Close Menu
Spicy Creator Tips —Spicy Creator Tips —

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Why the ghost tour industry faces a scary future

    October 28, 2025

    The Chilling Montage That Turned ‘The Godfather’ Into a Masterpiece

    October 28, 2025

    Former Luxottica Vice President Ed Jankowski Dead at 72

    October 28, 2025
    Facebook X (Twitter) Instagram
    Spicy Creator Tips —Spicy Creator Tips —
    Trending
    • Why the ghost tour industry faces a scary future
    • The Chilling Montage That Turned ‘The Godfather’ Into a Masterpiece
    • Former Luxottica Vice President Ed Jankowski Dead at 72
    • How New Inflation Data Could Impact 2025 Mortgage Rates—What Homebuyers Need to Know
    • 5 interesting stats to start the week
    • Harin Harini Promoted to Head of 3D and VFX Supervisor at Freefolk
    • How to Ask for Executive Support—Without Undermining Yourself
    • Australia politics live: senator claims TikTok staff member bullied his office about under-16s ban; Victoria announces major housing overhaul | Australia news
    Facebook X (Twitter) Instagram
    • Home
    • Ideas
    • Editing
    • Equipment
    • Growth
    • Retention
    • Stories
    • Strategy
    • Engagement
    • Modeling
    • Captions
    Spicy Creator Tips —Spicy Creator Tips —
    Home»Equipment»A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT
    Equipment

    A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT

    spicycreatortips_18q76aBy spicycreatortips_18q76aAugust 6, 2025No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
    A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The newest generative AI fashions will not be simply stand-alone text-generating chatbots—as a substitute, they will simply be hooked as much as your information to present personalised solutions to your questions. OpenAI’s ChatGPT will be linked to your Gmail inbox, allowed to examine your GitHub code, or discover appointments in your Microsoft calendar. However these connections have the potential to be abused—and researchers have proven it may take only a single “poisoned” doc to take action.

    New findings from safety researchers Michael Bargury and Tamir Ishay Sharbat, revealed on the Black Hat hacker convention in Las Vegas at this time, present how a weak spot in OpenAI’s Connectors allowed delicate info to be extracted from a Google Drive account utilizing an oblique immediate injection assault. In an indication of the assault, dubbed AgentFlayer, Bargury exhibits the way it was attainable to extract developer secrets and techniques, within the type of API keys, that have been saved in an indication Drive account.

    The vulnerability highlights how connecting AI fashions to exterior programs and sharing extra information throughout them will increase the potential assault floor for malicious hackers and doubtlessly multiplies the methods the place vulnerabilities could also be launched.

    “There may be nothing the person must do to be compromised, and there’s nothing the person must do for the information to exit,” Bargury, the CTO at safety agency Zenity, tells WIRED. “We’ve proven that is fully zero-click; we simply want your e-mail, we share the doc with you, and that’s it. So sure, that is very, very unhealthy,” Bargury says.

    OpenAI didn’t instantly reply to WIRED’s request for remark concerning the vulnerability in Connectors. The corporate launched Connectors for ChatGPT as a beta characteristic earlier this yr, and its web site lists no less than 17 totally different companies that may be linked up with its accounts. It says the system means that you can “deliver your instruments and information into ChatGPT” and “search information, pull reside information, and reference content material proper within the chat.”

    Bargury says he reported the findings to OpenAI earlier this yr and that the corporate rapidly launched mitigations to forestall the approach he used to extract information by way of Connectors. The best way the assault works means solely a restricted quantity of knowledge might be extracted directly—full paperwork couldn’t be eliminated as a part of the assault.

    “Whereas this subject isn’t particular to Google, it illustrates why creating sturdy protections in opposition to immediate injection assaults is essential,” says Andy Wen, senior director of safety product administration at Google Workspace, pointing to the corporate’s just lately enhanced AI safety measures.

    ChatGPT data Document Leak Poisoned Secret Single
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    spicycreatortips_18q76a
    • Website

    Related Posts

    How New Inflation Data Could Impact 2025 Mortgage Rates—What Homebuyers Need to Know

    October 28, 2025

    What Is a Good Facebook Engagement Rate? Data From 52 Million+ Posts

    October 27, 2025

    Stock Futures Rise Ahead of Inflation Data

    October 24, 2025

    E-commerce sites see low sales from ChatGPT traffic, new study finds

    October 23, 2025

    Reddit Launches Legal Action to Block AI Companies from Scraping its Data

    October 23, 2025

    How to Detect Sensitive Data at Scale Within your Salesforce Org

    October 22, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Don't Miss
    Growth

    Why the ghost tour industry faces a scary future

    October 28, 2025

    When David Dominé moved to Louisville, Kentucky, for legislation faculty within the Nineties, he was…

    The Chilling Montage That Turned ‘The Godfather’ Into a Masterpiece

    October 28, 2025

    Former Luxottica Vice President Ed Jankowski Dead at 72

    October 28, 2025

    How New Inflation Data Could Impact 2025 Mortgage Rates—What Homebuyers Need to Know

    October 28, 2025
    Our Picks

    Four ways to be more selfish at work

    June 18, 2025

    How to Create a Seamless Instagram Carousel Post

    June 18, 2025

    Up First from NPR : NPR

    June 18, 2025

    Meta Plans to Release New Oakley, Prada AI Smart Glasses

    June 18, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    About Us

    Welcome to SpicyCreatorTips.com — your go-to hub for leveling up your content game!

    At Spicy Creator Tips, we believe that every creator has the potential to grow, engage, and thrive with the right strategies and tools.
    We're accepting new partnerships right now.

    Our Picks

    Why the ghost tour industry faces a scary future

    October 28, 2025

    The Chilling Montage That Turned ‘The Godfather’ Into a Masterpiece

    October 28, 2025
    Recent Posts
    • Why the ghost tour industry faces a scary future
    • The Chilling Montage That Turned ‘The Godfather’ Into a Masterpiece
    • Former Luxottica Vice President Ed Jankowski Dead at 72
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Disclaimer
    • Get In Touch
    • Privacy Policy
    • Terms and Conditions
    © 2025 spicycreatortips. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.