Indirect Prompt Injection is a vulnerability tracked across 3 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed November 6, 2025; most recent activity June 1, 2026.
Indirect Prompt Injection is a vulnerability class where crafted prompts or contextual inputs influence an AI system to reveal sensitive data or bypass guardrails, often without modifying the model itself. It enables data exfiltration or unintended actions through manipulation of prompts, system prompts, or integration points, making it a significant risk for ChatGPT-like deployments and other LLM-enabled applications.
A cybersecurity report from PromptArmor has revealed significant vulnerabilities in the 'ChatGPT for Google Sheets' plugin, which has over 185,000 downloads. The vulnerabilities stem from an indirect prompt injection…
Tenable Research identified seven vulnerabilities in OpenAI's ChatGPT models that could allow attackers to steal personal data and manipulate conversations. These flaws, affecting ChatGPT-4o and ChatGPT-5, include…
Tenable Research identified seven critical vulnerabilities in OpenAI's ChatGPT models, including ChatGPT-4o and ChatGPT-5, that could allow attackers to steal personal data and hijack user conversations. The…