{"id":611516,"date":"2025-09-19T07:41:16","date_gmt":"2025-09-19T05:41:16","guid":{"rendered":"https:\/\/mybroadband.co.za\/news\/?p=611516"},"modified":"2025-09-19T07:47:11","modified_gmt":"2025-09-19T05:47:11","slug":"chatgpt-security-flaw-could-have-let-hackers-steal-gmail-data","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/security\/611516-chatgpt-security-flaw-could-have-let-hackers-steal-gmail-data.html","title":{"rendered":"ChatGPT security flaw could have let hackers steal Gmail data"},"content":{"rendered":"\n<p>OpenAI patched a ChatGPT security flaw that could have allowed hackers to extract Gmail data from its users, according to researchers at cyber firm Radware.<\/p>\n\n\n\n<p>The issue was found in ChatGPT\u2019s Deep Research agent,\u00a0a tool launched in February\u00a0to help users analyse large troves of information. <\/p>\n\n\n\n<p>The vulnerability\u00a0could have enabled attackers to siphon sensitive data from corporate or personal Gmail accounts, according to the findings. <\/p>\n\n\n\n<p>ChatGPT users who linked their Gmail accounts to the service may have unknowingly exposed their data to hackers, Radware researchers said.<\/p>\n\n\n\n<p>The Deep Research tool from OpenAI is designed to more comprehensively\u00a0conduct online research on users\u2019 behalf\u00a0and\u00a0quickly answer\u00a0complex questions. <\/p>\n\n\n\n<p>It can also connect to users\u2019 Gmail accounts if they authorise it. <\/p>\n\n\n\n<p>Deep Research is available to ChatGPT users who pay an extra fee and marks an expansion of the company\u2019s AI agents, or tools designed to carry out tasks with limited human intervention<\/p>\n\n\n\n<p>Radware uncovered the vulnerability, and researchers said there was no evidence that attackers had exploited it.\u00a0OpenAI told Radware it fixed the flaw on 3 September.\u00a0<\/p>\n\n\n\n<p>An OpenAI spokesperson said the safety of its models was important to the company, and it&nbsp;is continually improving standards to make its technology more robust against such exploits.&nbsp;<\/p>\n\n\n\n<p>\u201cResearchers often test these systems in adversarial ways, and we welcome their research as it helps us improve,\u201d the spokesperson said.&nbsp;<\/p>\n\n\n\n<p>While hackers have recently&nbsp;<a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2025-08-27\/anthropic-says-attacker-used-ai-tool-in-widespread-hacks\" target=\"_blank\" rel=\"noreferrer noopener\">deployed AI tools<\/a>&nbsp;to conduct their own attacks, the Radware findings mark a relatively rare example of the way that emerging AI agents themselves can be exploited to steal their users\u2019 information.&nbsp;<\/p>\n\n\n\n<p>To demonstrate the vulnerability, researchers sent an email to themselves with hidden instructions that told the Deep Research agent to search that inbox for personal information such as full names and addresses. <\/p>\n\n\n\n<p>The Radware team then instructed the AI agent to send that data to a web address under their control.\u00a0\u00a0<\/p>\n\n\n\n<p>Pascal Geenens, Radware\u2019s director of threat research, said that the intended target of the data theft wouldn\u2019t have needed to click on anything in order for attackers to compromise their data.<\/p>\n\n\n\n<p>\u201cIf a corporate account was compromised, the company wouldn\u2019t even know information was leaving,\u201d he said.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>ChatGPT users who linked their Gmail accounts to the service may have unknowingly exposed their data to hackers, Radware researchers said.<\/p>\n","protected":false},"author":341034,"featured_media":561313,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_sma_x_autopost_status":"idle","_sma_x_autopost_error":"","_sma_x_post_id":"","_sma_facebook_post_id":"","_sma_instagram_post_id":"","_sma_threads_post_id":"","_sma_x_attempts":0,"footnotes":""},"categories":[27],"tags":[83065,101527,15227,407,167,461,45266,96978],"class_list":["post-611516","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","tag-chatgpt","tag-chatgpt-deep-research","tag-cybersecurity","tag-gmail","tag-google","tag-hacking","tag-openai","tag-radware"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/611516"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/341034"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=611516"}],"version-history":[{"count":2,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/611516\/revisions"}],"predecessor-version":[{"id":611519,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/611516\/revisions\/611519"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media\/561313"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=611516"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=611516"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=611516"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}