【中奖名单】《Web安全攻防:渗透测试实战指南》书籍中奖名单公布啦!
恭喜《Web安全攻防:渗透测试实战指南》抽奖活动获奖的四位同学鼓掌!!没有中奖的小伙伴也不要伤心哦!!后期我
ChatGPT is vulnerable to data exfiltration via image markdown injections. This. is. pretty well known.
As more features are added to ChatGPT the exfiltration angle becomes more likely to be abused.
Recently OpenAI added Custom Instructions, which allow to have ChatGPT always automatically append instructions to every message exchange.
An adversary can abuse this feature to install a data exfiltration backdoor that depends on, and only works because of the image markdown injection vulnerability. The TTP is a similar to other post exploitation techniques adversaries are using, like enabling email forwarding rules.