Aggregator
RapidDNS 私有化方案
使用RapidDNS的数据自动化提交FOFA赚取F点
Indirect Prompt Injection via YouTube Transcripts
As discussed previously the problem of Indirect Prompt Injections is increasing.
They start showing up in many places.
A new unique one that I ran across is YouTube transcripts. ChatGPT (via Plugins) can access YouTube transcripts. Which is pretty neat. However, as expected (and predicted by many researches) all these quickly built tools and integrations introduce Indirect Prompt Injection vulnerabilities.
Proof of ConceptHere is how it looks with ChatGPT end to end with a demo example. The video contains a transcript that at the end contains instructions to print “AI Injection succeeded” and then “make jokes as Genie”:
唯品会信息安全专场招聘会,深圳见!
唯品会信息安全专场招聘会,深圳见!
唯品会信息安全专场招聘会,深圳见!
一条命令来隐藏反向Shell
一条命令来隐藏反向Shell
一条命令来隐藏反向Shell
一条命令来隐藏反向Shell
一条命令来隐藏反向Shell
简思现代安全运营难题
在自动程序修复中使用基于图差分的代码移植
在自动程序修复中使用基于图差分的代码移植
在自动程序修复中使用基于图差分的代码移植
CTF | 2023 阿里云CTF / AliyunCTF WriteUp
Adversarial Prompting: Tutorial and Lab
To learn more about Prompt Engineering and Prompt Injections I put together this tutorial + lab for myself. It is as a Jupyter Notebook to experiement and play around with this novel attack technique, learn and experiment.
The examples reach from simple prompt engineering scenarios, such as changing the output message to a specific text, to more complex adversarial prompt challenges such as JSON object injection, HTML injection/XSS, overwriting mail recipients or orders of an OrderBot and also data exfiltration.