OpenAI has shared its progress for strengthen the security of the ChatGPT Atlas browser against injection attack vulnerabilities, with the implementation of a new continuous defense system that anticipates these threats and tries to reduce the risks for users.
The browser ChatGPT Atlas launched in October, offers versatile features that allow the assistant to view web pages and perform actions within the browser autonomously so that it increases navigation productivity and helps the user in multiple ways.
However, ChatGPT Atlas, like the rest of the agentic browsers with the capacity to act autonomously, is vulnerable to injection type attacks, that introduce hidden instructions for the language model to process and execute actions that are normally blocked because they are potentially harmful.
This vulnerability, which makes them a valuable target for cyber attacks, was recently revealed, after identifying a clipboard injection casewhich causes the AI to copy a malicious link to the clipboard without the user realizing it to activate it the moment they decide to paste the content into the address bar.
Now, OpenAI has announced that it is carrying out a Continuous reinforcement against rapid injection attacksfacing Proactively discover and fix vulnerabilities of agents before they “become weapons in practice.
This was detailed by the company in a statement on its blog, where it shared that it has implemented a security update for ChatGPT Atlas which includes a new model trained to face adversaries and with reinforced security measures.
This security update includes a fast response cycle, developed with the help of its internal red team, which has capabilities to Continually investigate and discover attacks and submit mitigations quickly.
Likewise, the technology company has specified that, to investigate new attack strategies with this system, they have used a “LLM-based automated attacker”, that is, a bot trained to play the role that a ‘hacker’ would carry out, so that look for ways to send malicious instructions to an AI agent in ChatGPT Atlas.
“Our attacker trained through reinforcement learning can induce an agent to execute sophisticated and far-reaching harmful workflows that are developed in dozens (or even hundreds) of steps,” explained OpenAI.
In this way, the bot carries out attacks in simulations to identify how the AI agent would act in this regard and what actions it should take to avoid said attacks. This process is carried out in loopsince, the bot analyzes the agent’s response to your attack and adjusts it to try again.
As a result, OpenAI has detailed that, thanks to this cycle, They are discovering new attack strategies internally, “before they appear in the real world“. Therefore, this way of approaching rapid injection, together with greater investment in security controls, “can make attacks increasingly difficult and costly”, reducing the risk of rapid injection in reality.
With all this, the company has expressed its intention to continue working so that users can trust a ChatGPT agent to use your browser “the way you would trust a highly competent, security-conscious friend.”
However, OpenAI has also admitted that it is “unlikely” that rapid injection, “just like scams and social engineering on the web” are completely resolved. “We consider rapid injection to be a long-term challenge for AI security, and we will need to continually strengthen our defenses against it,” the technology company stated.
https://cookandcrumbs.com/forum/topic/beauty-івенти/#postid-1664
http://www.fc-barca.com/forum/14-5037-1
https://www.molecularcloud.org/p/leo-beauty-club
https://www.mecabricks.com/en/forum/topic/74825
https://groups.diigo.com/group/TechNews/content/leo-beauty-club-20781117
https://realtycomfort.kiev.ua/forum/discussion/165993/
https://www.vpiindustries.com/group/vpi-general-forum/discussion/6e108290-6a30-40d3-8b8c-d2f1011b69b5
https://ferdinand.com.ua/forum/topics/kak-vybrat-luchshie-shiny.14541/
https://www.alphapublisher.com/group/spectregame/discussion/d3c92330-8743-4b13-9872-612da2ed5201
https://kuplukvartiru.com.ua/forum-nerukhomosti/forum-nerukhomosti-lvova/431-zhk-ameryka?start=204
https://kenzerco.com/forums/topic/grand-reopening-event/
https://fanspo.com/u/simplykitsune/p/IGASXrZcBvJg-q/leo-beauty-club
https://www.tapatalk.com/groups/bbtravel/viewtopic.php?23&t=14169&
https://specialties.bayt.com/en/specialties/q/464647/leo-beauty-club-%D1%83-%D0%92%D0%B0%D1%80%D1%88%D0%B0%D0%B2%D1%96/?first_p=1&fb_share=0
https://www.gmma7.org/group/forever-young/discussion/3b22a0bc-99cf-4704-8708-e470381d07a6
https://medium.com/@simplykitsune/leo-beauty-club-%D1%83-%D0%B2%D0%B0%D1%80%D1%88%D0%B0%D0%B2%D1%96-7d2ced7cf09c?postPublishedType=initial
https://www.thedelancey.com/group/the-delancey-group/discussion/4a1ba7b4-c20f-4a46-844d-91d3ad3615d4
https://www.tumblr.com/skylander11/803645777688821760/grand-reopening-%D1%83-leo-beauty-club?source=share
http://www.arwen-undomiel.com/forum/viewtopic.php?45&t=347582
https://ferdinand.com.ua/forum/topics/knigi-o-samorazvitii.6201/
https://www.molecularcloud.org/p/4298
https://www.tumblr.com/skylander11/803648582649626624/%D0%BC%D0%B5%D0%BD%D1%96-%D0%B7%D0%B4%D0%B0%D1%94%D1%82%D1%8C%D1%81%D1%8F-%D1%89%D0%BE-%D1%86%D1%8F-%D1%82%D0%B5%D0%BC%D0%B0-%D0%B2%D0%B7%D0%B0%D0%B3%D0%B0%D0%BB%D1%96-%D1%83-%D0%BD%D0%B0%D1%81?source=share
http://www.arwen-undomiel.com/forum/viewtopic.php?45&t=347599
https://www.vpiindustries.com/group/vpi-general-forum/discussion/b2cb256f-7919-47eb-8e90-20240aebf232
https://www.mecabricks.com/en/forum/topic/74815