← Back to feed
Breaches & RansomwareEmerging1 sourceSep 28, 2023 · 16:01via Embrace The Red (AI agent security)

Advanced Data Exfiltration Techniques with ChatGPT

Brief

During an Indirect Prompt Injection Attack an adversary can exfiltrate chat data from a user by instructing ChatGPT to render images and append information to the URL (Image Markdown Injection) , or by tricking a user to click a hyperlink.

Sending large amounts of data to a third party server via URLs might seem inconvenient or limiting…

Let’s say we want something more, aehm, powerful, elegant and exciting.

ChatGPT Plugins and Exfiltration Limitations

Plugins are an extension mechanism with little security oversight or enforced review process.

Read more on Embrace The Red (AI agent security)