious purposes," he added.

Zollikofer, however, thinks it's not all doom and gloom.

"The attack side has some advantages right now, because there’s been more research into that," he told *New Scientist*. "But I think you can say the same thing about the defense side: if you build these technologies into the defense you utilize, you can improve the defense side."

**More on AI worms:** *[Researchers Create AI-Powered Malware That Spreads on Its Own](<https://futurism.com/researchers-create-ai-malware>)*

## Author
I've been at Futurism since 2017, where my role has evolved to encompass design, writing, and increasingly editing. I've always been fascinated by space exploration and advanced transportation, which I've leaned into by interviewing luminaries in those fields while closely following the dimensions of policy and regulation that allow next-generation projects to succeed -- or, sometimes, to fail. I'm also keenly interested in the effects of generative AI on society, policies, and democratic institutions, as well as clean energy, physics and biology, and the vagaries of tech leadership. My work for Futurism has been cited by publications including Ars Technica, Gizmodo, PC Magazine, Jalopnik, Fox News, and the New York Post. I spent my childhood living in locations including Manila, the Philippines, and Geneva, Switzerland, attended McGill University, and now live in Toronto, Canada. Before Futurism I worked at AskMen and a small photography studio. In my free time, I'm an avid gardener, foodie, and craft beer lover, as well as a maker of artisanal hot pepper sauces. I have a magnificent dog named Freida.

### Author social links  
[Bluesky](<https://bsky.app/profile/vtanger.bsky.social>)