• BlueMonday1984@awful.systems
    link
    fedilink
    English
    arrow-up
    5
    ·
    4 months ago

    and really from the demos it looks like a user wouldn’t have to do anything at all besides write “summarize my emails” once. No need to click on anything for confidential info to be exfiltrated if the chatbot can already download arbitrary URLs based on the prompt injection!

    We’re gonna see a whole lotta data breaches in the upcoming months - calling it right now.