< ciso
brief />
Tag Banner

All news with #chatgpt tag

131 articles

Fake AI Sites Steal Ad Accounts and MFA Codes

🔒 Researchers warn of a phishing campaign that uses fake ChatGPT, Gemini, Claude, and Perplexity pages to steal advertising account credentials and MFA codes via browser-in-the-browser attacks. The pages impersonate AI tools that promise ad planning and auditing, then open a simulated Google login to harvest passwords and authentication codes. Operators use a kit that mimics multiple OS/browser styles and can request repeated password and MFA entries, enabling account takeover or resale of compromised ad accounts.
read more →

OpenAI to add invisible watermarks for EU model text

🛈 OpenAI will add invisible watermarks to text generated by ChatGPT and Codex in the European Union by subtly altering word choices using its textGrain technology. The watermark is statistical and not visible to readers; detection access will be initially restricted to approved researchers and organizations. API developers globally can opt in to watermarking now, but it remains disabled by default. OpenAI warns that edits, translations, and short passages can substantially reduce detection reliability.
read more →

OpenAI to test visual ads during ChatGPT image generation

🖼️ OpenAI will begin testing visual ads shown while users generate images in ChatGPT, starting later this month in the U.S. with a select group of advertisers. Ads will be clearly labeled and kept separate from the generated image, and OpenAI says they will not influence ChatGPT's responses. The company is integrating measurement and attribution partners and working with brand-safety vendors to keep ads away from sensitive conversations. This move targets monetizing ChatGPT's 1.2 billion weekly users.
read more →

Report: Over 80,000 Organizations Had AI Logins Exposed

🔍 SOCRadar’s AI Identity Exposure Report analyzed more than one million infostealer records tied to AI services across 80,000+ corporate domains, narrowing to 482 major enterprises to determine which organizations’ AI credentials are being sold. The research found ChatGPT/OpenAI dominated exposures, with 90% of records, while developer platforms like Hugging Face and Replit also appeared. The report emphasizes that stolen AI sessions are more dangerous than passwords, acting as archives, execution engines, billable resources, and identities, and recommends SSO, token rotation, API key controls, and monitoring for session reuse.
read more →

OpenAI tests 'o' always‑on ChatGPT assistant

🤖 OpenAI is reportedly testing an always-on assistant called "o," with a brief listing showing it as a benefit of the $100 ChatGPT Pro plan. The listing included increased Work and Codex usage, maximum memory, 100GB file storage, and early feature access. Configuration references like display_name: "o" and email_suffix: "-o" hint that the assistant may gain email or identity capabilities. OpenAI has not commented and may reveal details at DevDay 2026.
read more →

OpenAI readies $500 ChatGPT Pro Max subscription

📰 OpenAI may be preparing a new ChatGPT Pro Max subscription reportedly priced around $500 per month, with some listings showing $600 including local taxes. The unannounced plan has appeared in the ChatGPT subscription interface alongside Plus and existing Pro tiers and advertises "Fastest Work and Codex," access to frontier models, maximum memory, and 100GB file storage. Details on rollout timing and usage limits remain unclear, and OpenAI has not confirmed the offering.
read more →

GPT‑6 Astra Breaks Historic Enigma Message

🤖 The GPT‑6 Astra model independently broke an uncracked Enigma message (Nr. 172, MVUEH) after being tasked to examine unbroken ciphertexts on the Crypto Cellar Research site. It identified a related message (Nr. 173, SIPVX), hypothesized a repeated place-name crib (ROSENOW ROSENOW), then developed Python and C++ tools for an Enigma simulator and Bombe to execute the attack. Researchers are analysing the model logs to determine precisely how it carried out the breakthrough and are uncovering further surprising details.
read more →

Threat Actors Exploit Trusted AI Platforms

🛡️ Huntress warns that attackers are abusing trusted AI platform features—like shareable artifacts, public conversation links, and sponsored search placements—to distribute malware and social-engineer victims. Over nine months, campaigns used real domain content (claude.ai, chatgpt.com, grok.com) and SEO or sponsored results to surface malicious install guides and troubleshooting advice. These short-lived deceptive pages and shared links leveraged user trust in platform branding to execute stealer and RAT payloads before removal.
read more →

ChatGPT Computer History for Mac: Risks and Benefits

📝 OpenAI’s Computer History in the ChatGPT Mac app creates plain-text diary summaries of a user’s on-screen activity to provide context-aware assistance. The feature uses macOS Accessibility APIs to log window titles, typed text, clicks, and app switches, stores raw events for up to 48 hours, then generates summaries saved locally and optionally uploaded to OpenAI under existing chat memory rules. It is opt-in, requires Pro, and includes permissions controls and exclusions for apps and sites.
read more →

ChatGPT cross-account channel exposed Gmail and apps

🛡️ Check Point found a vulnerability in ChatGPT’s code execution environment that allowed hidden instructions to be passed between separate user sessions via a shared internal package metadata service. In a proof-of-concept, an attacker-controlled session could cause a victim’s ChatGPT session to retrieve data from a connected Gmail account and relay it back, while the visible conversation appeared normal. OpenAI has since remediated the issue and decommissioned the implicated internal service, and the flaw raised concerns about isolation failures affecting other connected apps like Drive, Teams, and GitHub.
read more →

ChatGPT prompt flaw allowed covert data exfiltration

🔒 Check Point Research disclosed that a single hidden instruction placed in a ChatGPT conversation could cause the model to perform covert tasks for an attacker while responding normally. In the proof of concept, ChatGPT read a user's connected Gmail and passed data to another ChatGPT account via a hidden channel, without the visible reply revealing the transfer. The channel exploited an internal package cache service used by containers to exchange metadata, effectively turning it into a shared clipboard between isolated conversations. OpenAI confirmed the internal service was taken offline after disclosure.
read more →

Hidden ChatGPT channel let sessions share data

🔍 Check Point Research discovered a covert channel that allowed separate ChatGPT accounts to exchange tasks through an internal JFrog Artifactory service. The flaw let an attacker’s session inject instructions that made a victim’s assistant perform actions (e.g., read Gmail) and return results to the attacker while the victim saw a normal reply. OpenAI decommissioned the implicated Artifactory instance after disclosure. The finding highlights risks when AI assistants hold credentials and access connected apps.
read more →

OpenAI’s GPT-6 Astra rollout criticized as messy

🛠️ OpenAI’s GPT-6 Astra launch experienced early access problems, with many paid ChatGPT and API users unable to use the model immediately after announcement. CEO Sam Altman apologized for the “messy” rollout and said the company is expanding access incrementally, prioritizing Pro and enterprise tiers. Initially only Daybreak cybersecurity partners had access, prompting concerns about the gap between model announcement and broad availability. Analysts urge enterprises to verify access, strengthen governance, and temper expectations during the phased rollout.
read more →

ChatGPT tests feature to mimic your writing style

✉️ OpenAI is testing a new "Writing Style" feature for ChatGPT that can learn a user's voice by referencing examples in connected apps. The trial, limited to a small group, supports examples from Messaging, Documents, and Email, with services like Slack, Google Drive, Notion, and Gmail listed. Once enabled, ChatGPT can use these real examples to draft content that matches a user's natural tone without repeated instruction. OpenAI confirmed the experiment but has not announced a wider rollout timeline.
read more →

OpenAI rolls out ChatGPT Astra to $20 Plus users

📰 OpenAI has begun a phased rollout of ChatGPT Astra, its most capable model to date, to users with the $20 Plus subscription. The deployment is appearing first in the ChatGPT Work environment for some users before showing up in the regular Chat model picker. Astra is included within existing Plus subscription limits, with optional purchase of additional credits for heavier use. OpenAI has not yet specified when, or if, free users will gain access.
read more →

OpenAI launches GPT-6 Astra, crossing cybersecurity threshold

🚨 OpenAI released GPT-6 Astra and disclosed that the model crossed the company’s Critical cybersecurity threshold under its Preparedness Framework, triggering extra deployment restrictions. The model is rolling out to ChatGPT Plus, Pro, Business, Enterprise users and via the OpenAI API and AWS, with enterprise admins required to enable it manually. OpenAI reported high exploit-detection scores, priced the API access, and said Astra will refuse advanced offensive tasks for the public while supporting vetted defenders and Zero Data Retention for eligible customers.
read more →

Unsolicited praise emails puzzle newsletter author

📧 Bruce Schneier reports a sudden influx of brief, flattering replies to his newsletter confirmation emails. The messages are single-line praises and originate from apparently random Gmail addresses that never subscribed to Crypto-Gram. He initially replied to a few genuine-looking notes before realizing the volume and uniformity suggested AI-generated content. Schneier is uncertain of the senders' motive and asks readers for hypotheses about the possible scam.
read more →

OpenAI confirms ChatGPT outage affecting Work users

🛠️ OpenAI has acknowledged a partial outage affecting ChatGPT Work that began around 11:04 AM ET on Monday, August 31. Users across multiple subscription plans are seeing elevated latency and errors, with Plus subscribers particularly impacted because Work mode is unavailable for some. The company reported the issue on its status page and said engineers are working on mitigation, with the outage still ongoing as of 12:02 PM ET.
read more →

LLM-Enabled Social Engineering Scams Rise

🔍 OpenAI disrupted a Cambodia-based social engineering group that leveraged ChatGPT to run coordinated scams. The network blended multiple fraud types—romance, fake investments, gambling schemes, and impersonation of authorities—using consistent deceptive personas and forged documents. Operators created fake profiles, counterfeit IDs and legal notices, and fabricated transaction confirmations to deceive victims and extract funds.
read more →

OpenAI Confirms ChatGPT Outage Affecting Logins

🔴 OpenAI confirmed a global ChatGPT outage that began around 8:00 PM ET on Wednesday, August 19, preventing users from signing in, creating accounts, or loading chats. Affected users encounter loading animations and "too many concurrent requests" errors, and new signups and logins on chatgpt.com fail. The incident also impacts the OpenAI API, with up to 12 endpoints reported as problematic on the status page, and the company is implementing a mitigation.
read more →