Get the latest tech news

Chatbots are surfacing data from GitHub repositories that are set to private | Chatbot and AI services have yet another security and safety issue we need to worry about


Popular chatbot services like Copilot and ChatGPT could theoretically be exploited to access GitHub repositories that their owners have set to private. According to Israeli security firm...

According to Israeli security firm Lasso, this vulnerability is very real and affects tens of thousands of organizations, developers, and major technology companies. Company co-founder Ophir Dror revealed that the repository had been mistakenly made public for a short period, during which Bing indexed and cached the data. Cybercriminals and other threat actors could potentially manipulate the chatbot into revealing confidential information, including intellectual property, corporate data, access keys, and security tokens.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Chatbots

Chatbots

Photo of data

data

Photo of chatbot

chatbot

Related news:

News photo

Mozilla responds to backlash over new terms, saying it’s not using people’s data for AI

News photo

A custom version of Firefox, focused on privacy, security and freedom

News photo

Github scam investigation: Thousands of “mods” and “cracks” stealing data