Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons

Social Media

Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons
Search the Site
Popular Searches:
technology Amazon AI
Recent Posts
Linus Torvalds Says AI Bug Reports Have Made Linux Security
May 18, 2026
Malicious npm Packages Steal SSH, Cloud & Crypto Four Keys
May 18, 2026
CISA Warns: Microsoft Exchange Vulnerability Exploited
May 18, 2026
Home/CyberSecurity News/Threat Actor Leaks WormGPT Database: Cybercrime AI
CyberSecurity News

Threat Actor Leaks WormGPT Database: Cybercrime AI

A threat actor operating under the alias Sythe claims responsibility for leaking the complete database of WormGPT, a notorious cybercrime-focused artificial intelligence platform sold on dark web...

Marcus Rodriguez
Marcus Rodriguez
February 10, 2026 2 Min Read
6 0

A threat actor operating under the alias Sythe claims responsibility for leaking the complete database of WormGPT, a notorious cybercrime-focused artificial intelligence platform sold on dark web forums since 2023.

Hackmanac observed that the alleged breach reportedly exposed sensitive information linked to more than 19,000 users, including email addresses, user IDs, and subscription and billing metadata.

WormGPT is a malicious AI tool built on the GPT-J language model developed in 2021, specifically designed to operate without the ethical boundaries and content restrictions found in legitimate AI platforms like ChatGPT.

The platform has been trained on malware-related datasets and offers features including unlimited character support, chat memory retention, and code formatting capabilities.

Unlike mainstream AI tools that implement strict content filters, WormGPT was explicitly created for cybercriminal activities. The platform has been advertised on underground hacking forums since June 2023, offering subscription-based access through the dark web.

Users could select from different AI models tailored for general or specialized malicious uses, with advanced features like context memory for ongoing conversations and coding formatting tools.

Capabilities and Threats

WormGPT has demonstrated alarming capabilities that pose significant cybersecurity risks. The platform excels at generating highly convincing phishing emails that can trick victims into revealing sensitive information or downloading malware.

Security researchers who tested the tool found it produced emails that were “remarkably persuasive” and “strategically cunning,” showcasing its potential for sophisticated business email compromise (BEC) attacks.

Beyond phishing, WormGPT can generate malicious code, including ransomware scripts, spyware, and exploit code for SQL injection, cross-site scripting, and buffer overflow vulnerabilities.

The platform can also create deceptive web forms, obfuscate malicious code, and provide multilingual social engineering support, expanding the reach of cybercriminal operations without requiring advanced technical skills or language proficiency.

The leaked database containing information from over 19,000 users represents a significant development in the cybercrime ecosystem.

The exposure of email addresses, user IDs, and billing metadata could provide law enforcement agencies with valuable intelligence about individuals engaged in cybercriminal activities. However, it also raises concerns about potential retaliatory attacks or further exploitation of the exposed information.

Former black hat hacker Daniel Kelley, who analyzed WormGPT in 2023, warned that the tool enables even novice cybercriminals to launch sophisticated attacks swiftly and at scale without requiring extensive technical expertise.

The platform’s ability to automate and accelerate cybercrime represents a concerning evolution in the threat landscape, demonstrating how generative AI technology can be weaponized for malicious purposes.

As cybersecurity professionals continue to monitor the fallout from this alleged breach, organizations are advised to remain vigilant against AI-powered phishing attempts and social engineering attacks that may have been facilitated by platforms such as WormGPT.

Disclaimer: HackersRadar reports on cybersecurity threats and incidents for informational and awareness purposes only. We do not engage in hacking activities, data exfiltration, or the hosting or distribution of stolen or leaked information. All content is based on publicly available sources.

Tags:

AttackBreachCybersecurityExploitHackerMalwarephishingransomwareSecurityThreat

Share Article

Marcus Rodriguez

Marcus Rodriguez

Marcus is a security researcher and investigative journalist with expertise in vulnerability research, bug bounties, and cloud security. Since 2017, Marcus has been breaking stories on critical vulnerabilities affecting major platforms. His investigative work has led to the disclosure of numerous security flaws and improved defenses across the industry. Marcus is an active participant in bug bounty programs and has been recognized for responsible disclosure practices. He holds multiple security certifications and regularly speaks at industry events.

Previous Post

GuLoader Evades Defenses Using Polymorphic Code & Cloud

Next Post

Microsoft Teams: New Option to Flag Malicious Messages

No Comment! Be the first one.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular Posts
Critical Windows ‘MiniPlasma’ Zero-Day Grants SYSTEM Access
May 18, 2026
Critical WordPress Plugin Flaw Allows Authentication Bypass Attacks
May 18, 2026
Fast16 Malware Sabotaged Nuclear Weapons Simulation Data
May 18, 2026
Top Authors
Marcus Rodriguez
Marcus Rodriguez
Jennifer sherman
Jennifer sherman
Sarah simpson
Sarah simpson
Let's Connect
156k
2.25m
285k

Related Posts

Jennifer sherman
By Jennifer sherman
Threats

GlassWorm Attacks macOS via Malicious VS Code…

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Attacks

ClickFix Attack Hides Malicious Code via Stegan Security

January 1, 2026
Sarah simpson
By Sarah simpson
Vulnerabilities

MongoBleed Detector Tool Detects Critical MongoDB CVE-

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Breaches

Conti Ransomware Gang Leaders & Infrastructure Exposed

January 1, 2026
Hackers News Hackers News
  • [email protected]

Quick Links

  • Contact Us
  • Privacy Policy
  • Terms of service

Categories

Attacks
Breaches
Comparisons
CyberSecurity News
Threats
Vulnerabilities

Let's keep in touch

receive fresh updates and breaking cyber news every day and week!

All Rights Reserved by HackersRadar ©2026

Follow Us