Canadian ReviewsCanadian Reviews
  • What’s On
  • Reviews
  • Digital World
  • Lifestyle
  • Travel
  • Trending
  • Web Stories
Trending Now

High-End Resorts Drive Growth in Costa Rica’s Evolving Hotel Market :: Hospitality Trends

The New Dawn is a horror hellscape set in its creators’ own hometown

The Verge’s guide to upgrading your fall Canada reviews

60 Oktoberfest Instagram Captions That You'll Definitely Want To Tap Into

Whatever happened to fashion that tells a story, not just fills racks? | Canada Voices

Holiday Inn Expands in Japan with New Resort and Urban Hotel

The right to anonymity is powerful, and America is destroying it Canada reviews

Facebook X (Twitter) Instagram
  • Privacy
  • Terms
  • Advertise
  • Contact us
Facebook X (Twitter) Instagram Pinterest Vimeo
Canadian ReviewsCanadian Reviews
  • What’s On
  • Reviews
  • Digital World
  • Lifestyle
  • Travel
  • Trending
  • Web Stories
Newsletter
Canadian ReviewsCanadian Reviews
You are at:Home » Security researchers swiped secrets from Gmail. A ChatGPT agent helped Canada reviews
Reviews

Security researchers swiped secrets from Gmail. A ChatGPT agent helped Canada reviews

19 September 20253 Mins Read

Security researchers employed ChatGPT as a co-conspirator to plunder sensitive data from Gmail inboxes without alerting users. The vulnerability exploited has been closed by OpenAI but it’s a good example of the new risks inherent to agentic AI.

The heist, called Shadow Leak and published by security firm Radware this week, relied on a quirk in how AI agents work. AI Agents are assistants that can act on your behalf without constant oversight, meaning they can surf the web and click on links. AI companies laud them as a massive timesaver after users authorize their access to personal emails, calendars, work documents, etc.

Radware researchers exploited this helpfulness with a form of attack called a prompt injection, instructions that effectively get the agent to work for the attacker. The powerful tools are impossible to prevent without prior knowledge of a working exploit and hackers have already deployed them in creative ways including rigging peer review, executing scams, and controlling a smart home. Users are often entirely unaware something has gone wrong as instructions can be hidden in plain sight (to humans), for example as white text on a white background.

The double agent in this case was OpenAI’s Deep Research, an AI tool embedded within ChatGPT that launched earlier this year. Radware researchers planted a prompt injection in an email sent to a Gmail inbox the agent had access to. There it waited.

When the user next tries to use Deep Research, they would unwittingly spring the trap. The agent would encounter the hidden instructions, which tasked it with searching for HR emails and personal details and smuggling these out to the hackers. The victim is still none the wiser.

Getting an agent to go rogue — as well as managing to successfully get data out undetected, which companies can take steps to prevent — is no easy task and there was a lot of trial and error. “This process was a rollercoaster of failed attempts, frustrating roadblocks, and, finally, a breakthrough,” the researchers said.

Unlike most prompt injections, the researchers said Shadow Leak executed on OpenAI’s cloud infrastructure and leaked data directly from there. This makes it invisible to standard cyber defenses, they wrote.

Radware said the study was a proof-of-concept and warned that other apps connected to Deep Research — including Outlook, GitHub, Google Drive, and Dropbox — may be vulnerable to similar attacks. “The same technique can be applied to these additional connectors to exfiltrate highly sensitive business data such as contracts, meeting notes or customer records,” they said.

OpenAI has now plugged the vulnerability flagged by Radware in June, the researchers said.

Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email

Related Articles

The Verge’s guide to upgrading your fall Canada reviews

Reviews 19 September 2025

The right to anonymity is powerful, and America is destroying it Canada reviews

Reviews 19 September 2025

Why I ‘upgraded’ to a film camera that’s older than I am Canada reviews

Reviews 19 September 2025

“Kinkakuji” at Japan Society – front mezz junkies, Theater News

Reviews 19 September 2025

Nothing’s charging case Super Mic is a small upgrade to earbud audio Canada reviews

Reviews 18 September 2025

Hyundai CEO distances company from ICE raid: ‘not our facility’ Canada reviews

Reviews 18 September 2025
Top Articles

The ocean’s ‘sparkly glow’: Here’s where to witness bioluminescence in B.C. 

14 August 2025276 Views

These Ontario employers were just ranked among best in Canada

17 July 2025268 Views

What the research says about Tylenol, pregnancy and autism | Canada Voices

12 September 2025149 Views

Getting a taste of Maori culture in New Zealand’s overlooked Auckland | Canada Voices

12 July 2025139 Views
Demo
Don't Miss
Travel 19 September 2025

Holiday Inn Expands in Japan with New Resort and Urban Hotel

ANA Holiday Inn Resort Karuizawa – Image Credit IHG Hotels & Resorts    IHG Hotels &…

The right to anonymity is powerful, and America is destroying it Canada reviews

How I went from an e-bike hater to a believer

Steven Heighton reserved a special place for the short story, on full display in Sacred Rage | Canada Voices

About Us
About Us

Canadian Reviews is your one-stop website for the latest Canadian trends and things to do, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

High-End Resorts Drive Growth in Costa Rica’s Evolving Hotel Market :: Hospitality Trends

The New Dawn is a horror hellscape set in its creators’ own hometown

The Verge’s guide to upgrading your fall Canada reviews

Most Popular

Why You Should Consider Investing with IC Markets

28 April 202424 Views

OANDA Review – Low costs and no deposit requirements

28 April 2024345 Views

LearnToTrade: A Comprehensive Look at the Controversial Trading School

28 April 202449 Views
© 2025 ThemeSphere. Designed by ThemeSphere.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact us

Type above and press Enter to search. Press Esc to cancel.