Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
MalwareRansomware

WormGPT 4

WormGPT 4 is a malicious large language model (LLM) marketed for cybercrime and described by Palo Alto Networks Unit 42 as an unrestricted or “dark LLM.” It is presented as a successor to the original WormGPT that emerged in 2023 and advertises itself as “your key to an AI without boundaries.” According to the reporting, WormGPT 4 began being advertised around September 27 on Telegram and underground forums including DarknetArmy, with subscription pricing of $50 per month or $220 for lifetime access with source code.

High-confidence reporting states that threat actors use WormGPT 4 to generate convincing phishing lures and ransomware code, lowering the barrier to entry for cybercriminal operations and enabling AI-assisted malware development without normal safety restrictions. Unit 42 tested the tool and found it could generate Windows ransomware in PowerShell that encrypted PDF files, dropped a ransom note with a 72-hour payment deadline, used AES-256 encryption, allowed configurable targeting such as file extension and search path with defaults covering the C:\ drive, and included an option for Tor-based data exfiltration. Researchers assessed that the generated output could potentially be used in real-world attacks, but still required human modification to evade traditional security protections.

The content associates WormGPT 4 with phishing and ransomware use cases rather than a specific intrusion set, and describes it as being actively used in the threat landscape by attackers. Targeting is broad and opportunistic based on the described capabilities, with specific tested support for Windows hosts. No concrete file hashes, domains, or other traditional indicators of compromise are provided in the source content.

Share:
For your environment

Hunt this family in your stack

Mallory pivots from this family to the IOCs, detections, and named campaigns that touch your stack, and pages you when something new lands.

MITRE ATT&CK

Techniques & procedures

8 distinct techniques documented for this family, organized by ATT&CK tactic.

Resource Development

1 technique
T1587Develop CapabilitiesEvidence1

The service also provides malware creation functionality. Palo Alto Networks tested it to create ransomware, including file-encrypting functionality, command and control support, and a ransom note.

Initial Access

2 techniques
T1566PhishingEvidence3

According to the researchers, "WormGPT 4 provides credible linguistic manipulation for BEC and phishing attacks" ... KawaiiGPT ... can generate well-crafted phishing messages.

T1566.001Spearphishing AttachmentEvidence1

Threat actors are adopting artificial intelligence to reduce time spent on attack vectors and improve the quality of attacks... Its application ranges from generating spear-phishing emails to lure images and dynamic payload generation executed in real time.

Execution

1 technique
T1059.001PowerShellEvidence1

The tool generated a PowerShell script that could be configured to hunt for specific file extensions in certain paths and encrypt data using the AES-256 algorithm.

Exfiltration

3 techniques
T1041Exfiltration Over C2 ChannelEvidence1

Sellers tout benefits such as functional ransomware code with AES-256 encryption and Tor-based exfiltration within 30 seconds... WormGPT 4 instantly generated a functional PowerShell script for PDF encryption with AES-256... plus optional Tor-based data exfiltration.

T1048Exfiltration Over Alternative ProtocolEvidence1

According to the researchers, the generated code even added an option to exfiltrate data via Tor, which taps into realistic operational requirements.

T1048.003Exfiltration Over Unencrypted Non-C2 ProtocolEvidence1

The LLM-generated code included a ransom note with a 72-hour deadline to pay, configurable settings for file extension and search path defaulting to the entire C:\ drive, plus an option for data exfiltration via Tor.

Impact

1 technique
T1486Data Encrypted for ImpactEvidence4

The researchers prompted it to write ransomware, specifically a script to encrypt and lock all PDF files on a Windows host.

What this page doesn’t show

The version that knows your environment.

This page is what’s public. Mallory adds the parts that aren’t: which of your assets match these IOCs, which detections are missing, which campaigns to expect next, and what to do in the next 30 minutes.
IOC matching

Match every observed IP, domain, and hash against your live telemetry.

Threat actor attribution

Named campaigns wielding this family, with evidence pinned to each claim.

Exploited vulnerabilities

CVEs this family uses for access and lateral movement.

Detection signatures

YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.

MITRE ATT&CK mapping8

Every documented technique, ranked by evidence weight.

Researcher chatter

Reddit, Mastodon, and CTI community discussion around this family.