By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Online Tech Guru
  • News
  • PC/Windows
  • Mobile
  • Apps
  • Gadgets
  • More
    • Gaming
    • Accessories
    • Editor’s Choice
    • Press Release
Reading: Security researchers swiped secrets from Gmail. A ChatGPT agent helped
Best Deal
Font ResizerAa
Online Tech GuruOnline Tech Guru
  • News
  • Mobile
  • PC/Windows
  • Gaming
  • Apps
  • Gadgets
  • Accessories
Search
  • News
  • PC/Windows
  • Mobile
  • Apps
  • Gadgets
  • More
    • Gaming
    • Accessories
    • Editor’s Choice
    • Press Release

Nintendo Says Mods Don’t Count as ‘Prior Art’ as They’re Not Full Games, Attempting to Sway Judge in Palworld Lawsuit

News Room News Room 19 September 2025
FacebookLike
InstagramFollow
YoutubeSubscribe
TiktokFollow
  • Subscribe
  • Privacy Policy
  • Contact
  • Terms of Use
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
Online Tech Guru > News > Security researchers swiped secrets from Gmail. A ChatGPT agent helped
News

Security researchers swiped secrets from Gmail. A ChatGPT agent helped

News Room
Last updated: 19 September 2025 12:41
By News Room 3 Min Read
Share
SHARE

Security researchers employed ChatGPT as a co-conspirator to plunder sensitive data from Gmail inboxes without alerting users. The vulnerability exploited has been closed by OpenAI but it’s a good example of the new risks inherent to agentic AI.

The heist, called Shadow Leak and published by security firm Radware this week, relied on a quirk in how AI agents work. AI Agents are assistants that can act on your behalf without constant oversight, meaning they can surf the web and click on links. AI companies laud them as a massive timesaver after users authorize their access to personal emails, calendars, work documents, etc.

Radware researchers exploited this helpfulness with a form of attack called a prompt injection, instructions that effectively get the agent to work for the attacker. The powerful tools are impossible to prevent without prior knowledge of a working exploit and hackers have already deployed them in creative ways including rigging peer review, executing scams, and controlling a smart home. Users are often entirely unaware something has gone wrong as instructions can be hidden in plain sight (to humans), for example as white text on a white background.

The double agent in this case was OpenAI’s Deep Research, an AI tool embedded within ChatGPT that launched earlier this year. Radware researchers planted a prompt injection in an email sent to a Gmail inbox the agent had access to. There it waited.

When the user next tries to use Deep Research, they would unwittingly spring the trap. The agent would encounter the hidden instructions, which tasked it with searching for HR emails and personal details and smuggling these out to the hackers. The victim is still none the wiser.

Getting an agent to go rogue — as well as managing to successfully get data out undetected, which companies can take steps to prevent — is no easy task and there was a lot of trial and error. “This process was a rollercoaster of failed attempts, frustrating roadblocks, and, finally, a breakthrough,” the researchers said.

Unlike most prompt injections, the researchers said Shadow Leak executed on OpenAI’s cloud infrastructure and leaked data directly from there. This makes it invisible to standard cyber defenses, they wrote.

Radware said the study was a proof-of-concept and warned that other apps connected to Deep Research — including Outlook, GitHub, Google Drive, and Dropbox — may be vulnerable to similar attacks. “The same technique can be applied to these additional connectors to exfiltrate highly sensitive business data such as contracts, meeting notes or customer records,” they said.

OpenAI has now plugged the vulnerability flagged by Radware in June, the researchers said.

Share This Article
Facebook Twitter Copy Link
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

First look at the Google Home app powered by Gemini

News Room News Room 19 September 2025
FacebookLike
InstagramFollow
YoutubeSubscribe
TiktokFollow

Trending

How to Switch iPhones Without Losing a Thing

Photograph: Simon HillIf your old device doesn't support Quick Start, or you don't want to…

19 September 2025

Google dismantled Nest — can Gemini save what’s left?

This week, Google announced that it has finally completed moving “the best” of its Nest-branded…

19 September 2025

Helldivers 2 ranks at No.4 on revenue charts for August 2025 following Xbox launch | Newzoo Charts

Helldivers 2's launch on Xbox culminated in a "substantial uplift" in revenue according to Newzoo,…

19 September 2025
News

What Does a 120-Hz Refresh Rate Mean, Anyway?

Many of our favorite TVs and monitors feature displays with high refresh rates, promising smoother on-screen action and a sharper picture. The same is true for the best Android phones…

News Room 19 September 2025

Your may also like!

News

The Best Hoodies to Hibernate In All Year Long

News Room 19 September 2025
News

How I went from an e-bike hater to a believer

News Room 19 September 2025
Gaming

Sonic Racing: CrossWorlds Breaks Street Date, And The Physical Copy Includes a Leaflet That Gives Away Another Fan-Favorite DLC Crossover

News Room 19 September 2025
News

The Best Apple Watch Accessories

News Room 19 September 2025

Our website stores cookies on your computer. They allow us to remember you and help personalize your experience with our site.

Read our privacy policy for more information.

Quick Links

  • Subscribe
  • Privacy Policy
  • Contact
  • Terms of Use
Advertise with us

Socials

Follow US
Welcome Back!

Sign in to your account

Lost your password?