ChatGPT Flaw Let a Planted Prompt Send a Victim's Gmail Data to Another Account
The Hacker News
Read full postCheck Point Research discovered a ChatGPT vulnerability allowing a hidden prompt to make ChatGPT access a user's Gmail data and send it to another account without user consent. The exploit used a covert channel within ChatGPT's multi-tasking to perform unauthorized data reads silently. OpenAI confirmed the issue and disabled the internal service enabling this channel, requiring no user update.




