Skip Navigation

Hacker plants false memories in ChatGPT to steal user data in perpetuity

35 comments
  • tldr

    • it affects the desktop app of chatgpt, but likely any client that features long term memory functionality.
    • does not apply to the web interface.
    • does not apply to API access.
    • the data exfiltration is visible to the user as GPT streams the tokens that form the exfiltration URL as a (fake) markdown image.
35 comments