ChatGPT security flaw could open the gate for devastating cyberattack, expert warns




  • A ChatGPT API can be given an unlimited number of URLs, even if they’re duplicates, expert warns
  • If it tries to run the commands, it will create a huge volume of HTTP requests
  • Researchers urge OpenAI to put safeguards in place

Experts have warned there is a way to make OpenAI’s ChatGPT service engage in Distributed Denial of Service (DDoS) attacks on threat actors’ behalf.

A report from cybersecurity researcher Benjamin Flesch noted the problem lies in ChatGPT’s API’s handling of HTTP POST requests to a specific endpoint. That endpoint allows the user to provide a series of links through the “urls” parameter – without any limits.

https://cdn.mos.cms.futurecdn.net/YW6PMc8h5hemu6RuMarRq3-1200-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img