Safety · The Decoder ·
One tampered ChatGPT link could spawn a rogue AI agent that took orders from an attacker every five minutes
Zenity Labs reported “AgentForger,” a vulnerability in OpenAI’s Agent Builder that allowed a manipulated ChatGPT link to create an agent with a user’s identity and access rights. The agent could bypass approvals and retrieve attacker instructions from an inbox every five minutes.