CVE-2023-3676
Insufficient input sanitization on Windows nodes leads to privilege escalation
A prompt injection scenario that I, and others, have been wondering about in the past, is the potential risk associated with chatbots being able to analyze images.
Could this ability open up the way for Indirect Prompt Injection attacks?
Recently, Google added the ability to uploading and analyze images with Bard. And it turns out that it is indeed possible to add instructions to an image, and have the Bard follow those instructions.
The post IAMActionHunter: Query AWS IAM permission policies with ease appeared first on Rhino Security Labs.