e
Aug. 28, 2023, 5 p.m. |

Embrace The Red embracethered.com

This video highlights the various data exfiltration vulnerabilities I discovered and responsibly disclosed to Microsoft, Anthropic, ChatGPT and Plugin Developers.
It also briefly discusses mitigations various vendors put in place (and triage decisions).
 Thanks to MSRC, Anthropic and Zapier for addressing vulnerabilities to help protect their users.
Let’s hope it inspires OpenAI to mitigate the image markdown injection issue finally as well. It’s rated as a CVSS High scored vulnerability basically and was first reported to them on April, 9th …

anthropic apps bing bing chat chat chatgpt data data exfiltration developers exfiltration hope llm microsoft mitigations msrc plugin protect triage vendors video vulnerabilities

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC