- An Nvidia event page has been kidnapped with spam generated by AI
- Npr, Stanford and some sites of the United States government were also taken
- Spam seems to be explicit but not malicious
Several web domains owned by NVIDIA were kidnapped to show explicit content and generated by AI in a spam campaign that also directed the NPR, Stanford and the United States government sites.
The NVIDIA page, Events.NV.NVIDIA[,]Com now has been shot down, but apparently it was an event site. The page took charge and more than 62,000 articles generated by AI were published, which mainly contained incorrect or incomplete information on popular search issues such as video game rounding or restaurant recommendations.
In other places, it also went to a domain that belongs to the Department of Health and Human Services of the United States (HHS) on vaccines, being disfigured similarly.
Wowlazy spam campaign
It is not clear who kidnapped the site or purpose behind him, since Slop AI does not seem to have a consistent theme or angle. The links on the pages directly to a “meaningless SEO spam page”. Wowlazy[.]com
Much of the content seems to have been apparently explicit, but much was also “completely mundane”: the spam campaign was discovered thanks to a technologist who was looking for ‘better Cat de Portland in Duckduckgo and was aimed at events.[,]Com Site and a spam page about Cafes Cafes.
This is not the first time that cybercounts have kidnapped websites to publish their own content, but generally this contains some kind of infotealer malware to make profits from spam campaigns, but from what we can see, that was not the case on this occasion.
SEO seems to be a tool that cybercriminals take advantage to deliver malware (or not) to a broader audience. To mitigate the risk of this type of attack, users must disable Push notifications of the sites in which they do not know/trust, and be very cautious with unknown links.
Techradar Pro communicated with the CDC, NPR, Stanford and Nvidia to comment, but have not yet received an answer.
Through 404Media