OpenAI putting bandaids on bandaids as prompt injection problems keep festering
ID: 023912e3-d53a-5388-97b5-c7437ae8b227
STIX ID: report--023912e3-d53a-5388-97b5-c7437ae8b227
Feed Name: The Register (Security)
Threat Score
Radware disclosed critical flaws in ChatGPT — originally tracked as ShadowLeak and later bypassed by a successor dubbed ZombieAgent — that allow attackers to exfiltrate sensitive data from connected services by abusing prompt-injection, crafted URLs (character-by-character exfiltration), and the assistant's memory feature to persist and leak information; OpenAI patched related issues but Radware demonstrated methods that circumvented those mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
