Dear Everyone,
A critical vulnerability affecting popular AI tools, including ChatGPT, Google Gemini, and other generative AI platforms, exposes them to a novel attack vector dubbed “Man-in-the-Prompt.”
The research reveals that malicious browser extensions can exploit the Document Object Model (DOM) to inject prompts, steal sensitive data, and manipulate AI responses without requiring special permissions.
The vulnerability affects billions of users across major platforms, with ChatGPT’s 5 billion monthly visits and Gemini’s 400 million users particularly at risk.
https://cybersecuritynews.com/man-in-the-prompt-attack/
Kyaw Myo Oo
Information Security Officer , CB BANK PCL
CCIE #58769 | CISSP | CRISC | PMP | CCSM | SAA-C03 | PCNSE
https://www.linkedin.com/in/kyaw-myo-oo/