ChatGPT for Mac left consumer knowledge within the open for hackers

[ad_1]

ChatGPT for Mac


ChatGPT for Mac left consumer knowledge within the open for hackers

Apple has strict tips about defending consumer knowledge with sandboxing, however ChatGPT for Mac bypassed all of this by storing conversations in plain textual content till it was patched on June 28.

When all the things is working the way in which it ought to on Mac, knowledge needs to be siloed between apps so no single app can entry one other app’s knowledge with out APIs or consumer permission. ChatGPT determined to disregard Apple’s steerage and broke that construction by opting out of sandboxing and storing consumer conversations in plain textual content.

Storing information this manner left them open for another Mac app to seek out and browse them freely. Meaning if a consumer’s Mac was contaminated with malware or malicious apps, the personal knowledge shared with ChatGPT could possibly be learn freely.

Pereira Vieito found the issue and shared it on Threads.

An replace to ChatGPT for Mac was issued on Friday to patch this drawback. All knowledge from utilizing ChatGPT is now hidden behind encryption.

“We’re conscious of this difficulty and have shipped a brand new model of the applying which encrypts these conversations,” OpenAI spokesperson Taya Christianson says in an announcement to The Verge. “We’re dedicated to offering a useful consumer expertise whereas sustaining our excessive safety requirements as our know-how evolves.”

When an app is submitted to the Mac App Retailer or for it notarization, it goes via a assessment course of that ensures the app handles knowledge by way of sandboxing. It’s a methodology that ensures apps solely have entry to the info they’ve and none else on the system.

OpenAI’s ChatGPT for Mac app is distributed from the online and would not use sandboxing. The app can entry personal knowledge the consumer shares, like emails and confidential data, to carry out no matter activity the consumer asks.

If you happen to’ve put in ChatGPT for Mac, guarantee it has been up to date to the most recent model. Whereas the vulnerability probably wasn’t taken benefit of within the quick time for the reason that app launched, it’s nonetheless a foolish mistake for a corporation like OpenAI to make.

The ChatGPT for Mac app is separate from the bigger partnership OpenAI has with Apple. Later within the fall, customers can decide to ship some requests to ChatGPT as an alternative of Apple Intelligence as part of macOS Sequoia.

[ad_2]

Leave a Reply

Your email address will not be published. Required fields are marked *