Ana SayfaEnglish NewsOpenAI confirms ChatGPT data breach. Here is everything we know

OpenAI confirms ChatGPT data breach. Here is everything we know

ChatGPT maker OpenAI has confirmed a security incident, which it says is not its fault.

The veri breach involves a third-party analytics provider, Mixpanel, which resulted in the exposure of limited user veri associated with its API platform.

“This was not a breach of OpenAI’s systems. No chat, API requests, API usage veri, passwords, credentials, API keys, payment details, or government IDs were compromised or exposed,” the company said in an email notifying users on Thursday.

Mixpanel reportedly became aware of an attacker on November 9, OpenAI said.

The threat actor gained unauthorised access to part of its systems and exported a dataset which had limited customer-identifiable information and analytics veri.

OpenAI said the information that may have been affected was limited to names, email addresses, and user identifiers.

OpenAI said that it had terminated its use of Mixpanel and reaffirmed that the breach wasn’t caused by any vulnerabilities in OpenAI’s systems.

What does it mean for your veri?

The company said it would investigate the breach and urged users to be additionally vigilant of phishing-type attacks and social engineering scams that might attempt to leverage the stolen veri.

Users have been encouraged to enable multi-factor authentication as an additional protective measure for their accounts.

While OpenAI said no conversations with ChatGPT were exposed, the incident is a reminder of how much personal veri OpenAI has access to as people bear their souls to chatbots.

OpenAI said that it plans to enforce stricter security requirements for all external partners.

While OpenAI’s use of Mixpanel analytics is standard practice, it tracked veri like email addresses and location that wasn’t necessary for product improvement, potentially violating GDPR’s veri minimisation principle, said Moshe Siman Tov Bustan, a security research team lead at OX Security, an AI security company.

“Companies – from tech giants like OpenAI to one-person startups – should always aim to over-protect and anonymise customer veri sent to third parties in order to avoid that type of information being stolen or breached,” he told Euronews Next.

“Even when using legitimate, vetted vendors, every piece of identifiable veri sent externally creates another potential exposure point”.


Quoted from Euronews.

RELATED ARTICLES

CEVAP VER

Lütfen yorumunuzu giriniz!
Lütfen isminizi buraya giriniz

- Reklam -
Link Kısaltma

Most Popular

Recent Comments

Güner türkyılmaz Açık Link Kısaltma Hakkında Kapsamlı Rehber
As.0102 Açık Linktree Alternatifi
Erkan ozguven Açık Linktree Alternatifi
Fadime Açık Linktree Alternatifi
Mert Açık Linktree Alternatifi
Sena karaca Açık Linktree Alternatifi
sevda Açık Linktree Alternatifi
sevda Açık Linktree Alternatifi
Dilek Açık Linktree Alternatifi
hnibrahim Açık Linktree Alternatifi
Mustafa Açık Linktree Alternatifi
Noortona Açık Linktree Alternatifi
Hakan Açık Linktree Alternatifi
Seda Açık Linktree Alternatifi
Hilal Açık Linktree Alternatifi
Cengiz Soğucaklı Açık Linktree Alternatifi
Mehtap Türkyılmaz Açık Linktree Alternatifi
Melek Arslan Açık Linktree Alternatifi
Burak demir Açık Linktree Alternatifi
Gsrg Açık Linktree Alternatifi
Murat Açık Linktree Alternatifi
Kerem Açık Linktree Alternatifi
Ahmet Aslan Açık Linktree Alternatifi
Murat Açık Linktree Alternatifi
Güner türkyılmaz Açık Linktree Alternatifi
Kerem Deren Açık Linktree Alternatifi
Furkan köse Açık Linktree Alternatifi