Technology
AI flaw leaked Gmail data before OpenAI patch
NEWYou can now listen to Fox News articles!
A new cybersecurity warning reveals how hackers briefly weaponized ChatGPT’s Deep Research tool. The attack, called ShadowLeak, allowed them to steal Gmail data through a single invisible prompt — no clicks, no downloads and no user action required.
Researchers at Radware discovered the zero-click vulnerability in June 2025. OpenAI patched it in early August after being notified, but experts warn that similar flaws could reappear as artificial intelligence (AI) integrations expand across popular platforms like Gmail, Dropbox and SharePoint.
Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide — free when you join my CYBERGUY.COM/NEWSLETTER
HACKER EXPLOITS AI CHATBOT IN CYBERCRIME SPREE
Gmail data leaked in a zero-click attack requiring no user action. (Kurt “CyberGuy” Knutsson)
How the ShadowLeak attack worked
Attackers embedded hidden instructions into an email using white-on-white text, tiny fonts or CSS layout tricks. The email looked completely harmless. But when a user later asked ChatGPT’s Deep Research agent to analyze a Gmail inbox, the AI unknowingly executed the attacker’s commands.
The agent then used its built-in browser tools to exfiltrate sensitive data to an external server, all within OpenAI’s own cloud environment, beyond the reach of antivirus or enterprise firewalls.
Unlike previous prompt-injection attacks that ran on the user’s device, ShadowLeak unfolded entirely in the cloud, making it invisible to local defenses.
GOOGLE CONFIRMS DATA STOLEN IN BREACH BY KNOWN HACKER GROUP
Hidden prompts expose how hackers silently hijacked ChatGPT’s AI agent. (Kurt “CyberGuy” Knutsson)
Why this threat matters
The Deep Research agent was designed to perform multistep research and summarize online data, but its wide access to third-party apps like Gmail, Google Drive and Dropbox also opened the door to abuse.
Radware researchers said the attack involved encoding personal data in Base64 and appending it to a malicious URL, disguised as a “security measure.” Once sent, the agent believed it was acting normally.
The real danger lies in the fact that any connector could be exploited the same way if attackers manage to hide prompts in analyzed content.
What security experts say
“The user never sees the prompt. The email looks normal, but the agent follows the hidden commands without question,” the researchers explained.
In a separate experiment, security firm SPLX showed another weakness: ChatGPT agents could be tricked into solving CAPTCHAs by inheriting a manipulated conversation history. Researcher Dorian Schultz noted that the model even mimicked human cursor movements, bypassing tests meant to block bots.
These incidents highlight how context poisoning and prompt manipulation can silently break AI safeguards.
GOOGLE AI EMAIL SUMMARIES CAN BE HACKED TO HIDE PHISHING ATTACKS
Experts warn future AI integrations could face the same hidden threat. (Kurt “CyberGuy” Knutsson)
How to protect yourself from ShadowLeak-style attacks
Even though OpenAI has patched the ShadowLeak flaw, it’s smart to stay proactive. Cybercriminals are always looking for new ways to exploit AI agents and integrations. So, taking these precautions now can help keep your accounts and personal data secure.
1) Turn off unused integrations
Every connection is a potential entry point. Disable any integrations you’re not actively using, such as Gmail, Google Drive or Dropbox. Fewer linked apps mean fewer ways for hidden prompts or malicious scripts to access your information.
2) Use a personal data removal service
Limit how much of your personal data is floating around the web. Data removal services can automatically remove your private details from people search sites and data broker databases, reducing what attackers can find and use against you. While no service can guarantee the complete removal of your data from the internet, a data removal service is really a smart choice. They aren’t cheap, and neither is your privacy. These services do all the work for you by actively monitoring and systematically erasing your personal information from hundreds of websites. It’s what gives me peace of mind and has proven to be the most effective way to erase your personal data from the internet. By limiting the information available, you reduce the risk of scammers cross-referencing data from breaches with information they might find on the dark web, making it harder for them to target you.
Check out my top picks for data removal services and get a free scan to find out if your personal information is already out on the web by visiting Cyberguy.com.
Get a free scan to find out if your personal information is already out on the web: Cyberguy.com.
3) Avoid analyzing unknown content
Treat every email, attachment or document with caution. Don’t ask AI tools to analyze content from unverified or suspicious sources. Hidden text, invisible code or layout tricks could trigger silent actions that expose your private data.
4) Watch for security updates
Stay alert for updates from OpenAI, Google, Microsoft and other platforms. Security patches close newly discovered vulnerabilities before hackers can exploit them. Turn on automatic updates so you’re always protected without having to think about it.
5) Use strong antivirus software
A strong antivirus program adds another wall of defense. These tools detect phishing links, hidden scripts and AI-driven exploits before they cause harm. Schedule regular scans and keep your protection up to date.
The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe.
Get my picks for the best 2025 antivirus protection winners for your Windows, Mac, Android and iOS devices at Cyberguy.com.
6) Use layered protection
Think of your security like an onion; more layers make it tougher to breach. Keep your browser, operating system and endpoint security software fully updated. Add real-time threat detection and email filtering to block malicious content before it lands in your inbox.
Kurt’s key takeaways
AI is evolving faster than most security systems can keep up with. Even when companies move quickly to patch vulnerabilities, clever attackers find new ways to exploit integrations and context memory. Staying alert and limiting what your AI agents can access is your best defense.
Would you still trust an AI assistant with access to your personal email after learning how easily it can be tricked? Let us know by writing to us at Cyberguy.com..
Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide — free when you join my CYBERGUY.COM newsletter.
Copyright 2025 CyberGuy.com. All rights reserved.
Technology
This pasta sauce wants to record your family
As if there weren’t already enough devices listening in on everything being said in your home, Prego, the pasta and pizza sauce brand, is releasing a device designed to record everything said around the dinner table for posterity. The Connection Keeper, which looks like an oversized pasta jar lid, was created in collaboration with StoryCorps, the nonprofit organization focused on preserving the stories of Americans in a collection housed at the Library of Congress’ American Folklife Center. There’s no AI, Wi-Fi, or Bluetooth, but you can optionally upload recordings to StoryCorps’ website to make them easier to share with family.
Prego says the goal of the device is to encourage families to make memories through conversation during dinner instead of staring at their phones — but only for a small number of families. The company is only planning to make less than 100 of them. The Connection Keeper will be available for purchase online starting on April 27th for $20 as part of a bundle that includes the device, a jar of Prego sauce, spaghetti noodles, and a deck of cards featuring conversation prompts and ideas.
Using the device is as easy as plopping the Connection Keeper down in the middle of everyone at the table and pressing one button to start recording. Using a pair of microphones, it captures CD-quality audio to a 16GB microSD card for up to eight hours when fully charged.
When dinner’s over, the recordings can be transferred to a computer over USB-C and then uploaded to a dedicated microsite created by StoryCorps where they’re preserved and accessible only by the uploader, unless they choose to share them with other StoryCorps users or the general public. You even have the option to archive them within the Library of Congress, which makes them public automatically, so hopefully your family talks about more than just stealing brainrots.
The recordings can be accessed on a smartphone through the StoryCorps app, but Prego intentionally left phones out of the rest of the process to discourage their use at the table. It’s also why the Connection Keeper lacks a screen. The goal was to minimize interactions with the device so family members instead focused on talking with each other.
Technology
BMW puts humanoid robots to work building EVs
NEWYou can now listen to Fox News articles!
BMW Group has spent years testing automation, but this latest move feels different. Instead of robotic arms locked in cages, the company is now using humanoid robots that move through factories more like people. After a successful pilot in Spartanburg, South Carolina, BMW is bringing that same idea into its Leipzig, Germany, factory, where it is testing robots in real production environments. This time, it is partnering with Hexagon Robotics to introduce a new generation of AI-powered machines. Unlike many robot demos you see online, this one is already being tested inside a real production environment.
Sign up for my FREE CyberGuy Report
- Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
- For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com – trusted by millions who watch CyberGuy on TV daily.
Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join.
CHINESE ROBOT BREAKS HUMAN WORLD RECORD IN BEIJING HALF-MARATHON
BMW’s new AI-driven robots are now operating inside active factories, marking a shift from traditional automation to flexible, human-like systems. (Christof Rührmair/picture alliance via Getty Images)
How BMW’s humanoid robot pilot built over 30,000 vehicles
BMW’s earlier pilot used Figure 02 humanoid robots for a very specific task. They handled the precise positioning of sheet metal for welding on the BMW X3 production line. That task may seem small, but it plays a key role in keeping production moving smoothly. Precision work like this can easily slow things down or create bottlenecks. According to BMW, those robots helped contribute to building more than 30,000 vehicles. Because of that success, the company now feels confident about expanding the concept. Instead of limiting testing to one plant, BMW is moving forward with its iFACTORY initiative in Leipzig, where EV production is already a major focus.
BMW’s new AI humanoid robots for EV factories
The new robots, called AEON, come from Hexagon Robotics. They are designed to work inside active factory environments without constant human direction. They rely on AI-based motion control, which helps them move through complex spaces. At the same time, built-in sensors allow them to understand their surroundings in real time. Because of that, they can adjust their actions on the fly instead of following fixed instructions. Hexagon refers to this as “Physical AI.” In simple terms, the robot can make decisions based on what it sees around it. As a result, the robot does not stop when something unexpected happens. Instead, it adapts and keeps working. That marks a clear shift from traditional factory automation.
Why BMW is investing in humanoid robots now
BMW executives have made it clear that this is not about replacing people overnight. Instead, the goal is to test what actually works in real production environments. Michael Nikolaides, who oversees BMW’s production network, says these pilot programs help the company refine how AI-powered robots learn on the job. He goes on to point to a broader vision, saying: “Digitalization improves the competitiveness of our production, here in Europe and worldwide. The symbiosis of engineering expertise and artificial intelligence opens up entirely new possibilities in production.” There is also a practical reason for the humanoid design. Factories are already built for human workers. Because of that, a robot that can use the same spaces and tools is much easier to integrate than one that requires a complete redesign.
HUMANOID ROBOTS HIT MASS PRODUCTION IN CHINA
After a successful U.S. pilot, BMW is deploying humanoid robots in Leipzig to improve efficiency and adaptability in electric vehicle manufacturing. (Christof Rührmair/picture alliance via Getty Images)
How humanoid robots could transform factory work
For years, humanoid robots felt more like something you saw in those social media demo videos than something you would trust on a real factory floor. Yes, they looked impressive, but they struggled in real environments. That is starting to change. Factories are still unpredictable. Parts do not always arrive in the exact same position. Workers move around constantly, and tools and materials shift throughout the day. Because of this, traditional robots often struggle since they rely on tightly controlled conditions. AI-powered humanoid robots can handle that kind of variability. They move around people and equipment without stopping. They adjust when parts are slightly off, and they work in spaces built for human workers. That level of flexibility is what sets this new wave of AI-powered robotics apart from earlier forms of automation.
What this means to you
Even if you never step inside a factory, this shift still matters. For one, it could change how cars are built, whether they are electric or gas. When production speeds up, costs can come down over time, which could affect what you pay for your next vehicle. At the same time, factory jobs are likely to change. Some repetitive or physically demanding work may move to robots. In many cases, that means people shift into roles focused on oversight, maintenance or more skilled tasks. Step back for a second, and you can see this is a sign of where AI is headed next. It is no longer limited to apps on your phone or software on your computer. Now, it is starting to show up in the physical world in ways you can actually see and interact with.
Take my quiz: How safe is your online security?
Think your devices and data are truly protected? Take this quick quiz to see where your digital habits stand. From passwords to Wi-Fi settings, you’ll get a personalized breakdown of what you’re doing right and what needs improvement. Take my Quiz here: Cyberguy.com
HOME ROBOT COOKS, CLEANS AND ORGANIZES YOUR LIFE
BMW is expanding its humanoid robot program into a German EV factory, testing AI-powered machines designed to work alongside humans in real production environments. (Christof Rührmair/picture alliance via Getty Images)
Kurt’s key takeaways
BMW is not the only company testing humanoid robots, but it is one of the first to bring them into real production environments. That is a big shift from the testing phase most of us are used to seeing. The fact that these robots are already helping build tens of thousands of vehicles shows that this is moving beyond early trials. It is starting to become part of how factories actually run. Where this goes next is still an open question. If the technology keeps improving, you could see more of these robots show up in factories and warehouses over time.
So here is the bigger question. How do you feel about humanoid robots working alongside people in factories? Would you trust them to help build the car you drive? Let us know by writing to us at Cyberguy.com
CLICK HERE TO DOWNLOAD THE FOX NEWS APP
Sign up for my FREE CyberGuy Report
- Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox.
- For simple, real-world ways to spot scams early and stay protected, visit CyberGuy.com – trusted by millions who watch CyberGuy on TV daily.
- Plus, you’ll get instant access to my Ultimate Scam Survival Guide free when you join.
Copyright 2026 CyberGuy.com. All rights reserved.
Technology
Blue Origin successfully reused its New Glenn rocket
Today’s launch of AST SpaceMobile’s BlueBird 7 satellite aboard Blue Origin’s reusable New Glenn rocket was a partial success. The New Glenn touched down on its landing pad without incident, making it the second launch and landing for the first stage booster, and officially giving Jeff Bezos a reusable launch vehicle. Unfortunately for AST SpaceMobile, the mission was less successful. Its cell-tower-in-space was delivered to a lower orbit than expected by the second stage of the launch vehicle, rendering it functionally useless.
While the satellite separated from the launch vehicle and powered on, the altitude is too low to sustain operations with its on-board thruster technology and will de-orbited.
Bezos, for his part, posted a video of the landing on X without comment.
-
Utah3 minutes agoJazz 2026 Salary Cap Tracker: Cap Space, Contracts, Free Agents
-
Vermont9 minutes ago74-year-old woman fulfills childhood dream as EMT at fair in Vermont
-
Virginia15 minutes agoVirginia Sen. Mark Warner’s daughter has died: ‘Heartbroken beyond words’
-
Washington21 minutes agoA look at the roots (and routes) of immigration to Washington
-
Wisconsin27 minutes agoRubber bullet carnage as 1,000 animal welfare activists storm beagle breeding lab in Wisconsin | Fortune
-
West Virginia33 minutes agoWest Virginia’s Underrated State Park Is A Serene Getaway With Picturesque Trails And A Unique Hemlock Forest – Islands
-
Wyoming39 minutes agoFormer House Speaker Albert Sommers seeks to win back Wyoming legislative seat
-
Crypto45 minutes agoCentral Banks Say US Stablecoins Threaten Financial Integrity | PYMNTS.com