New Zero-Click Attack Lets ChatGPT User Steal Data
ID: 040f05fc-4d32-5d7c-9c3b-d1ab512a2790
STIX ID: report--040f05fc-4d32-5d7c-9c3b-d1ab512a2790
Feed Name: Infosecurity Magazine (News)
Radware researcher Zvika Babo disclosed 'ZombieAgent', a prompt-injection technique that abused ChatGPT's Connectors to perform server-side exfiltration of sensitive data from services like Gmail, Outlook, Google Drive and GitHub by instructing the model to open pre-built, character-indexed URLs to leak data one character at a time; OpenAI patched the issue in mid-December and Radware published a detailed report and webinar demonstrating the attack flow, zero/one-click variants, persistence and propagation methods.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
