Third-Party ChatGPT Plugins Could Lead to Account Takeovers
ID: 0539b320-1954-5a3b-942a-119b24175a96
STIX ID: report--0539b320-1954-5a3b-942a-119b24175a96
Feed Name: The Hacker News
Researchers disclosed several critical flaws in the ChatGPT plugin ecosystem and AI assistants that could allow silent installation of malicious plugins, hijack third-party accounts (including GitHub) via OAuth and PluginLab endpoint weaknesses, and exfiltrate confidential assistant responses using a token-length side-channel; mitigations recommended include stricter OAuth validation, request authentication, padding/batching streaming tokens, and limiting plugin capabilities, while OpenAI has already restricted plugin creation and installation—no confirmed exploitation is reported.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
