Fake AI App & Browser Extension Scams
Counterfeit "ChatGPT", "AI assistant", and "AI photo and video generator" apps and browser extensions impersonate real AI brands. They trap you in fleeceware subscriptions, steal logins and card details, hijack your browser, or quietly record everything you type.
Last reviewed: 27 July 2026
What this scam is
A fake AI app or extension is software that borrows the name, logo, and look of a well-known AI product — ChatGPT, an "AI assistant", an "AI photo and video generator", a writing or image tool — without any connection to the company that makes the real thing. It appears where people now shop for software: mobile app stores, browser-extension stores, search ads, and social feeds. Some are thin wrappers that pass your prompts to a real model while charging for access that is free or cheap at source; others do no useful work at all. The category spans four distinct harms that often overlap in a single product: fleeceware, which traps you in an expensive auto-renewing subscription; credential and payment theft, which harvests the logins, card details, or session cookies you enter; adware and search hijacking, which injects ads and redirects your browsing; and data exfiltration, which quietly records everything you type. The unifying trick is trust — the AI boom is new enough that most people cannot yet tell an official app from a convincing imitation.
How it works
Distribution comes first. A developer clones a trusted AI brand's name and icon, pads the listing with keyword-stuffed titles ("ChatGPT AI Chat Assistant Pro") and fake five-star reviews, and buys search ads so the counterfeit ranks above or beside the genuine product. On mobile, the fleeceware model dominates: the app offers a short "free trial" that silently converts into a costly weekly or monthly subscription, with the price set to slip under casual notice and cancellation buried. Browser extensions take a different route. At install they request sweeping permissions — most tellingly, the right to "read and change all your data on the websites you visit" — which, once granted, lets the extension read the pages you open, capture what you type, inject advertising, rewrite search results, or lift the session cookies that keep you logged in to email and banking. Many behave normally for weeks so reviews stay positive, then push a malicious update later. Others simply relay your prompts to a real model while phishing for a card number on a fake "upgrade" screen. The listing looks official throughout; the damage happens after install.
Why this scam works
The scam rides a genuine gold rush. AI tools arrived fast, their names became household words almost overnight, and there is no settled public sense of which apps are official — so a polished clone with a familiar logo reads as real. Store listings themselves feel like verification, though a place in an app or extension store certifies almost nothing about honesty. Fleeceware exploits how trials work: people tap "start free trial" intending to cancel and forget, and the subscription is engineered to survive that forgetting. Extension permissions are accepted reflexively, because we have been trained to click through install prompts, and "read and change all your data" is indistinguishable at a glance from what many legitimate extensions ask. Above all, the promised feature often works just well enough to allay suspicion while the real payload runs quietly underneath.
Common red flags
- An app or extension using a famous AI brand's name and logo but published by an unfamiliar developer
- A 'free trial' that requires payment details and converts to an expensive weekly or monthly charge
- An extension requesting permission to 'read and change all your data on all the websites you visit' for a simple task
- Keyword-stuffed titles and a wall of generic five-star reviews with vague, repetitive praise
- The tool arriving via a search ad or social post rather than the vendor's official site
- A working feature paired with an unexpected 'upgrade' or 'verify your account' screen asking for logins or card details
- New ads, redirected searches, or changed browser homepage appearing after install
Sanitized example messages
Illustrative, sanitized examples. Personal details are replaced with placeholders such as [phone number] and [fake link].
ChatGPT AI Assistant Pro - GPT Chat & AI Photo Generator. #1 AI app! 3-day free trial, then $9.99/week auto-renews.
This extension can read and change all your data on all websites. Add 'AI Writer Assistant'?
Your free trial ends soon. To keep unlimited AI access, confirm your payment details to continue.
Session expired. Please sign in with your Google account to sync your AI chats across devices.
How to verify before you act
Start from the vendor, not the store. Find the AI company's official website yourself, and follow its link to the app or extension — that single habit defeats most counterfeits, because impersonators cannot control where the real vendor points. In a store, check the developer or publisher name against the company's real one rather than trusting the app's title, and read the one- and two-star reviews, where fleeceware billing and hijacking complaints surface. Before installing an extension, read the permissions: an AI writing helper has no need to "read and change all your data on all sites", and over-broad access on a simple tool is the decisive red flag. On mobile, open the subscription terms before any "free trial" and note the renewal price and cancellation path. Prefer official first-party apps and established, well-reviewed tools over whatever ranks first in a search ad.
Payment methods used
- App store subscriptions
- Credit card
- Debit card
- In-app purchases
Who is usually targeted
- New AI tool users
- People searching for a specific AI brand
- Students and content creators
- Less technical users
What to do immediately
- Uninstall the app or remove the extension immediately, and restart your browser
- Cancel the subscription through your app store or card issuer — deleting the app does not stop the billing
- Change passwords for any account whose login you entered, starting with email and banking, and sign out of all sessions to invalidate stolen cookies
- Enable two-factor authentication on important accounts if it isn't already on
- Dispute unauthorised or misrepresented charges with your card provider or app store
- Run a reputable security scan and check your browser's settings for changed search engines or homepage
How to prevent it
- Install AI tools only by following a link from the vendor's own official website, not from a search ad or store search
- Check the listed developer or publisher name matches the real company, not just the app's title and icon
- Read an extension's requested permissions before installing, and reject over-broad access like 'read and change all your data on all sites' for a simple tool
- Read the subscription terms — renewal price and cancellation steps — before starting any 'free trial'
- Read the critical (one- and two-star) reviews, where fleeceware and hijacking complaints appear
- Audit your installed extensions and app subscriptions periodically, and remove anything you don't actively use
Evidence to preserve
- The store listing, developer name, and screenshots of the app or extension page with dates
- Subscription and billing records, including the trial terms and every charge
- Screenshots of the permissions requested and any 'upgrade' or sign-in screens
- The URL or ad you installed it from, and any accounts whose credentials were entered
Where to report it
- Action Fraud (UK) — UK national fraud & cybercrime reporting centre
- FTC ReportFraud (US) — US Federal Trade Commission fraud reports
- FBI IC3 (US) — US Internet Crime Complaint Center
- Scamwatch (Australia) — Australian competition & consumer reporting
- Your bank's fraud line — Use the number on the back of your card or in your banking app — never a number the caller gives you
Always verify reporting routes and emergency contacts on the official government or agency website for your country.
Frequently asked questions
Isn't an app safe if it's in the official app store or extension store?
Store presence certifies far less than people assume. Review processes catch some malware, but counterfeit branding, fleeceware billing, and over-broad permissions routinely slip through, and a bad actor can behave well until an update turns malicious. A store listing tells you the app was published, not that it is honest or made by the brand it imitates. Treat the store as a starting point, then verify the developer name and permissions and, ideally, reach the app through the real vendor's website.
What is fleeceware, and how is it different from a normal subscription?
Fleeceware isn't malware — it's a billing trap. The app works, but it charges far more than its function is worth, usually through a short free trial that auto-renews into a steep weekly or monthly fee, with the price understated and cancellation made awkward. It relies on you forgetting the trial. The tell is the mismatch between a trivial feature and an expensive recurring charge. Read the renewal terms before starting any trial, and cancel through the store, not by deleting the app.
Why does a browser extension need permission to 'read and change all your data on all sites'?
Some genuine extensions do need broad access to work, which is exactly why the request is dangerous — it looks routine. Granted to a malicious extension, that permission lets it read every page you visit, capture what you type including passwords, inject ads, rewrite search results, and steal the session cookies that keep you logged in. Ask whether the tool's actual job requires seeing every site. If a simple AI helper wants all-sites access, that is reason enough to decline it.