← Back to feed
AI SecurityEmerging1 sourceSep 20, 2024 · 18:02via Embrace The Red (AI agent security)

Spyware Injection Into Your ChatGPT's Long-Term Memory (SpAIware)

Brief

This post explains an attack chain for the ChatGPT macOS application. Through prompt injection from untrusted data, attackers could insert long-term persistent spyware into ChatGPT’s memory. This led to continuous data exfiltration of any information the user typed or responses received by ChatGPT, including any future chat sessions.

OpenAI released a fix for the macOS app last week. Ensure your app is updated to the latest version.

Read more on Embrace The Red (AI agent security)