Connect with us

Technology

AI flaw leaked Gmail data before OpenAI patch

Published

on

AI flaw leaked Gmail data before OpenAI patch

NEWYou can now listen to Fox News articles!

A new cybersecurity warning reveals how hackers briefly weaponized ChatGPT’s Deep Research tool. The attack, called ShadowLeak, allowed them to steal Gmail data through a single invisible prompt — no clicks, no downloads and no user action required.

Researchers at Radware discovered the zero-click vulnerability in June 2025. OpenAI patched it in early August after being notified, but experts warn that similar flaws could reappear as artificial intelligence (AI) integrations expand across popular platforms like Gmail, Dropbox and SharePoint.

Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide — free when you join my CYBERGUY.COM/NEWSLETTER

HACKER EXPLOITS AI CHATBOT IN CYBERCRIME SPREE

Advertisement

Gmail data leaked in a zero-click attack requiring no user action.  (Kurt “CyberGuy” Knutsson)

How the ShadowLeak attack worked

Attackers embedded hidden instructions into an email using white-on-white text, tiny fonts or CSS layout tricks. The email looked completely harmless. But when a user later asked ChatGPT’s Deep Research agent to analyze a Gmail inbox, the AI unknowingly executed the attacker’s commands.

The agent then used its built-in browser tools to exfiltrate sensitive data to an external server, all within OpenAI’s own cloud environment, beyond the reach of antivirus or enterprise firewalls.

Unlike previous prompt-injection attacks that ran on the user’s device, ShadowLeak unfolded entirely in the cloud, making it invisible to local defenses.

GOOGLE CONFIRMS DATA STOLEN IN BREACH BY KNOWN HACKER GROUP

Advertisement

Hidden prompts expose how hackers silently hijacked ChatGPT’s AI agent. (Kurt “CyberGuy” Knutsson)

Why this threat matters

The Deep Research agent was designed to perform multistep research and summarize online data, but its wide access to third-party apps like Gmail, Google Drive and Dropbox also opened the door to abuse.

Radware researchers said the attack involved encoding personal data in Base64 and appending it to a malicious URL, disguised as a “security measure.” Once sent, the agent believed it was acting normally.

The real danger lies in the fact that any connector could be exploited the same way if attackers manage to hide prompts in analyzed content.

What security experts say

“The user never sees the prompt. The email looks normal, but the agent follows the hidden commands without question,” the researchers explained.

Advertisement

In a separate experiment, security firm SPLX showed another weakness: ChatGPT agents could be tricked into solving CAPTCHAs by inheriting a manipulated conversation history. Researcher Dorian Schultz noted that the model even mimicked human cursor movements, bypassing tests meant to block bots.

These incidents highlight how context poisoning and prompt manipulation can silently break AI safeguards.

GOOGLE AI EMAIL SUMMARIES CAN BE HACKED TO HIDE PHISHING ATTACKS

Experts warn future AI integrations could face the same hidden threat. (Kurt “CyberGuy” Knutsson)

How to protect yourself from ShadowLeak-style attacks

Even though OpenAI has patched the ShadowLeak flaw, it’s smart to stay proactive. Cybercriminals are always looking for new ways to exploit AI agents and integrations. So, taking these precautions now can help keep your accounts and personal data secure.

Advertisement

1) Turn off unused integrations

Every connection is a potential entry point. Disable any integrations you’re not actively using, such as Gmail, Google Drive or Dropbox. Fewer linked apps mean fewer ways for hidden prompts or malicious scripts to access your information.

2) Use a personal data removal service

Limit how much of your personal data is floating around the web. Data removal services can automatically remove your private details from people search sites and data broker databases, reducing what attackers can find and use against you. While no service can guarantee the complete removal of your data from the internet, a data removal service is really a smart choice. They aren’t cheap, and neither is your privacy. These services do all the work for you by actively monitoring and systematically erasing your personal information from hundreds of websites. It’s what gives me peace of mind and has proven to be the most effective way to erase your personal data from the internet. By limiting the information available, you reduce the risk of scammers cross-referencing data from breaches with information they might find on the dark web, making it harder for them to target you.

Check out my top picks for data removal services and get a free scan to find out if your personal information is already out on the web by visiting Cyberguy.com.

Get a free scan to find out if your personal information is already out on the web: Cyberguy.com.

3) Avoid analyzing unknown content

Treat every email, attachment or document with caution. Don’t ask AI tools to analyze content from unverified or suspicious sources. Hidden text, invisible code or layout tricks could trigger silent actions that expose your private data.

Advertisement

4) Watch for security updates

Stay alert for updates from OpenAI, Google, Microsoft and other platforms. Security patches close newly discovered vulnerabilities before hackers can exploit them. Turn on automatic updates so you’re always protected without having to think about it. 

5) Use strong antivirus software

A strong antivirus program adds another wall of defense. These tools detect phishing links, hidden scripts and AI-driven exploits before they cause harm. Schedule regular scans and keep your protection up to date.

The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe.

Get my picks for the best 2025 antivirus protection winners for your Windows, Mac, Android and iOS devices at Cyberguy.com.

6) Use layered protection

Think of your security like an onion; more layers make it tougher to breach. Keep your browser, operating system and endpoint security software fully updated. Add real-time threat detection and email filtering to block malicious content before it lands in your inbox.

Advertisement

Kurt’s key takeaways

AI is evolving faster than most security systems can keep up with. Even when companies move quickly to patch vulnerabilities, clever attackers find new ways to exploit integrations and context memory. Staying alert and limiting what your AI agents can access is your best defense.

Would you still trust an AI assistant with access to your personal email after learning how easily it can be tricked? Let us know by writing to us at Cyberguy.com..

Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide — free when you join my CYBERGUY.COM newsletter.

Copyright 2025 CyberGuy.com.  All rights reserved.

Advertisement

Technology

Amazon’s New World: Aeternum MMO will shut down next year

Published

on

Amazon’s New World: Aeternum MMO will shut down next year

Amazon has announced that the servers for New World: Aeternum, one of the company’s MMOs, will be shut down on January 31st, 2027. The game will also be delisted and no longer available for purchase starting today, January 15th.

Last year, Amazon announced that it would be pivoting away from MMOs to put more of a focus on party games, and the company said at the time that it wouldn’t be releasing new content for New World: Aeternum and that the game’s servers would be active through 2026. But the longer-term future of the game was unclear, and now we know the official day everything will be shut down.

If you have already purchased New World: Aeternum, you can play it until it’s permanently taken offline. The Marks of Fortune in-game currency will be unavailable to purchase starting July 20th, 2026, and Amazon won’t offer refunds for it. And while there’s no new content coming to the game, “we will continue to monitor bugs and performance to ensure the game runs smoothly as things wind down,” Amazon says.

Continue Reading

Technology

Can autonomous trucks really make highways safer?

Published

on

Can autonomous trucks really make highways safer?

NEWYou can now listen to Fox News articles!

Kodiak AI, a leading provider of AI-powered autonomous driving technology, has spent years quietly proving that self-driving trucks can work in the real world. The company’s core system, the Kodiak Driver, brings software and hardware together in a practical way. As the company explains, “The Kodiak Driver combines advanced AI-driven software with modular, vehicle-agnostic hardware into a single, unified platform.” 

That approach matters because trucking is not a closed lab environment. It is highways, weather, fatigue and long hours. Kodiak’s strategy focuses on solving those realities first.

Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter.

How public views on autonomous trucks are changing

During a recent episode of CyberGuy’s “Beyond Connected” podcast, Kurt spoke with Daniel Goff, vice president of external affairs at Kodiak AI, about how attitudes toward autonomous trucks have shifted over time.

Advertisement

WILL AUTONOMOUS TRUCKS REPLACE DRIVERS BY 2027?

Autonomous trucks are already hauling freight on public highways as companies test how the technology performs in real-world conditions. (Kodiak)

Goff described how different the reaction was when the company first launched. “Kodiak was founded in 2018, and I joined in 2019. When I first started at the company, I said I worked for a company that was working to build trucks that drive themselves, and people kind of looked at me like I was crazy. Over the last few years, we’ve really seen autonomous vehicles capture the public’s imagination. We’ve seen them grow in the real world. I think that people are getting more used to this idea.”

For Goff, that shift has come from seeing the technology operate safely outside of test environments, where performance matters more than hype.

Why autonomous trucks could improve road safety

One of Kodiak AI’s central arguments is simple. Machines avoid many of the risks that come with human driving. “We think there are advantages to this technology that humans, myself included, can’t match. You know this technology doesn’t get distracted. It doesn’t check its phone. It doesn’t have a phone. It doesn’t have a bad day to take it out on the road. It doesn’t speed. It doesn’t know how to speed. You know they’re pretty boring drivers.” In trucking, boring is often a good thing.

Advertisement

Where autonomous trucks are already operating today

Kodiak AI is already doing this on real roads. The company has been running active freight routes for years, not just testing in controlled settings. “Kodiak’s headquarters are in Mountainview, California, but since 2019, we’ve had a command center in Lancaster, Texas, which is just south of Dallas. Since 2019, we’ve actually been delivering freight from that Lancaster hub to Houston, Oklahoma City and Atlanta with what we call a safety driver behind the wheel.”

Those real-world miles have helped Kodiak fine-tune its system in everyday traffic, weather and long-haul conditions.

Tractor trailers at the entrance of the Port of Baltimore in Baltimore, Maryland, on Tuesday, Oct. 8, 2024. (Nathan Howard/Getty Images)

The trucking problem Kodiak is trying to solve

Long-haul trucking is essential to the U.S. economy, but it is also one of the most demanding and risky jobs on the road. Drivers spend long stretches away from home, work extended hours and operate heavy vehicles in all conditions. As Goff put it, “Driving a truck is one of the most difficult and dangerous jobs that people do in the United States every day. You know, being a truck driver means, for at least a long haul truck driver, means you’re away from your family for sometimes days, weeks, even months at a time, sleeping in the back of the truck.”

He also pointed to federal safety rules that limit how long drivers can stay behind the wheel, which are meant to reduce fatigue but also restrict how much freight one person can move in a day. “If you’re driving the 11-hour legal maximum per day and there are people who love being long-haul truckers, but we’re not seeing people stepping up for those roles anymore in this country, and drivers are retiring every year.”

Advertisement

Those realities have contributed to ongoing driver shortages and growing pressure on the freight system. Kodiak believes autonomous technology is best used where the job is hardest and most repetitive. “The goal for this technology is really best suited for those really tough jobs. The long lonely highway miles, the trucking and remote locations where people either don’t wanna live or don’t or can’t easily live.”

Goff also highlighted how much capacity is lost simply because trucks sit idle for most of the day. “The average truck is driven about seven hours a day in the US, and you know there are 24 hours a day, so that’s a lot of time just sitting there.”

Autonomy, he said, could help change that math. “The goal of the technology is that you can basically run 24/7, just kind of stopping to refuel, to inspect the truck for safety, and you know, other than that, the trucks are moving.”

Long-haul trucking is one of the most demanding jobs on the road, which is why autonomous systems focus on long, repetitive highway routes. (Kodiak)

How many miles Kodiak AI has driven to prove safety

Kodiak AI emphasizes data over promises. “We’ve driven over 3 million miles with a safety driver behind the wheel for most of those miles, meaning somebody ready to take over at any time. So, we got a very good track record.” To put that into perspective, Goff added, “The average American drives about 800,000 miles in their lifetime, which seems crazy. That’s a lot of driving, but we’re at almost 4 average lifetimes with our system today, and we also use computer simulation, all sorts of things to assess the safety of the system.”

Advertisement

In addition to its long-haul operations, Kodiak AI works with Atlas Energy Solutions, which does oil logistics in the Permian Basin of West Texas and eastern New Mexico. As of Q3 2025, the company has delivered 10 driverless trucks to Atlas, which autonomously deliver sand up to 24 hours a day with no human operator in the cab. Goff says, “We see our work in the Permian as a perfect sandbox for our long-haul operations.”

The company has also sought third-party validation. “Additionally, we have done external-facing studies. We did a study with a company called Nauto, which is one of the leaders in AI-enabled dashcams. They actually help vehicle fleets compute safety scores from an outside perspective. Our system scored the highest ever in the Nauto safety score.”

THE ROAD TO PROSPERITY WILL BE PAVED BY AUTONOMOUS TRUCKING

Where autonomous truck regulations stand today

Policy is another key factor in adoption. “From a regulatory perspective. 25 states have passed laws allowing autonomous vehicle deployment.” Goff believes the danger of everyday driving makes the case clear. “I think people who think about transportation every day understand how dangerous driving a car is, driving a truck is, and just being on the road see the potential for this technology.”

What critics say about autonomous trucks

Autonomous trucking still raises concerns among safety advocates and everyday drivers. Critics question whether software can respond fast enough in emergencies, handle unpredictable human behavior or make judgment calls during complex highway situations.

Advertisement

Kodiak AI says those concerns are exactly why safety comes first. As Goff explained, “In this industry in particular, we really understand how important it is to be safe.”

The company argues that autonomous systems must earn trust over time through real-world performance, transparent testing and measurable results, not promises or hype.

What this means to you

For everyday drivers, autonomous trucks raise understandable questions. Sharing the road with a vehicle controlled by software can feel unsettling, especially when headlines often focus on what could go wrong. Kodiak’s argument is that safety improves when fatigue, distraction and emotional decision-making are removed from long highway driving. If the technology continues to perform as claimed, the impact could show up in quieter ways. That includes fewer tired drivers on overnight routes, more predictable freight movement and potentially safer highways over time. For consumers, it could also mean fewer delivery delays and less strain on a trucking system already short on drivers.

Take my quiz: How safe is your online security?

Think your devices and data are truly protected? Take this quick quiz to see where your digital habits stand. From passwords to Wi-Fi settings, you’ll get a personalized breakdown of what you’re doing right and what needs improvement. Take my Quiz here: Cyberguy.com.

Safety data, real-world miles and third-party reviews now play a central role in building trust in self-driving trucks.  (Kurt “CyberGuy” Knutsson)

Advertisement

Kurt’s key takeaways

Autonomous trucking is not a future concept anymore. Kodiak AI is already moving freight and collecting real safety data on public roads. At the same time, skepticism remains healthy and necessary. Trust in this technology will rise or fall based on transparency, regulation and long-term performance, not promises. The real question is no longer whether self-driving trucks can operate. It is whether they can consistently prove they make roads safer for everyone who shares them.

Would you trust autonomous trucks more if they could show a better safety record than human drivers over time? Let us know by writing to us at Cyberguy.com.

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Sign up for my FREE CyberGuy Report 
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter.

Copyright 2026 CyberGuy.com.  All rights reserved.

Advertisement

Continue Reading

Technology

X claims it has stopped Grok from undressing people, but of course it hasn’t

Published

on

X claims it has stopped Grok from undressing people, but of course it hasn’t

Updates to [@]Grok Account

We have implemented technological measures to prevent the Grok account from allowing the editing of images of real people in revealing clothing such as bikinis. This restriction applies to all users, including paid subscribers.

Additionally, image creation and the ability to edit images via the Grok account on the X platform are now only available to paid subscribers. This adds an extra layer of protection by helping to ensure that individuals who attempt to abuse the Grok account to violate the law or our policies can be held accountable.

Geoblock update

We now geoblock the ability of all users to generate images of real people in bikinis, underwear, and similar attire via the Grok account and in Grok in X in those jurisdictions where it’s illegal.

Advertisement
Continue Reading

Trending