🔆 A ChatGPT flaw let attackers read your Gmail through your own account
Check Point found that ChatGPT sessions belonging to different users could secretly talk to each other through an internal service.
The attacker drops a hidden instruction into a shared conversation, a custom GPT, or a prompt the victim pastes in. From then on, the victim's own session quietly runs the attacker's task in the background - pulling from Gmail, Drive, Teams, GitHub, whatever they'd connected 📂
The victim sees a completely normal answer on screen. The stolen data never appears in the chat. It gets written back through the hidden channel for the attacker to pick up.
OpenAI shut down the internal service behind it, so this specific path is closed.
🤑 @Dices the #1 Non-KYC Telegram Casino
😀 Join @CLASSIFIED
Post #623
740

- ❤ 4