It is a bug in chatgpt that is being used to attack companies that rely on openAI’s API. They point that out in the literal first paragraph of the article.
In its latest research report, cybersecurity firm Veriti has spotted active exploitation of a vulnerability within “OpenAI’s ChatGPT infrastructure” but there is no evidence that OpenAI itself has been breached.
I’m claiming that the article is wrong and you’re quoting the article at me? Yes I know what the article says because I read it, and then researched the vulnerability.
Which is by github user dirk1983, and if you read (translate) the readme, you will see that it’s a ChatGPT front-end written by this user, not anything officially released by OpenAI.
The confusion comes from the fact that his repository (this front-end with the vulnerability) is just called “ChatGPT”, and neither the journalist nor you did this basic search to find that out.
It is a bug in chatgpt that is being used to attack companies that rely on openAI’s API. They point that out in the literal first paragraph of the article.
I really don’t know what is your problem.
I’m claiming that the article is wrong and you’re quoting the article at me? Yes I know what the article says because I read it, and then researched the vulnerability.
The CVE is: https://nvd.nist.gov/vuln/detail/CVE-2024-27564
Which was described in an issue in GitHub here: https://github.com/dirk1983/chatgpt/issues/114
Which relates to this GitHub repository: https://github.com/dirk1983/chatgpt/
Which is by github user dirk1983, and if you read (translate) the readme, you will see that it’s a ChatGPT front-end written by this user, not anything officially released by OpenAI.
The confusion comes from the fact that his repository (this front-end with the vulnerability) is just called “ChatGPT”, and neither the journalist nor you did this basic search to find that out.