Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • Lizard bony plates evolved multiple times, study shows
    • Amsterdam’s Klearly raises €12 million to satiate its appetite for building Europe’s best restaurant payments system
    • Dozens of ICE Vehicles in Minnesota Lack ‘Necessary’ Lights and Sirens
    • Kalshi granted temporary restraining order against Tennessee Sports Wagering Council after cease and desist
    • Samsung’s Smart Fridge May Be a Little Too Nosy for My Liking
    • Tech Life – What to expect from tech in 2026
    • Samsung Achieves Another Industry-First Virtualized RAN Milestone, Accelerating AI-Native, 6G-Ready Networks
    • Smart Assistants, Smarter Carts and the Future of Retail
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Tuesday, January 13
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»News»New attack on ChatGPT research agent pilfers secrets from Gmail inboxes
    News

    New attack on ChatGPT research agent pilfers secrets from Gmail inboxes

    Editor Times FeaturedBy Editor Times FeaturedSeptember 21, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link

    ShadowLeak begins the place most assaults on LLMs do—with an oblique immediate injection. These prompts are tucked inside content material similar to paperwork and emails despatched by untrusted folks. They include directions to carry out actions the person by no means requested for, and like a Jedi thoughts trick, they’re tremendously efficient in persuading the LLM to do issues which are dangerous. Immediate injections exploit an LLM’s inherent must please its person. Following directions has been so ingrained into the bots’ habits that they’ll carry them out regardless of who asks, even a risk actor in a malicious electronic mail.

    Thus far, immediate injections have proved inconceivable to stop. That has left OpenAI and the remainder of the LLM market reliant on mitigations which are typically launched on a case-by-case foundation and solely in response to the invention of a working exploit.

    Accordingly, OpenAI mitigated the prompt-injection method ShadowLeak fell to—however solely after Radware privately alerted the LLM maker to it.

    A proof-of-concept assault that Radware revealed embedded a immediate injection into an electronic mail despatched to a Gmail account that Deep Analysis had been given entry to. The injection included directions to scan acquired emails associated to an organization’s human assets division for the names and addresses of workers. Deep Analysis dutifully adopted these directions.

    By now, ChatGPT and most different LLMs have mitigated such assaults, not by squashing immediate injections, however somewhat by blocking the channels the immediate injections use to exfiltrate confidential info. Particularly, these mitigations work by requiring specific person consent earlier than an AI assistant can click on hyperlinks or use markdown links—that are the conventional methods to smuggle info off of a person surroundings and into the palms of the attacker.

    At first, Deep Analysis additionally refused. However when the researchers invoked browser.open—a software Deep Analysis gives for autonomous Net browsing—they cleared the hurdle. Particularly, the injection directed the agent to open the hyperlink https://compliance.hr-service.internet/public-employee-lookup/ and append parameters to it. The injection outlined the parameters as an worker’s title and deal with. When Deep Analysis complied, it opened the hyperlink and, within the course of, exfiltrated the data to the occasion log of the web site.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    Kalshi granted temporary restraining order against Tennessee Sports Wagering Council after cease and desist

    January 13, 2026

    AGA and Indian Gaming Association urge Congress to curb crypto prediction markets threatening betting

    January 13, 2026

    WPT Global draws criticism for choosing Tony ‘Ren’ Lin as an ambassador

    January 13, 2026

    Mississippi bill goes on step further than most to completely ban sweepstakes

    January 13, 2026

    Florida Gambling Commission seizes over $157,000 and 231 illegal machines in raid

    January 13, 2026

    Bragg Gaming extends Entain partnership for BetCity.nl for another five months

    January 13, 2026

    Comments are closed.

    Editors Picks

    Lizard bony plates evolved multiple times, study shows

    January 13, 2026

    Amsterdam’s Klearly raises €12 million to satiate its appetite for building Europe’s best restaurant payments system

    January 13, 2026

    Dozens of ICE Vehicles in Minnesota Lack ‘Necessary’ Lights and Sirens

    January 13, 2026

    Kalshi granted temporary restraining order against Tennessee Sports Wagering Council after cease and desist

    January 13, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    compact 4K action camera with AI chip

    August 23, 2025

    Red Hat’s take on open-source AI: Pragmatism over utopian dreams

    February 4, 2025

    Cypriot videogame startup Studio 42 levels up with €3.2 million to fund their debut title

    May 19, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.