signalAI热榜2026-09-25
Security researchers disclose hackers using GEO to poison ChatGPT, Gemini, and Google AI Overview, 374 companies implanted with fraudulent contact info
A real-world attack campaign is poisoning AI answers from ChatGPT, Gemini, and Google AI Overview using GEO-optimized content. The attackers planted fake contact details and phishing links across thousands of malicious pages, affecting 374 companies including airlines, banks, and travel platforms. The technique exploits user trust, as 92% of users do not verify AI answers.
- for who
- Security researchers, enterprise security teams, and AI platform developers
- why now
- Active GEO poisoning attacks are now hijacking AI answers for 374 companies, urgent for founders.
- what changes
- They must treat AI-generated answers as untrusted and implement detection and response for content poisoning attacks
- to do
- Deploy automated systems to detect and reverse GEO-based poisoning attacks on AI outputs
key points
- 374 companies affected by GEO poisoning across ChatGPT, Gemini, and Google AI Overview
- Attackers use UGC platforms to plant fake contact info and phishing links
- 92% of users don't verify AI answers, amplifying attack impact
#geo pollution#ai security#phishing#supply chain attack3 sources · confidence medium
score
score 8 out of 10. 0-10: how dense the facts are, multiplied by how much you can do with them after reading. 8+ means the topic's evidence bar is met: benchmarks and availability for a new model, amount and investors for a funding round, revenue figures for a solo-money story. Below 5 an item does not enter the digest. A press release scores 3 or less, a reprint loses 2, anything older than 14 days loses 1, a headline that misleads loses 3.
read the source