Close Menu
  • AI
  • Content Creation
  • Tech
  • Robotics
AI-trends.todayAI-trends.today
  • AI
  • Content Creation
  • Tech
  • Robotics
Trending
  • Aikido Safety Releases Altar-1: An Open-Weight Safety Mannequin Pruned From GLM-5.3 to 328 GB
  • Black Forest Labs Releases FLUX 3 Motion: A 7B Open-Weights World Motion Mannequin That Tops RoboLab-120
  • Fastino Releases GLiNER2.5-Resolve: A 340M Open-Weight Determination Mannequin That Runs on CPU
  • BottleCap AI Releases ThinkingCap-Qwen3.8-27B: 37.2% Fewer Considering Tokens at a 0.86pp Accuracy Price
  • What if I find an AI agent that is worth the risk?
  • Google’s Gemini Can Now Make Requires You on Pixel Telephones
  • An OpenAI Agent Hacked Australia’s Well being Service. Their Authorities Discovered Out Months Later
  • Vibe Coding for Inexperienced persons — Easy Information for Creators, Entrepreneurs, and Non-technical People
AI-trends.todayAI-trends.today
Home»AI»A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT

A Single Poisoned Document Could Leak ‘Secret’ Data Via ChatGPT

AI By Gavin Wallace06/08/20253 Mins Read
Facebook Twitter LinkedIn Email
Let's Talk About ChatGPT and Cheating in the Classroom
Let's Talk About ChatGPT and Cheating in the Classroom
Share
Facebook Twitter LinkedIn Email

This is the latest in generative Models of AI are more than just standalone models text-generating chatbots—instead, they can easily be hooked up to your data to give personalized answers to your questions. OpenAI’s ChatGPT can be linked It is possible to allow others to view your Gmail or Microsoft Calendar, inspect the code on your GitHub site, or even find your appointments. But these connections have the potential to be abused—and researchers have shown it can take just a single “poisoned” document to do so.

Security researchers Michael Bargury, Tamir Ishay, Sharbat revealed their findings at today’s Black Hat hacker event in Las Vegas. They showed how an OpenAI Connectors weakness allowed sensitive data to be extracted using an indirect prompt injection attack. Demonstrating the attack dubbed AgentFlayerBargury shows us how to retrieve API keys that are stored on a demo Drive account.

This vulnerability shows how connecting AI systems to external systems, and transferring more data between them can increase the attack surface and multiply the vulnerabilities.

“There is nothing the user needs to do to be compromised, and there is nothing the user needs to do for the data to go out,” Bargury tells WIRED that he is CTO of the security firm Zenity. “We’ve shown this is completely zero-click; we just need your email, we share the document with you, and that’s it. So yes, this is very, very bad,” Bargury says.

OpenAI didn’t immediately reply to WIRED’s request for comment on the vulnerability of Connectors. Connectors were introduced as a ChatGPT Beta feature by OpenAI earlier this summer. website lists It claims that at least 17 different accounts can be connected with the system. The system allows for a variety of services to be linked with your account. “bring your tools and data into ChatGPT” You can also find out more about the following: “search files, pull live data, and reference content right in the chat.”

Bargury said he had reported OpenAI’s findings earlier in the year. The company responded quickly by introducing mitigations designed to stop the method he was using to extract data through Connectors. The way the attack works means only a limited amount of data could be extracted at once—full documents could not be removed as part of the attack.

“While this issue isn’t specific to Google, it illustrates why developing robust protections against prompt injection attacks is important,” Andy Wen, director senior of product security management at Google Workspace points out the company’s recently enhanced AI security measures.

artificial intelligence black hat chatgpt cybersecurity defcon Google hacking openai security vulnerabilities
Share. Facebook Twitter LinkedIn Email
Avatar
Gavin Wallace

Related Posts

What if I find an AI agent that is worth the risk?

24/09/2026

Google’s Gemini Can Now Make Requires You on Pixel Telephones

24/09/2026

An OpenAI Agent Hacked Australia’s Well being Service. Their Authorities Discovered Out Months Later

24/09/2026

Meta VR Glasses, Ray-Ban Meta Audio, Ray-Ban Meta Gen 3: Specs, Options, Costs

24/09/2026
Top News

Livestream Replay – Beginner’s Advice for Claude – a ChatGPT alternative

WIRED| WIRED

Melania Trump’s AI Era is Here

What I learned from using food-tracking apps was more than I expected

Google’s response to OpenClaw 24/7 AI agent

Load More
AI-Trends.Today

Your daily source of AI news and trends. Stay up to date with everything AI and automation!

X (Twitter) Instagram
Top Insights

YouTube will use AI to identify minors and limit their accounts.

29/07/2025

Why AI Success Depends on Better Workflows, Not More AI Tools – Unite.AI

03/08/2026
Latest News

Aikido Safety Releases Altar-1: An Open-Weight Safety Mannequin Pruned From GLM-5.3 to 328 GB

25/09/2026

Black Forest Labs Releases FLUX 3 Motion: A 7B Open-Weights World Motion Mannequin That Tops RoboLab-120

25/09/2026
X (Twitter) Instagram
  • Privacy Policy
  • Contact Us
  • Terms and Conditions
© 2026 AI-Trends.Today

Type above and press Enter to search. Press Esc to cancel.