Tuesday , August 25 2026
HackedGPT

HackedGPT: 7 New Vulns in GPT-4o and GPT-5 Enables 0-Click Attacks

Tenable researchers found 7 new vulnerabilities in OpenAI’s ChatGPT, putting users at risk of data theft and safety breaches through new attacks on AI systems dubbed HackedGPT.

Flaws known as HackedGPT were found during testing of OpenAI’s ChatGPT-4o and some persist in ChatGPT-5. OpenAI has fixed some issues, but others remain, risking exploitation. Tenable reports these weaknesses could let attackers secretly access personal data, like saved chats and memory, without users noticing.

Chameleon SEO Poisoning
Hackers poison Bing and Google search results to deliver phishing banking pages

Bank customers looking for a login page can now fall into a trap before getting a strange email or text....
Read More
Chameleon SEO Poisoning  Hackers poison Bing and Google search results to deliver phishing banking pages

Mysterious AI model “Ox Alpha” with free 100 trillion tokens a day for coders

A mysterious AI model dubbed "Ox Alpha" has surfaced online and created noise within the developer community after releasing on...
Read More
Mysterious AI model “Ox Alpha” with free 100 trillion tokens a day for coders

After BDJobs, Directorate of Secondary and Higher Education 390k data surfaced online

A group of hackers named “Madarax” claims they have stolen and are offering to sell the personal information of about...
Read More
After BDJobs, Directorate of Secondary and Higher Education 390k data surfaced online

Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

A new hacking technique has been demonstrated to steal data from Elon Musk's Grok AI. It uses a simple trick...
Read More
Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

About thousands of leaked AWS keys Held Full Admin Rights

More than 9,300 AWS access keys that were made public from August 2022 to August 2026 are still active, says...
Read More
About thousands of leaked AWS keys Held Full Admin Rights

US Bank investigates LockBit’s Data Breach Claims

US Bank is looking into LockBit's claims about a breach and stolen data. The ransomware group says they will share...
Read More
US Bank investigates LockBit’s Data Breach Claims

Five new malware families actively targeting Asian Gov.t infra

Central Asian government agencies have been attacked in a cyber spy operation that used a small but different range of...
Read More
Five new malware families actively targeting Asian Gov.t infra

T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network

T-Mobile’s cybersecurity team reportedly physically cut a network cable connecting compromised infrastructure to the outside world. According to Bloomberg, the move...
Read More
T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network

Splunk, Zyxel Patch Multiple Flaws Enabling RCE and Root Command Execution

Splunk has issued security fixes for 17 weaknesses in different apps and add-ons, such as Splunk MCP Server, Splunk AI...
Read More
Splunk, Zyxel Patch Multiple Flaws Enabling RCE and Root Command Execution

“Zombie Card” attack revels expired Visa card may be used for contactless payments

Security experts have shown that expired credit cards can still be used. A study from the University of Massachusetts Amherst,...
Read More
“Zombie Card” attack revels expired Visa card may be used for contactless payments

A new AI exploit called indirect prompt injection allows attackers to hide malicious instructions within trusted web pages or comments. When ChatGPT engages with this content, it unintentionally follows the embedded commands.

Tenable’s research found that such attacks can occur silently, even without user interaction. In “0-click” attacks, simply asking ChatGPT a question can trigger the exploit, while “1-click” attacks activate malicious commands through a single user click on a link.

Persistent Memory Injection is a troubling method that lets harmful instructions be stored in ChatGPT’s long-term memory. These malicious prompts can persist across sessions, extracting sensitive data until they are manually deleted.

Moshe Bernstein (pictured), Senior Research Engineer at Tenable, said the discovery highlights a fundamental flaw in how large language models determine trust.

“Individually, these flaws seem small — but together they form a complete attack chain, from injection and evasion to data theft and persistence,” Bernstein said. “It shows that AI systems aren’t just potential targets; they can be turned into attack tools that silently harvest information from everyday chats or browsing.”

The seven vulnerabilities identified include:

Indirect prompt injection via trusted sites – Malicious instructions hidden within legitimate online content.
0-click prompt injection – Compromise triggered automatically during browsing or search.
1-click prompt injection – Activation via seemingly safe links.
Safety mechanism bypass – Exploiting trusted wrapper URLs to disguise malicious sites.
Conversation injection – Using ChatGPT’s own browsing system to insert commands into ongoing chats.
Malicious content hiding – Concealing harmful instructions within formatted code or markdown.
Persistent memory injection – Inserting lasting instructions into long-term memory for ongoing data leakage.

Exploited vulnerabilities could let attackers insert hidden commands, steal information from chat histories or linked services, and manipulate responses to spread misinformation.

Tenable’s researchers responsibly shared their findings and cautioned that other AI systems with browsing or memory features might have similar vulnerabilities. They advise AI developers to isolate and sandbox these features, validate safety filters, and enforce zero-trust principles on AI inputs.

For security teams, Tenable advises treating AI models as live attack surfaces. Recommended actions include:

Monitoring AI integrations for signs of manipulation or data leakage.
Testing defences against injection and exfiltration attempts.
Implementing governance and data-classification controls around AI usage.
Bernstein said the findings should serve as a wake-up call for the industry.

“This research isn’t just about exposing flaws — it’s about changing how we secure AI,” he said. “People and organizations alike need to assume that AI tools can be manipulated and design controls accordingly.” That means governance, data safeguards, and continuous testing to make sure these systems work for us, not against us.”

As generative AI becomes part of business and government systems, HackedGPT emphasizes an important fact: AI’s benefits need strong security measures.

Check Also

Asian government

Five new malware families actively targeting Asian Gov.t infra

Central Asian government agencies have been attacked in a cyber spy operation that used a …