CMMC guide
A fake security check appeared inside ChatGPT. What should a defense supplier take from it?
On October 8, 2026, an IT administrator at a managed service provider reported on Reddit's r/msp forum that a user's ChatGPT conversation showed a message signed "OpenAI Security Team". It linked to a fake verification page that told the user to paste a command into Windows Terminal. Endpoint protection stopped it twice. For a supplier that handles Controlled Unclassified Information, the lesson is a rule, a control, and a record.
What was reported?
The report is one team's account of its own incident, posted to Reddit's r/msp forum. A user was turning a PowerPoint into investor material in ChatGPT. A message in the chat said the service was seeing elevated automated traffic and needed a security check. It was signed "OpenAI Security Team" and linked to a page made to look like an OpenAI verification service.
The page copied a command to the clipboard and told the user to press Win + X, open Windows Terminal, paste, and press Enter. The user tried twice. Endpoint protection ended both attempts, and the team's security provider found no sign the payload ran.
What is still unknown?
Why the message appeared inside ChatGPT. The author lists prompt injection, other manipulation of the conversation, or an unsafe response as possibilities and says none has been established. The author does not claim OpenAI was compromised. As of October 10, 2026 OpenAI has not commented. Treat the ChatGPT part as a single unconfirmed report.
Is the trap itself new?
No. It is called ClickFix. Proofpoint wrote about it in November 2024, and Microsoft documented it in August 2025. A fake verification or error message talks the victim into pasting a command into the Windows Run box or a terminal, and the victim installs the malware themselves.
What was different here is where the instruction showed up: inside a tool people already trust.
What rule would have stopped it?
No real website, CAPTCHA or security check will ever ask you to paste a command into Windows. If anything asks you to press Win + R or Win + X and paste, stop and call IT. Put that sentence in your security awareness training, in those words.
What does it mean for a CUI environment?
- Check the endpoint protection. In this report it was the only thing between a click and a possible breach. Confirm every machine that touches CUI has protection that can stop a malicious PowerShell command, and that someone is watching its alerts.
- Write down which AI tools staff may use, and with what data. Put it in your policies and your System Security Plan so the rule and the boundary agree.
- Record a blocked attack as a security event. The Incident Response family expects you to detect, respond to, report and learn from incidents. A stopped attack still gets a dated note: what the user saw, what blocked it, who was told. That note is evidence you actually run the process.
Sources
Questions contractors ask
FAQWas OpenAI hacked?
Nobody has said so. The author of the report states they are not claiming OpenAI was compromised, and the cause is unknown. OpenAI has not commented as of October 10, 2026.
What is ClickFix?
A social engineering trick where a fake verification or error message tells you to paste a command into the Windows Run box or a terminal. Running it installs the attacker's code. Microsoft documented it in August 2025.
What should staff do if a page asks them to paste a command?
Close it, do not paste anything, and call IT. No real website or security check needs a command pasted into Windows.
Does a blocked attack need to be recorded?
We recommend it. A short dated note of what happened and what stopped it shows an assessor your incident process is real. See the 14 requirement families for where incident response sits.
Already know you want to talk?
BOOK A CALLSkip the form. Pick a time and talk to us directly.
What happens in 30 minutes
- We learn about your business and the defense contracts you hold or are bidding on.
- We walk you through a gap assessment, the first step toward CMMC, and what it covers.
- If you qualify, we help you apply to Cyber Grants Alliance for an in-kind grant, which provides the gap assessment itself. No slides.
Defense supplier under 25 people? Start with the grant.
Cyber Grants Alliance, a nonprofit, awards in-kind cybersecurity grants. It provides the work itself, including CMMC Level 1 and Level 2 gap assessments. There is no cost to you, and you are under no obligation to buy anything afterward, from us or from anyone.

