Close Menu
Spicy Creator Tips —Spicy Creator Tips —

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Nike Debuts Nature-inspired Collaboration with Susan Fang

    August 29, 2025

    Top Signs Your Restaurant’s Extractor Fan Needs Cleaning

    August 29, 2025

    I thought ‘audiophile’ headphones were only for chin-scratching posers… until I got a pair

    August 29, 2025
    Facebook X (Twitter) Instagram
    Spicy Creator Tips —Spicy Creator Tips —
    Trending
    • Nike Debuts Nature-inspired Collaboration with Susan Fang
    • Top Signs Your Restaurant’s Extractor Fan Needs Cleaning
    • I thought ‘audiophile’ headphones were only for chin-scratching posers… until I got a pair
    • Could Volvo’s New SUV Spark an EV Range Revolution?
    • Behind the Scenes with the Directors and Editors of ‘The Last Guest Of The Holloway Motel’
    • Why Most Entrepreneurs Are Approaching YouTube the Wrong Way
    • Nvidia Earnings Sustain the AI Stock Rally—Just Without Nvidia
    • BBC World Service – Global News Podcast, America marks the 20th anniversary of Hurricane Katrina
    Facebook X (Twitter) Instagram
    • Home
    • Ideas
    • Editing
    • Equipment
    • Growth
    • Retention
    • Stories
    • Strategy
    • Engagement
    • Modeling
    • Captions
    Spicy Creator Tips —Spicy Creator Tips —
    Home»Equipment»A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT
    Equipment

    A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT

    spicycreatortips_18q76aBy spicycreatortips_18q76aAugust 6, 2025No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
    A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The newest generative AI fashions will not be simply stand-alone text-generating chatbots—as a substitute, they will simply be hooked as much as your information to present personalised solutions to your questions. OpenAI’s ChatGPT will be linked to your Gmail inbox, allowed to examine your GitHub code, or discover appointments in your Microsoft calendar. However these connections have the potential to be abused—and researchers have proven it may take only a single “poisoned” doc to take action.

    New findings from safety researchers Michael Bargury and Tamir Ishay Sharbat, revealed on the Black Hat hacker convention in Las Vegas at this time, present how a weak spot in OpenAI’s Connectors allowed delicate info to be extracted from a Google Drive account utilizing an oblique immediate injection assault. In an indication of the assault, dubbed AgentFlayer, Bargury exhibits the way it was attainable to extract developer secrets and techniques, within the type of API keys, that have been saved in an indication Drive account.

    The vulnerability highlights how connecting AI fashions to exterior programs and sharing extra information throughout them will increase the potential assault floor for malicious hackers and doubtlessly multiplies the methods the place vulnerabilities could also be launched.

    “There may be nothing the person must do to be compromised, and there’s nothing the person must do for the information to exit,” Bargury, the CTO at safety agency Zenity, tells WIRED. “We’ve proven that is fully zero-click; we simply want your e-mail, we share the doc with you, and that’s it. So sure, that is very, very unhealthy,” Bargury says.

    OpenAI didn’t instantly reply to WIRED’s request for remark concerning the vulnerability in Connectors. The corporate launched Connectors for ChatGPT as a beta characteristic earlier this yr, and its web site lists no less than 17 totally different companies that may be linked up with its accounts. It says the system means that you can “deliver your instruments and information into ChatGPT” and “search information, pull reside information, and reference content material proper within the chat.”

    Bargury says he reported the findings to OpenAI earlier this yr and that the corporate rapidly launched mitigations to forestall the approach he used to extract information by way of Connectors. The best way the assault works means solely a restricted quantity of knowledge might be extracted directly—full paperwork couldn’t be eliminated as a part of the assault.

    “Whereas this subject isn’t particular to Google, it illustrates why creating sturdy protections in opposition to immediate injection assaults is essential,” says Andy Wen, senior director of safety product administration at Google Workspace, pointing to the corporate’s just lately enhanced AI safety measures.

    ChatGPT data Document Leak Poisoned Secret Single
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    spicycreatortips_18q76a
    • Website

    Related Posts

    Could Volvo’s New SUV Spark an EV Range Revolution?

    August 29, 2025

    Research Shows How To Optimize For Google AIO And ChatGPT

    August 29, 2025

    T-Mobile Unwraps ‘SuperMobile,’ a Network-Sliced Business Plan

    August 29, 2025

    The Pitt season 2: everything we know so far about the hit HBO Max show’s return

    August 29, 2025

    I Tested Both the Budget and Luxury Version of Helix’s Best Mattress for Side Sleepers — Here’s How They Compare and the One I’d Buy in Labor Day Sales

    August 28, 2025

    Microsoft introduces a pair of in-house AI models

    August 28, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Don't Miss
    Modeling

    Nike Debuts Nature-inspired Collaboration with Susan Fang

    August 29, 2025

    Nike is doubling down on the Chinese language market by teaming up with designers with…

    Top Signs Your Restaurant’s Extractor Fan Needs Cleaning

    August 29, 2025

    I thought ‘audiophile’ headphones were only for chin-scratching posers… until I got a pair

    August 29, 2025

    Could Volvo’s New SUV Spark an EV Range Revolution?

    August 29, 2025
    Our Picks

    Four ways to be more selfish at work

    June 18, 2025

    How to Create a Seamless Instagram Carousel Post

    June 18, 2025

    Up First from NPR : NPR

    June 18, 2025

    Meta Plans to Release New Oakley, Prada AI Smart Glasses

    June 18, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    About Us

    Welcome to SpicyCreatorTips.com — your go-to hub for leveling up your content game!

    At Spicy Creator Tips, we believe that every creator has the potential to grow, engage, and thrive with the right strategies and tools.
    We're accepting new partnerships right now.

    Our Picks

    Nike Debuts Nature-inspired Collaboration with Susan Fang

    August 29, 2025

    Top Signs Your Restaurant’s Extractor Fan Needs Cleaning

    August 29, 2025
    Recent Posts
    • Nike Debuts Nature-inspired Collaboration with Susan Fang
    • Top Signs Your Restaurant’s Extractor Fan Needs Cleaning
    • I thought ‘audiophile’ headphones were only for chin-scratching posers… until I got a pair
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Disclaimer
    • Get In Touch
    • Privacy Policy
    • Terms and Conditions
    © 2025 spicycreatortips. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.