Settings

Theme

ChatGPT Plugin Flaw – attackers could access private GitHub repos of others

scmagazine.com

5 points by MorL 2 years ago · 3 comments

Reader

aviCC 2 years ago

Technical details: "The plugin does not authenticate the request, which means that the attacker can insert another memberId (aka the victim) and get a code that represents the victim. With that code, he can use ChatGPT and access the GitHub of the victim."

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection