"Security Flaw Exposes Encrypted AI-Assistant Chats to Hackers"

1 min read
Source: Ars Technica
"Security Flaw Exposes Encrypted AI-Assistant Chats to Hackers"
Photo: Ars Technica
TL;DR Summary

Researchers have discovered a side channel attack that allows hackers to decipher AI assistant responses, exposing private chats sent through non-Google chat GPTs, including ChatGPT and Microsoft Copilot. This attack can be carried out by a passive adversary-in-the-middle, allowing them to infer the specific topic of 55% of captured responses with high word accuracy. The attack exploits a side channel in the token-length sequence used for real-time, token-by-token transmission of encrypted responses, allowing malicious actors to read private conversations without the knowledge of the AI assistant providers.

Share this article

Reading Insights

Total Reads

0

Unique Readers

13

Time Saved

3 min

vs 4 min read

Condensed

88%

70387 words

Want the full story? Read the original article

Read on Ars Technica