Ayoub FATHI 阿尤布 🇵🇸 Profile picture
Group VP of Information Security, CISO | Engineer & Hacker by heart | Entrepreneur | I enjoy building and breaking stuff 🇲🇦/🇦🇪
Mar 25, 2023 21 tweets 8 min read
How could I have Hacked into any #ChatGPT account, including saved conversations, account status, chat history and more!

A tale of 4 ChatGPT vulnerabilities 👇

We can discuss it now that the #OpenAI team has confirmed it's completely fixed.

Let me explain 🤌: After OpenAI had fixed a critical vulnerability reported by @naglinagli, a line caught my attention: "..instruct the caching server to not catch the endpoint through a regex (this is the fix @OpenAI chose)"

I knew something was wrong with the fix & decided to give it a look..👇