By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Security Researchers Just Hacked ChatGPT Using A Single ‘Poisoned’ Document – BGR
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Security Researchers Just Hacked ChatGPT Using A Single ‘Poisoned’ Document – BGR
News

Security Researchers Just Hacked ChatGPT Using A Single ‘Poisoned’ Document – BGR

News Room
Last updated: 2025/08/07 at 5:40 PM
News Room Published 7 August 2025
Share
Security Researchers Just Hacked ChatGPT Using A Single ‘Poisoned’ Document – BGR
SHARE






Bangla press/Shutterstock

New findings from a group of researchers at the Black Hat hacker conference in Las Vegas has revealed that it only takes one “poisoned” document to gain access to private data using ChatGPT that has been connected to outside services. One of the ways that OpenAI has made ChatGPT even more useful for its userbase is by allowing you to connect it to various outside services, like Google Drive, GitHub, and more. But connecting ChatGPT to these private data storage solutions could actually put your data at risk of being exposed, the new research shows.

The attack, which has been dubbed AgentFlayer, was designed by researchers Michael Bargury and Tamir Ishay Sharbat. When utilized, it shows that indirect prompt injection is possible through a single document that has been inlaid with the right instructions. When used, this kind of attack could give bad actors access to developer secrets like API keys and more.

For instance, in this case, the researchers included an invisible prompt injection payload in a document before it was uploaded to ChatGPT. When an image in the document is rendered by ChatGPT, a request is automatically sent to the attacker’s server using the invisible prompt. Just like that, the data has been stolen, and the victim is none the wiser.

Hacking the AI indirectly


These indirect prompt attacks are part of a new style of hack that has been popping up on the AI security scene more and more in recent months. In fact, other research released this week also shows that hackers were able to control a smart home by hacking Gemini using an infected calendar invite. These indirect prompt attacks are just one way that AI has proven susceptible to the whims of bad actors.

And the concerns surrounding these types of attacks are only growing, especially as people like the Godfather of AI say that tech companies are downplaying the risks of AI. One of the reasons this type of attack is so dangerous is that the user doesn’t need to do anything beyond connecting ChatGPT to their Google Drive or GitHub account. From there, if a “poisoned” document with indirect prompt instructions embedded in it is added to their files, it could give bad actors access to the data stored in their account.

You can see a concept video of the attack in action to get an idea of just how simple it is and how quickly it works. Of course, connecting AI to your external accounts can be extremely helpful, and that’s one way that developers make use of various AI systems, as it allows them to connect AI to their existing databases without needing to move their code over to any additional tools. But, as the researchers notes, giving AI more power can open you up to even more risk.



Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article The Coolest GPT-5 Feature? It finally fullfills the vibe coding promise. The Coolest GPT-5 Feature? It finally fullfills the vibe coding promise.
Next Article Our Sleep Expert Will Help You Find the Best Colored Noise for Slumber Our Sleep Expert Will Help You Find the Best Colored Noise for Slumber
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

MacBook Pro M5 vs. M4: The Ultimate Apple Silicon Showdown
MacBook Pro M5 vs. M4: The Ultimate Apple Silicon Showdown
News
Rising AI tide lifts all cloud boats, but investors get more choosy –  News
Rising AI tide lifts all cloud boats, but investors get more choosy – News
News
Do Black Holes Create Dark Energy? Here’s What Scientists Have To Say – BGR
Do Black Holes Create Dark Energy? Here’s What Scientists Have To Say – BGR
News
The TechBeat: Can ChatGPT Outperform the Market? Week 11 (11/2/2025) | HackerNoon
The TechBeat: Can ChatGPT Outperform the Market? Week 11 (11/2/2025) | HackerNoon
Computing

You Might also Like

MacBook Pro M5 vs. M4: The Ultimate Apple Silicon Showdown
News

MacBook Pro M5 vs. M4: The Ultimate Apple Silicon Showdown

15 Min Read
Rising AI tide lifts all cloud boats, but investors get more choosy –  News
News

Rising AI tide lifts all cloud boats, but investors get more choosy – News

16 Min Read
Do Black Holes Create Dark Energy? Here’s What Scientists Have To Say – BGR
News

Do Black Holes Create Dark Energy? Here’s What Scientists Have To Say – BGR

6 Min Read
Heads-up: A 10,000mAh Qi2 power bank will only charge your Pixel 10 once
News

Heads-up: A 10,000mAh Qi2 power bank will only charge your Pixel 10 once

15 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?