logo

Third-Party ChatGPT Plugins Could Lead to Account Takeovers

ID: 0539b320-1954-5a3b-942a-119b24175a96

STIX ID: report--0539b320-1954-5a3b-942a-119b24175a96

Feed Name: The Hacker News

Threat Score
65/100

Date Published: 2024-03-15

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

Researchers disclosed several critical flaws in the ChatGPT plugin ecosystem and AI assistants that could allow silent installation of malicious plugins, hijack third-party accounts (including GitHub) via OAuth and PluginLab endpoint weaknesses, and exfiltrate confidential assistant responses using a token-length side-channel; mitigations recommended include stricter OAuth validation, request authentication, padding/batching streaming tokens, and limiting plugin capabilities, while OpenAI has already restricted plugin creation and installation—no confirmed exploitation is reported.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.