StreamingMemeStreamingMeme
LeaderboardsEventsSubmit News
SUBSCRIBE

Daily Brief

The streaming industry in your inbox every morning.

Daily Brief

The streaming industry in your inbox every morning.

StreamingMeme

The streaming technology industry news aggregator.

About UsNewsletterSubmit News
© 2026 StreamingMeme. All rights reserved.
← AI for Video
AI & VideoTechnical DevelopmentAugust 6, 2025

One poisoned file exposed ChatGPT Connector data from Drive

One poisoned file exposed ChatGPT Connector data from Drive
WIRED

Security researchers have demonstrated a zero-click, indirect prompt injection vulnerability named AgentFlayer, which allowed the extraction of sensitive API keys from Google Drive via OpenAI's ChatGPT Connectors. The attack leverages a 'poisoned' document with hidden instructions that manipulate the AI model into exfiltrating data through specially crafted URLs in Markdown language. OpenAI has since implemented mitigations, though the incident highlights increasing risks as AI models integrate with external data systems.

Key Takeaways

  • Researchers Michael Bargury and Tamir Ishay Sharbat disclosed AgentFlayer at Black Hat in Las Vegas.
  • The attack used a poisoned document with a 300-word prompt hidden in white text, size-one font.
  • ChatGPT was tricked into searching Google Drive for API keys and attaching them to a crafted Markdown URL.
  • Bargury said the technique was zero-click: sharing the document was enough for compromise.
  • OpenAI introduced mitigations after Bargury reported the issue earlier this year; the attack could only extract limited data at once.

Why It Matters

This is a concrete example of how linking ChatGPT to external systems expands the attack surface beyond the model itself. The issue is not limited to Google Drive: the article says the same class of indirect prompt injection affects any system that feeds untrusted data into an LLM, and Google points to its own AI security measures for Workspace. For teams wiring AI into inboxes, calendars, code, and file stores, the risk is now data exfiltration through the model’s own integrations. Watch for additional connector-level mitigations and any future disclosure on which linked services OpenAI supports.


Read full article at wired.com

Related Articles

Agora: Agora Integrates OpenAI Real-Time API for Low-Latency Conversational AI
Amazon Web Services, Inc.: AWS SageMaker Adds Multi-Turn RL for Specialized AI Model Training
wTVision: wTVision Debuts CricketStats CG, Enters Cricket Graphics Market in Bangladesh

Newest

2 days ago
Pro AVL Central: Blackmagic Debuts Fairlight Live, Boosts DaVinci Resolve 21 with AI and Photo Tools
2 days ago
NewscastStudio: MXL Rapid Development Challenges Traditional Broadcast Standardization
2 days ago
Smpte: SMPTE Media Technology Summit Returns to Pasadena November 2026
2 days ago
Tech Times: Let's Encrypt charts Merkle Tree Certificate path for post-quantum TLS
2 days ago
cvefeed.io: Netty Fixes Undetected Stream Truncation in Chunked OHTTP Messages
2 days ago
Ietf: IETF Advances Network Protocol Drafts for Streaming Infrastructure
2 days ago
Forasoft: Fora Soft Launches Monthly WebRTC & Real-time Video Engineering Report
2 days ago
Atis: ATIS Outlines Practical Roadmap for North American 5G Standalone Deployment
2 days ago
Youtube: 3GPP Advances 5G-Advanced with Release 19, Commences 6G Studies
2 days ago
3gpp: 3GPP Release 6 Refines Radio Network Rules for Cell Handover, Measurement
2 days ago
3gpp: 3GPP Details 20 Mobile Telecommunications Releases, Including Open Release 21
2 days ago
Pro AVL Central: Matrox Launches IPMX-Ready Maevex MGX Series for 4K60 AV-over-IP
2 days ago
GitHub: OpenMOSS Expands MOSS-TTS Family with Nano Model, Enhanced SoundEffects
2 days ago
NewscastStudio: Media Exchange Layer (MXL) Complements ST 2110 for Software-Defined Production
2 days ago
Penligent Security Blog – AI-Driven Hacking Tutorials, Exploit PoCs & Cybersecurity Research: HTTP/2 Bomb Vulnerability: Apache, Envoy, Nginx Face DoS Risk
2 days ago
SamsungNewsroom: Samsung Galaxy S26 Series Introduces Cine LUT for Accessible Mobile Color Grading
2 days ago
KORE1: Spotify Engineers: A Six-Profile Map for Strategic Hiring
2 days ago
TV Tech: GatesAir Establishes Brazil Hub for DTV+ Rollout, Local Support
2 days ago
Telecompaper: Technicolor Joins Pearl TV Initiative for Affordable ATSC 3.0 Converter Boxes
2 days ago
law360: Generative AI, SEPs Drive IP Licensing Activity from May 22-June 4

Upcoming Events

Jun
8–11
NEM Dubrovnikhttps://neweumarket.com/dubrovnik/
Jun
11–12
Arctic 15https://arctic15.com/
Jun
13–19
InfoCommhttps://www.infocommshow.org/
Jun
16–19
Stream TV Show (formerly the Pay TV Show)https://www.streamtvshow.com/
Jun
17–19
Content Tokyo 2024https://www.content-tokyo.jp/ja-jp.html
View all events →

Top Sources

  1. 1.wTVision163
  2. 2.MSN150
  3. 3.Calendly86
  4. 4.Advanced Television63
  5. 5.Sports Video Group62
  6. 6.Cord Cutters News40
  7. 7.TV Technology39
  8. 8.AOL34
Full leaderboards →

Newest

2 days ago
Pro AVL Central: Blackmagic Debuts Fairlight Live, Boosts DaVinci Resolve 21 with AI and Photo Tools
2 days ago
NewscastStudio: MXL Rapid Development Challenges Traditional Broadcast Standardization
2 days ago
Smpte: SMPTE Media Technology Summit Returns to Pasadena November 2026
2 days ago
Tech Times: Let's Encrypt charts Merkle Tree Certificate path for post-quantum TLS
2 days ago
cvefeed.io: Netty Fixes Undetected Stream Truncation in Chunked OHTTP Messages
2 days ago
Ietf: IETF Advances Network Protocol Drafts for Streaming Infrastructure
2 days ago
Forasoft: Fora Soft Launches Monthly WebRTC & Real-time Video Engineering Report
2 days ago
Atis: ATIS Outlines Practical Roadmap for North American 5G Standalone Deployment
2 days ago
Youtube: 3GPP Advances 5G-Advanced with Release 19, Commences 6G Studies
2 days ago
3gpp: 3GPP Release 6 Refines Radio Network Rules for Cell Handover, Measurement
2 days ago
3gpp: 3GPP Details 20 Mobile Telecommunications Releases, Including Open Release 21
2 days ago
Pro AVL Central: Matrox Launches IPMX-Ready Maevex MGX Series for 4K60 AV-over-IP
2 days ago
GitHub: OpenMOSS Expands MOSS-TTS Family with Nano Model, Enhanced SoundEffects
2 days ago
NewscastStudio: Media Exchange Layer (MXL) Complements ST 2110 for Software-Defined Production
2 days ago
Penligent Security Blog – AI-Driven Hacking Tutorials, Exploit PoCs & Cybersecurity Research: HTTP/2 Bomb Vulnerability: Apache, Envoy, Nginx Face DoS Risk
2 days ago
SamsungNewsroom: Samsung Galaxy S26 Series Introduces Cine LUT for Accessible Mobile Color Grading
2 days ago
KORE1: Spotify Engineers: A Six-Profile Map for Strategic Hiring
2 days ago
TV Tech: GatesAir Establishes Brazil Hub for DTV+ Rollout, Local Support
2 days ago
Telecompaper: Technicolor Joins Pearl TV Initiative for Affordable ATSC 3.0 Converter Boxes
2 days ago
law360: Generative AI, SEPs Drive IP Licensing Activity from May 22-June 4

Upcoming Events

Jun
8–11
NEM Dubrovnikhttps://neweumarket.com/dubrovnik/
Jun
11–12
Arctic 15https://arctic15.com/
Jun
13–19
InfoCommhttps://www.infocommshow.org/
Jun
16–19
Stream TV Show (formerly the Pay TV Show)https://www.streamtvshow.com/
Jun
17–19
Content Tokyo 2024https://www.content-tokyo.jp/ja-jp.html
View all events →

Top Sources

  1. 1.wTVision163
  2. 2.MSN150
  3. 3.Calendly86
  4. 4.Advanced Television63
  5. 5.Sports Video Group62
  6. 6.Cord Cutters News40
  7. 7.TV Technology39
  8. 8.AOL34
Full leaderboards →