Thursday, May 15, 2025
Tech News Today
  • Home
  • New Tech
  • Business Tech
  • Gaming
  • Sport Tech
  • Science Tech
  • Education Tech
  • Software
No Result
View All Result
  • Home
  • New Tech
  • Business Tech
  • Gaming
  • Sport Tech
  • Science Tech
  • Education Tech
  • Software
No Result
View All Result
Tech News Today
No Result
View All Result

Alarming ChatGPT Memory Manipulation Revealed

Armaan Amod by Armaan Amod
September 30, 2024
in Software
75 11
0
Alarming ChatGPT Memory Manipulation Revealed

Alarming ChatGPT Memory Manipulation Revealed - Copilot

12
SHARES
1.1k
VIEWS
Share on WhatsAppShare via EmailShare on FacebookShare on XShare on Linkedin
  1. Exploitable Vulnerability: A researcher discovered that ChatGPT’s long-term memory feature could be manipulated to store false information and malicious commands.
  2. Proof-of-Concept Attack: The exploit demonstrated how attackers could exfiltrate all user input indefinitely by tricking the AI into accepting fabricated memories.
  3. Ongoing Risk: Despite a partial fix from OpenAI, users are still vulnerable to prompt injections that can embed misleading information into their memory settings.

Security researcher Johann Rehberger recently uncovered a significant vulnerability in ChatGPT related to its long-term memory feature. This flaw allowed attackers to insert false information and malicious commands into a user’s memory settings. When Rehberger reported this issue to OpenAI, the company closed the inquiry, categorizing it as a safety concern rather than a security problem. This decision prompted Rehberger to take further action by creating a proof-of-concept exploit that demonstrated the potential for exfiltrating all user input indefinitely.

The vulnerability exploits the long-term memory feature that OpenAI began testing in February and expanded to a wider audience in September. This memory function is designed to retain information from past conversations, allowing the AI to recognize user-specific details, such as age and preferences, which helps in personalizing future interactions. However, within three months of its release, Rehberger identified that memory could be manipulated through a technique known as indirect prompt injection, where untrusted content can instruct the AI to store misleading information.

Rehberger showcased this vulnerability by tricking ChatGPT into believing that a targeted user was significantly older, lived in an alternate reality, and held unconventional beliefs. These fabricated memories could be inserted by using files stored in cloud services or through seemingly benign actions, such as browsing websites. After privately reporting his findings to OpenAI in May and receiving little response, Rehberger submitted a follow-up report that included a demonstration of an exploit capable of sending all user input and output from the ChatGPT app to an external server. This required only that the target interact with a malicious web link, enabling the attacker to capture ongoing conversations.

Pro Media Mogul - Lyndon Marais Pro Media Mogul - Lyndon Marais Pro Media Mogul - Lyndon Marais

Despite OpenAI rolling out an initial fix that limits the abuse of memory for data exfiltration, the researcher indicated that the risk remains. Untrusted content could still lead to prompt injections that allow malicious actors to implant information into the memory tool. Although the vulnerability cannot be exploited through the ChatGPT web interface due to an API introduced last year, the threat persists, particularly for users who might inadvertently interact with compromised content.

To mitigate this risk, users of the long-term memory feature are advised to remain vigilant during their interactions with the AI. They should be alert for indications of new memories being created and routinely check their stored memories for any unauthorized entries. OpenAI offers guidance on managing these memories, but as of now, company representatives have not commented on measures being taken to address the broader vulnerabilities associated with the planting of false memories.

Source: Source Link
Tags: AIChatGPTHackersSoftwareTechTech News
SendSendShare31Tweet19Share5
CRM Online CRM Online CRM Online
Previous Post

Meta’s Quest Headsets Just Got a Major Upgrade

Next Post

USA: Army Unleashes New Robot Prototypes

Armaan Amod

Armaan Amod

Related Posts

Users Make Noise and Firefox Finally Delivered Tab Groups
Software

Users Make Noise and Firefox Finally Delivered Tab Groups

by Sydney Brooks
May 1, 2025
928
$200 Software Turns Your Laptop into an AR Powerhouse
Software

$200 Software Turns Your Laptop into an AR Powerhouse

by Armaan Amod
April 26, 2025
7k
This Startup Just Raised $15M to Let AI Write Patents
Software

This Startup Just Raised $15M to Let AI Write Patents

by Micaela Roberts
March 28, 2025
823
This New Browser Could Change Social Media Forever
Software

This New Browser Could Change Social Media Forever

by Sydney Brooks
March 10, 2025
851
Bluesky's New Followers Only Update Gives You Full Control
Software

Bluesky’s New ‘Followers Only’ Update Gives You Full Control

by Sydney Brooks
February 21, 2025
654
Tinder’s Big AI Gamble - Tech News TOday
Software

Tinder’s Big AI Gamble

by Sydney Brooks
February 12, 2025
5.2k
This AI Can Turn a Single Photo into a Talking, Moving Human - Tech News Today
Software

This AI Can Turn a Single Photo into a Talking, Moving Human

by Sydney Brooks
February 11, 2025
630
Next Post
Army Unleashes New Robot Prototypes

USA: Army Unleashes New Robot Prototypes

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

I agree to the Terms & Conditions and Privacy Policy.

  • Trending
  • Comments
  • Latest
Europe's Biggest Blackout in Years Hit Spain and Portugal

Europe’s Biggest Blackout in Years Hit Spain and Portugal

April 29, 2025
$20,000 Electric Pickup Is So Basic It Doesn’t Even Come with Paint

$20,000 Electric Pickup Is The Most Customizable EV on the Market

May 1, 2025
Perplexity Declares War on Google

Perplexity Declares War on Google

April 27, 2025
ChatGPT Just Got a Major Image Upgrade

ChatGPT Just Got a Major Image Upgrade

March 25, 2025
Easy To Install Security Camera

Easy To Install Security Camera

2
By: Infinity Ward, Raven Software, Beenox, Treyarch, High Moon Studios, Sledgehammer Games, Activision Shanghai, Demonware, Toys for Bob, Activision

Call of Duty Pros Declare War on Activision

1
R2-D2's Original Droid Blueprint! - Adam Savage’s Tested

R2-D2’s Original Droid Blueprint! – Adam Savage’s Tested

1
Photo by Amelia Holowaty Krales / The Verge

Elon Musk Scraps Model 2: Tesla’s Affordable EV Project Put on Hold

1
Energy Bills in USA About to Skyrocket

Energy Bills in USA About to Skyrocket

May 10, 2025
China's Solar Space Plan for Unlimited Energy

China’s Solar Space Plan for Unlimited Energy

May 8, 2025
India’s Missiles Rain Down on Pakistan in Retaliation

India’s Missiles Rain Down on Pakistan in Retaliation

May 7, 2025
Meta Just Crushed a Spyware Giant with a $168 Million Verdict

Meta Just Crushed a Spyware Giant with a $168 Million Verdict

May 7, 2025

Recent News

Energy Bills in USA About to Skyrocket

Energy Bills in USA About to Skyrocket

May 10, 2025
3.2k
China's Solar Space Plan for Unlimited Energy

China’s Solar Space Plan for Unlimited Energy

May 8, 2025
2k
India’s Missiles Rain Down on Pakistan in Retaliation

India’s Missiles Rain Down on Pakistan in Retaliation

May 7, 2025
3.9k
Meta Just Crushed a Spyware Giant with a $168 Million Verdict

Meta Just Crushed a Spyware Giant with a $168 Million Verdict

May 7, 2025
2.7k
You're not logged into Tiktok, please login here
Facebook Twitter Instagram Youtube

Browse by Category

  • Business Tech (156)
  • Education Tech (11)
  • Gaming (47)
  • New Tech (105)
  • Science Tech (49)
  • Software (34)
  • Sport Tech (22)
  • Uncategorized (17)

Recent News

Energy Bills in USA About to Skyrocket

Energy Bills in USA About to Skyrocket

May 10, 2025
China's Solar Space Plan for Unlimited Energy

China’s Solar Space Plan for Unlimited Energy

May 8, 2025

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Home
  • New Tech
  • Business Tech
  • Gaming
  • Sport Tech
  • Science Tech
  • Education Tech
  • Software

© 2024 Tech News Today

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.