Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • Your RAG Gets Confidently Wrong as Memory Grows – I Built the Memory Layer That Stops It
    • Ancient parrot feathers reveal vast Andes trade routes
    • After building global startup, two founders who met at uni are backing a new generation of Kiwi students
    • This Scammer Used an AI-Generated MAGA Girl to Grift ‘Super Dumb’ Men
    • Arizona court battle against Kalshi slows amid legal scope disputes
    • Today’s NYT Connections Hints, Answers for April 21 #1045
    • High-Endurance ASW and Strike USV
    • The competition watchdog just got a seat at the table in the legal battle between Epic Games and Apple
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Tuesday, April 21
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»News»New attack on ChatGPT research agent pilfers secrets from Gmail inboxes
    News

    New attack on ChatGPT research agent pilfers secrets from Gmail inboxes

    Editor Times FeaturedBy Editor Times FeaturedSeptember 21, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link

    ShadowLeak begins the place most assaults on LLMs do—with an oblique immediate injection. These prompts are tucked inside content material similar to paperwork and emails despatched by untrusted folks. They include directions to carry out actions the person by no means requested for, and like a Jedi thoughts trick, they’re tremendously efficient in persuading the LLM to do issues which are dangerous. Immediate injections exploit an LLM’s inherent must please its person. Following directions has been so ingrained into the bots’ habits that they’ll carry them out regardless of who asks, even a risk actor in a malicious electronic mail.

    Thus far, immediate injections have proved inconceivable to stop. That has left OpenAI and the remainder of the LLM market reliant on mitigations which are typically launched on a case-by-case foundation and solely in response to the invention of a working exploit.

    Accordingly, OpenAI mitigated the prompt-injection method ShadowLeak fell to—however solely after Radware privately alerted the LLM maker to it.

    A proof-of-concept assault that Radware revealed embedded a immediate injection into an electronic mail despatched to a Gmail account that Deep Analysis had been given entry to. The injection included directions to scan acquired emails associated to an organization’s human assets division for the names and addresses of workers. Deep Analysis dutifully adopted these directions.

    By now, ChatGPT and most different LLMs have mitigated such assaults, not by squashing immediate injections, however somewhat by blocking the channels the immediate injections use to exfiltrate confidential info. Particularly, these mitigations work by requiring specific person consent earlier than an AI assistant can click on hyperlinks or use markdown links—that are the conventional methods to smuggle info off of a person surroundings and into the palms of the attacker.

    At first, Deep Analysis additionally refused. However when the researchers invoked browser.open—a software Deep Analysis gives for autonomous Net browsing—they cleared the hurdle. Particularly, the injection directed the agent to open the hyperlink https://compliance.hr-service.internet/public-employee-lookup/ and append parameters to it. The injection outlined the parameters as an worker’s title and deal with. When Deep Analysis complied, it opened the hyperlink and, within the course of, exfiltrated the data to the occasion log of the web site.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    Arizona court battle against Kalshi slows amid legal scope disputes

    April 21, 2026

    DraftKings Alberta entry signals Canada gambling market legal shift ahead

    April 21, 2026

    Lumbee Council advances gaming amendment in North Carolina, sending measure to tribal voters soon

    April 20, 2026

    UK High Court ends National Lottery license fight with Allwyn victory

    April 20, 2026

    Michigan approves bet365 launch as Odawa partner, replacing PokerStars

    April 20, 2026

    Salesforce CEO Marc Benioff dismisses the idea of vibe coded CRM replacing SaaS companies, saying data security and compliance make Salesforce indispensable (Sebastian Herrera/Wall Street Journal)

    April 20, 2026

    Comments are closed.

    Editors Picks

    Your RAG Gets Confidently Wrong as Memory Grows – I Built the Memory Layer That Stops It

    April 21, 2026

    Ancient parrot feathers reveal vast Andes trade routes

    April 21, 2026

    After building global startup, two founders who met at uni are backing a new generation of Kiwi students

    April 21, 2026

    This Scammer Used an AI-Generated MAGA Girl to Grift ‘Super Dumb’ Men

    April 21, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    Government Workers Say Their Out-of-Office Replies Were Forcibly Changed to Blame Democrats for Shutdown

    October 2, 2025

    KKR is in talks to buy ST Telemedia Global Data Centres in a deal that could value the Asian digital infrastructure provider at more than $5B (Bloomberg)

    July 26, 2025

    After the 2026 Winter Olympics, Figure Skating Will Never Be the Same

    February 21, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.