← Back to feed
AI SecurityEmerging1 sourceFeb 17, 2025 · 15:30via Embrace The Red (AI agent security)

ChatGPT Operator: Prompt Injection Exploits & Defenses

Brief

ChatGPT Operator is a research preview agent from OpenAI that lets ChatGPT use a web browser. It uses vision and reasoning abilities to complete tasks like researching topics, booking travel, ordering groceries, or as this post will show, steal your data!

Currently, it’s only available for ChatGPT Pro users. I decided to invest $200 for one month to try it out.

Risks and Threats

OpenAI highlights three risk categories in their Operator System Card :

Read more on Embrace The Red (AI agent security)