ChatGPT Isolation Flaw Exposed Connected App Data
Check Point discovered a cross-account vulnerability in ChatGPT that allowed attackers to pass hidden instructions to another user’s session through shared package-service metadata. In a proof of concept, the victim’s session accessed connected Gmail data and relayed it to the attacker while displaying an apparently normal response. The technique could also have reached authorized data in Google Drive, Microsoft Teams, GitHub, and other connectors, depending on the victim’s permissions. OpenAI has fixed the issue and decommissioned the affected service, while enterprises should restrict connector access and independently log all connected-app activity.
Reference: https://www.csoonline.com