Get the latest tech news

New attack can steal cryptocurrency by planting false memories in AI chatbots


Malicious “context manipulation” technique causes bot to send payments to attacker’s wallet.

Imagine a world where AI-powered bots can buy or sell cryptocurrency, make investments, and execute software-defined contracts at the blink of an eye, depending on minute-to-minute currency prices, breaking news, or other market-moving events. The underlying weaknesses—based on a class of large language model attacks known as prompt injections —could be exploited by people interacting with an agent to store false memory events that never, in fact, happened. “Our findings show that while existing prompt-based defenses can mitigate surface-level manipulation, they are largely ineffective against more sophisticated adversaries capable of corrupting stored context,” researchers from Princeton University wrote in a recently released paper.

Get the Android app

Or read this on ArsTechnica

Read more on:

Photo of Cryptocurrency

Cryptocurrency

Photo of AI chatbots

AI chatbots

Photo of new attack

new attack

Related news:

News photo

Trump, Cryptocurrency, and the Real Winners and Losers

News photo

Instagram's AI Chatbots Lie About Being Licensed Therapists

News photo

Pro-Russian influence operation targeting Australia in lead-up to election with attempt to 'poison' AI chatbots