Skip to main content

Bing Chat’s ads are sending users to dangerous malware sites

Since it launched, Microsoft’s Bing Chat has been generating headlines left, right, and center — and not all of them have been positive. Now, there’s a new headache for the artificial intelligence (AI) chatbot, as it’s been found it has a tendency to send you to malware websites that can infect your PC.

The discovery was made by antivirus firm Malwarebytes, which discussed the incident in a blog post. According to the company, Bing Chat is displaying malware advertisements that send users to malicious websites instead of filtering them out.

A malicious advert served in Bing Chat.
Malwarebytes

When using Bing Chat, you can ask the chatbot to find information, websites, apps, and other things for you. Sometimes, it will provide a link in the chat. Almost from Bing Chat’s first release, Microsoft has been inserting adverts into these links, much like how a Google search places ads above initial results.

Recommended Videos

The problem, though, is that it is very easy for bad actors to buy an advert in order to promote a website that masquerades as a legitimate destination. If you’re not careful, you can end up falling victim to this bait and switch.

Advertising malicious websites

Bing Chat shown on a laptop.
Jacob Roach / Digital Trends

Here’s how it works. In the blog post, Malwarebytes detailed how you could ask Bing Chat to download a popular IP scanning app that is used by system admins. Bing Chat provided a link to the app’s official website, but hovering over the link actually showed two results: the real website, with a malicious advert placed right above it.

If you didn’t look too closely — or weren’t familiar with the app’s official website address — you might not realize that the first result would take you to a deceptive website.

On further analysis, Malwarebytes found that the fake website redirected visitors to a second site that possessed a very similar web address to the real app’s official URL. It then prompted users to download malware that could damage their computers.

The incident suggests that Microsoft could be doing a lot more to protect its users from malicious adverts that are served up through Bing Chat. For the time being, you should be very careful when clicking links provided by Bing Chat. It might be best to stick to a standard search engine and install an ad blocker to prevent malicious adverts from ever reaching you.

Alex Blake
Alex Blake has been working with Digital Trends since 2019, where he spends most of his time writing about Mac computers…
2023 was the year of AI. Here were the 9 moments that defined it
A person's hand holding a smartphone. The smartphone is showing the website for the ChatGPT generative AI.

ChatGPT may have launched in late 2022, but 2023 was undoubtedly the year that generative AI took hold of the public consciousness.

Not only did ChatGPT reach new highs (and lows), but a plethora of seismic changes shook the world, from incredible rival products to shocking scandals and everything in between. As the year draws to a close, we’ve taken a look back at the nine most important events in AI that took place over the last 12 months. It’s been a year like no other for AI -- here’s everything that made it memorable, starting at the beginning of 2023.
ChatGPT’s rivals rush to market

Read more
One year ago, ChatGPT started a revolution
The ChatGPT website on a laptop's screen as the laptop sits on a counter in front of a black background.

Exactly one year ago, OpenAI put a simple little web app online called ChatGPT. It wasn't the first publicly available AI chatbot on the internet, and it also wasn't the first large language model. But over the following few months, it would grow into one of the biggest tech phenomenons in recent memory.

Thanks to how precise and natural its language abilities were, people were quick to shout that the sky was falling and that sentient artificial intelligence had arrived to consume us all. Or, the opposite side, which puts its hope for humanity within the walls of OpenAI. The debate between these polar extremes has continued to rage up until today, punctuated by the drama at OpenAI and the series of conspiracy theories that have been proposed as an explanation.

Read more
Hackers are using this incredibly sneaky trick to hide malware
A hacker typing on an Apple MacBook laptop, which shows code on its screen.

One of the most important things you can do to protect your online security is install one of the best password managers, but a recent cyberattack proves that you have to be careful even when doing that. Thanks to some sneaky malware hidden in Google Ads, you could end up with viruses riddling your PC.

The issue affects popular password manager KeePass -- or rather, it attempts to impersonate KeePass by using misleading Google Ads. First spotted by Malwarebytes, the nefarious link appears at the top of search results, meaning you’ll likely see it before the legitimate websites that follow beneath it.

Read more