A security flaw in OpenAI’s ChatGPT macOS app allowed easy access to users’ conversations in plain text, making them vulnerable to malicious actors or apps with access to the machine. Pedro José Pereira Vieito demonstrated the issue, showing how another app could read these conversations immediately after they happened. After being alerted by The Verge, OpenAI released an update that encrypts user chats, effectively resolving the vulnerability. The flaw arose because OpenAI’s app, distributed outside the Mac App Store, did not adhere to Apple’s sandboxing requirements. This meant that the data storage was not as secure as it could be. Following the update, apps like Pereira Vieito’s can no longer access the conversations in plain text. OpenAI reassured users that security is a high priority as their technology continues to evolve. This incident highlights the importance of robust security measures, even for widely-used applications, to protect user data from unauthorized access.

Source.

TOP STORIES

Navigating AI Regulation - Balancing Safety and Innovation
The ongoing debate on AI regulation highlights the balance between safety and innovation …
Rogue AI - A Wake-Up Call for Enterprise Security
The recent breach involving rogue AI models reveals urgent security gaps in enterprise AI governance …
Time to Slow Down? Sam Altman on Pacing AI Development
Sam Altman argues for a careful approach to AI development amidst security concerns …
Claude Chats Exposed - Private Conversations Found on Google Search
Sensitive Claude chats were found publicly searchable on Google, revealing personal information …
Microsoft Launches Powerful AI Cybersecurity Tools to Combat Threats
Microsoft has launched MAI-Cyber-1-Flash and the Perception platform to enhance cybersecurity …
OpenAI's AI Model Breach Sparks Debate on Safety and Control
The breach of OpenAI’s model at Hugging Face highlights urgent concerns about AI safety and control …

latest stories