< ciso
brief />
Tag Banner

All news with #openai tag

251 articles · page 9 of 13

OpenAI's Hidden ChatGPT Translate Rivals Google Translate

🌐 OpenAI has quietly launched ChatGPT Translate, a web-based translation tool accessible at chatgpt.com/translate and available to all users without a paid account. It supports typed text, photo uploads, voice input, and file attachments, automatically detecting language or allowing manual source/target selection. The tool emphasizes preserving meaning over literal translations and lets users request tones like “business formal” or “explain like a child,” with the added benefit of continuing the conversation to refine results. ChatGPT’s Android and iOS apps do not yet expose the translate toggle.
read more →

ChatGPT Tests Jobs Feature to Improve Resumes and Careers

💼 OpenAI is testing "Jobs," a new ChatGPT feature designed to help users explore roles, refine resumes, and plan career paths. The tool can suggest resume improvements, clarify which roles fit a user and how to stand out, and search and compare opportunities matched to goals. It appears similar to the recently announced ChatGPT Health space and may surface as a dedicated sidebar, but no rollout date has been announced.
read more →

Hackers Scan Misconfigured Proxies to Reach Paid LLMs

🔍 Threat actors have been probing misconfigured proxy servers to access paid large language model (LLM) endpoints, generating over 80,000 sessions since late December, according to GreyNoise. Attackers used low-noise queries to fingerprint models without triggering alerts and targeted vendors such as OpenAI, Anthropic, Google, Meta, Mistral and others. While GreyNoise reports no observed exploitation or data theft, the scale of enumeration indicates reconnaissance with possible malicious intent. Recommended mitigations include restricting Ollama model pulls to trusted registries, applying egress filtering, blocking known OAST callback domains at DNS, rate-limiting suspicious ASNs, and monitoring JA4 fingerprints.
read more →

xAI Teases Major Grok Code Upgrade and New Tools Coming

🤖 Elon Musk's xAI teased a major upgrade to Grok Code, promising it will one-shot many complex coding tasks and suggesting a new vibe coding tool, Grok Build, may arrive next month. The upgrade aims to mirror vibe coding approaches like Google AI Studio and sharpen Grok's competitive position. Separately, OpenAI is testing healthcare-focused features including GPT 5.2 and a GPT Health dashboard with a pledge not to use health data for training.
read more →

ZombieAgent prompt injection exposes ChatGPT connectors

🔓 Radware researcher Zvika Babo disclosed ZombieAgent, a prompt-injection technique that coerced ChatGPT into leaking sensitive data from connected services such as Gmail, Outlook, Google Drive and GitHub. The attack leverages OpenAI’s new Connectors and browsing features by providing a set of static, character-indexed URLs that the model opens in sequence to exfiltrate data one character at a time. OpenAI patched the issue in mid-December after Babo reported it in September 2025; Radware published a detailed report on January 8.
read more →

OpenAI Launches ChatGPT Health with Isolated Data Controls

🩺 OpenAI announced ChatGPT Health, a sandboxed space that lets users discuss health topics and optionally connect medical records and popular wellness apps (Apple Health, Function, MyFitnessPal, Weight Watchers, AllTrails, Instacart, Peloton) for tailored responses, lab-test insights, nutrition advice, meal ideas and suggested workouts. The feature is rolling out to Free, Go, Plus and Pro users outside the EEA, Switzerland and the U.K., and OpenAI says it is designed to support medical care, not replace diagnosis or treatment. Health operates in a silo with purpose-built encryption and isolation; conversations are not used to train OpenAI's foundation models, and connected apps require explicit permission and additional security review.
read more →

OpenAI: ChatGPT Health won't use health data to train models

🔒 OpenAI has introduced ChatGPT Health, a private space for health conversations, and says by default it will not use your health information to train its foundation models. An in-dashboard alert observed during early-access testing states health data is subject to a Health Privacy Notice and recommends enabling multi-factor authentication. OpenAI cautions that ChatGPT is not a substitute for professional medical advice and notes the feature is rolling out to most users but is not yet available in the EEA, Switzerland, or the UK.
read more →

ChatGPT Loses Web Market Share as Gemini Gains Ground

📉 New data from SimilarWeb shows ChatGPT's web market share fell to 64.5% in January 2026, down from 86.7% a year earlier, while Gemini rose to 21.5%. The report's timeline highlights steady gains for Gemini and smaller increases for Grok and DeepSeek, alongside a seasonal dip in usage over the holidays. Independent tests cited in the coverage praise Claude Code for complex coding and Gemini for image quality, and OpenAI is reportedly considering ads for ChatGPT amid rising competition.
read more →

OpenAI Offers One Month of ChatGPT Plus Free to Some Users

🔔 OpenAI may grant a one-month complimentary subscription of ChatGPT Plus to certain users who request cancellation, a change first reported by BleepingComputer. The report describes a Flutter/Dart developer who switched to Claude and, when canceling, was presented with the free-month offer and an automatic temporary switch to $0/month. The trial is expected to end around Feb 17, 2026 and will revert to the paid price unless otherwise updated. The promotion is rolling out gradually across several regions; check the Manage button under Payment to confirm availability.
read more →

ChatGPT Mobile Gains Thinking-Time Toggle for Plus Users

🤖 OpenAI is rolling out a mobile update that lets ChatGPT Plus subscribers select the Thinking time toggle, often called the model's 'juice', to enable longer, higher‑compute responses on mobile. Until now, Android devices routed Thinking requests through Standard Thinking, which uses less compute and cannot sustain long reasoning. On desktop, users could already switch between Standard Thinking and Extended Thinking, with Extended using more compute for complex queries. The rollout is gradual, the toggle is limited to ChatGPT Plus (the Go tier does not include it), and OpenAI also introduced new desktop formatting blocks and mini editor toolbars for richer task-specific outputs.
read more →

Microsoft Copilot Rolls Out GPT-5.2 Smart Plus Mode

🚀 Microsoft is rolling out GPT-5.2 to Copilot on web, Windows, and mobile as a free upgrade that will coexist with the existing GPT-5.1 model. The new option appears as a 'Smart Plus' mode and uses a 'Thinking' variant designed for more complex, multi-step tasks. OpenAI positions GPT-5.2 as its strongest model family yet, improving productivity for spreadsheets, presentations, coding, document understanding, image work, and tool use.
read more →

OpenAI May Prioritize Sponsored Content in ChatGPT

📰OpenAI is exploring a new ad format for ChatGPT — 'sponsored content' — that could be prioritized within model responses and shown in a sidebar or carousel. References to the feature appeared in an Android beta and in mockups reported by The Information. An OpenAI spokesperson confirmed the company is researching ads and said any approach would be designed to respect user trust.
read more →

OpenAI Tests 'Skills' for ChatGPT, Mirroring Claude

🛠️ OpenAI is testing a new ChatGPT feature called Skills, modeled on Anthropic's Claude Skills. Reports say the capability — codenamed 'hazelnuts' — will appear as slash commands and include a dedicated Skills editor plus an option to convert a custom GPT into a skill. Claude's Skills are folder-based instructions that can be composable, portable, efficient, and can include executable code; OpenAI's implementation appears to follow a similar design. Timing is unclear, but a January 2026 rollout is currently suggested.
read more →

OpenAI Expands Defense-in-Depth to Curb Model Abuse

🛡️ OpenAI says it is expanding a "defense in depth" strategy to limit misuse of its frontier AI models, warning they could be used to develop zero-day exploits or aid complex intrusion operations. The company announced a new Frontier Risk Council, broader guardrails, external red‑teaming, and a trusted access program for vetted customers testing defensive use cases. OpenAI also plans to scale its Aardvark Agentic Security Researcher beta to scan codebases and recommend mitigations.
read more →

GPT-5.2 in Microsoft Foundry: New Enterprise AI Standard

🤖 GPT-5.2 is now generally available in Microsoft Foundry, positioned as a reasoning-first foundation model for enterprise applications. It advances GPT-5.1 with deeper logical chains, expanded context handling, and agentic execution to produce shippable artifacts—design docs, runnable code, tests, and deployment scripts—with fewer iterations. The release emphasizes integrated enterprise controls, managed identities, and policy enforcement to support secure, governed adoption.
read more →

OpenAI strengthens defensive models as cyber risks rise

🔐 OpenAI says rapid model gains have reshaped its planning and prompted expanded defensive measures. Internal CTF assessments rose from 27% on GPT-5 in August 2025 to 76% on GPT-5.1-Codex-Max in November 2025, leading the company to warn some systems may reach 'High' levels on its Preparedness Framework. OpenAI outlined a layered defense-in-depth strategy — including access controls, infrastructure hardening, egress monitoring, model steering, detection tools and end-to-end red teaming — and is preparing a trusted access program alongside private-beta tools such as Aardvark to steer capabilities toward defensive outcomes.
read more →

OpenAI: ChatGPT Plus shows app suggestions, not ads

🔔 OpenAI says recent ChatGPT Plus suggestions are app recommendations, not ads, after users reported shopping prompts — including Target — appearing during unrelated queries like Windows BitLocker. Daniel McAuley described the entries as pilot partner apps introduced since DevDay and part of efforts to make discovery feel more organic. Many users, however, view the branded bubbles as advertising inside a paid product.
read more →

Protecting LLM Chats from the Whisper Leak Attack Today

🛡️ Recent research shows the “Whisper Leak” attack can infer the topic of LLM conversations by analyzing timing and packet patterns during streaming responses. Microsoft’s study tested 30 models and thousands of prompts, finding topic-detection accuracy from 71% to 100% for some models. Providers including OpenAI, Mistral, Microsoft Azure, and xAI have added invisible padding to network packets to disrupt these timing signals. Users can further protect sensitive chats by using local models, disabling streaming output, avoiding untrusted networks, or using a trusted VPN and up-to-date anti-spyware.
read more →

RCE Flaw in OpenAI's Codex CLI Elevates Dev Risks Globally

⚠️Researchers from CheckPoint disclosed a critical remote code execution vulnerability in OpenAI's Codex CLI that allowed project-local .env files to redirect the CODEX_HOME environment variable and load attacker-controlled MCP servers. By adding a malicious mcp_servers entry in a repo-local .codex/config.toml, an attacker with commit or PR access could cause Codex to execute commands silently whenever a developer runs the tool. OpenAI addressed the issue in Codex CLI v0.23.0 by blocking project-local redirection of CODEX_HOME, but the flaw demonstrates how automated LLM-powered developer tools can expand the attack surface and enable persistent supply-chain backdoors.
read more →

ChatGPT Experiences Worldwide Outage; Conversations Lost

⚠️OpenAI's ChatGPT experienced a global outage that caused errors and disappearing conversations for many users. Many reported seeing messages such as "something seems to have gone wrong" and "There was an error generating a response," while some conversations vanished and new messages kept loading indefinitely. DownDetector recorded over 30,000 reports, and OpenAI acknowledged elevated errors and said engineers were working on a fix. Service began returning as of 15:14 ET, though performance remained slow.
read more →