Thursday , April 24 2025

ExtraHop Releases New Tool to Defend Against ChatGPT Data Leaks

In response to the increasing prevalence of ChatGPT and the associated risks of data leaks, ExtraHop has launched Reveal(x), a cutting-edge solution that offers organizations visibility into their network devices and users connecting to OpenAI domains.

The popularity of ChatGPT has skyrocketed, with 1 billion customers reached in a mere 2 months, surpassing the growth rate of platforms like TikTok, which took eight years to achieve the same milestone.

SonicWall patched SSLVPN Vuln Allowing Firewall Crashing

SonicWall has revealed a vulnerability in its SonicOS SSLVPN Virtual Office interface that could let remote attackers crash firewall appliances....
Read More
SonicWall patched SSLVPN Vuln Allowing Firewall Crashing

GitLab Releases Security Update For Multiple Vulns

GitLab has announced a security advisory urging users to upgrade their self-managed installations right away. Versions 17.11.1, 17.10.5, and 17.9.7...
Read More
GitLab Releases Security Update For Multiple Vulns

ISPAB president “whatsapp” got hacked via phishing link

Imdadul Haque, the president of Internet Service Provider of Bangladesh (ISPAB) said, I automatically got back my WhatsApp account. What...
Read More
ISPAB president “whatsapp” got hacked via phishing link

Zyxel released patches 2 vulns in its USG FLEX H series firewalls

Zyxel Networks has issued critical security patches for two high-severity vulnerabilities in its USG FLEX H series firewalls. These flaws...
Read More
Zyxel released patches 2 vulns in its USG FLEX H series firewalls

South Korea’s largest SK Telecom Hit by Malware: SIM-related info leaked

South Korea's largest mobile operator, SK Telecom, is warning that a malware infection allowed threat actors to access sensitive USIM-related...
Read More
South Korea’s largest SK Telecom Hit by Malware: SIM-related info leaked

ChatGPT Develops Exploit for CVEs Before Public PoCs Share

Security researcher Matt Keeley showed that artificial intelligence can now develop working exploits for critical vulnerabilities before public proof-of-concept (PoC)...
Read More
ChatGPT Develops Exploit for CVEs Before Public PoCs Share

TP-Link Router Vulns Allow to Execute Malicious SQL Commands

Several vulnerabilities have been found in TP-Link routers, exposing users to serious security risks from SQL injection flaws in their...
Read More
TP-Link Router Vulns Allow to Execute Malicious SQL Commands

SSL.com’s domain validation system’s bug found: Hacker exploited

SSL.com has revealed a major security flaw in its domain validation system, which could enable attackers to acquire fake SSL...
Read More
SSL.com’s domain validation system’s bug found: Hacker exploited

Amazon Follows Microsoft’s Lead, Halts Some Data Center Deals

Amazon has paused some data center lease negotiations for its cloud division, particularly in international markets, according to Wells Fargo...
Read More
Amazon Follows Microsoft’s Lead, Halts Some Data Center Deals

Hackers Exploit Zoom’s Remote Control Feature for System Access

ELUSIVE COMET is a threat actor conducting a sophisticated attack campaign that uses Zoom's remote control feature to access victims'...
Read More
Hackers Exploit Zoom’s Remote Control Feature for System Access

A recent survey conducted by Gartner in 2023 revealed that 9 out of 10 respondents plan to implement ChatGPT within their organizations by 2025, showcasing its widespread adoption.

While ChatGPT has the potential to accelerate organizational progress, deploying AI-as-a-Service (AIaaS) tools within organizations also introduces Intellectual Property risks.

Numerous instances of data leaks associated with ChatGPT have been reported, particularly when users share proprietary information during code reviews, research, or any form of discovery. The confidential data becomes vulnerable as ChatGPT stores it in public domains and utilizes the information to respond to other user queries.

Reveal(x) emerges as the solution to safeguard against these risks, empowering organizations to gain visibility into the devices and users connected to OpenAI domains within their networks. This enables organizations to exercise greater control over their data when implementing AI language models and generative AI tools.

This information becomes pivotal for organizations to assess the volume of data transmitted to OpenAI domains and evaluate the associated risks of utilizing AI services. Security personnel can then validate acceptable risk thresholds and minimize potential Intellectual Property losses.

Technical Analysis

Reveal(x) leverages network packets as its primary data source for real-time detection and monitoring. By stripping the content and payload sent from OSI layers 2-7 (DataLink Layer to Application Layer), it provides comprehensive data visibility.

While rules, regulations, and policies surrounding data storage and usage by AI exist, it remains crucial for organizations to understand the intricacies of utilizing these services effectively.

ExtraHop emphasizes that despite the data exposure risks, the productivity benefits of AI tools outweigh them. However, organizations must possess a clear understanding of how their data will be used, including data retention periods, and implement robust policies governing the usage of these services. Tools like Reveal(x) are instrumental in assessing policy compliance and identifying risks in real-time.

The full extent of an AI’s capabilities and the associated data exposure risks remain uncertain, emphasizing the need for organizations to remain vigilant in protecting their data assets.

Check Also

symlink

16,000+ Fortinet devices compromised with symlink backdoor, Mostly in Asia

According to Shadowserver Foundation around 17,000 Fortinet devices worldwide have been compromised using a new …

Leave a Reply

Your email address will not be published. Required fields are marked *