A Flaw in ChatGPT's Mac App Could Have Let Hackers Grab Sensitive Data

–WIRED 

A Flaw in ChatGPT's Mac App Could Have Let Hackers Grab Sensitive Data While the focus has been on AI agents' hacking capabilities, a recently patched vulnerability in a ChatGPT app shows that AI software is itself an inviting--and vulnerable--target. Hardly a day goes by lately without news of AI agents autonomously hacking websites or AI tools being used by cybercriminals and scammers . But a recently patched vulnerability in the macOS version of OpenAI's ChatGPT underscores the potential value to attackers of compromising AI software itself as these apps proliferate more and more. The bug could have been exploited to essentially take over ChatGPT on a victim's computer, giving an attacker access to all the chat logs and other data stored by the app, as well as interconnections like browser sessions. Discovered by researchers at the Objective-See Foundation, the vulnerability illustrates the deep system access and trust that AI platforms are afforded in order to work--and the target that this puts on their backs.