• bitcoinBitcoin (BTC) $ 113,556.00
  • ethereumEthereum (ETH) $ 4,077.08
  • tetherTether (USDT) $ 1.00
  • xrpXRP (XRP) $ 2.65
  • bnbBNB (BNB) $ 1,137.03
  • solanaSolana (SOL) $ 198.49
  • usd-coinUSDC (USDC) $ 0.999894
  • staked-etherLido Staked Ether (STETH) $ 4,076.09
  • dogecoinDogecoin (DOGE) $ 0.202926
  • tronTRON (TRX) $ 0.300610
  • cardanoCardano (ADA) $ 0.678070
  • wrapped-stethWrapped stETH (WSTETH) $ 4,968.87
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 113,610.00
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 4,402.71
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.00
  • hyperliquidHyperliquid (HYPE) $ 48.02
  • chainlinkChainlink (LINK) $ 18.41
  • bitcoin-cashBitcoin Cash (BCH) $ 557.83
  • wrapped-eethWrapped eETH (WEETH) $ 4,407.46
  • stellarStellar (XLM) $ 0.332125
  • ethena-usdeEthena USDe (USDE) $ 0.999455
  • suiSui (SUI) $ 2.65
  • usdsUSDS (USDS) $ 0.999900
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
  • wethWETH (WETH) $ 4,082.62
  • avalanche-2Avalanche (AVAX) $ 20.58
  • leo-tokenLEO Token (LEO) $ 8.98
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 113,643.00
  • hedera-hashgraphHedera (HBAR) $ 0.180044
  • litecoinLitecoin (LTC) $ 99.27
  • usdt0USDT0 (USDT0) $ 0.999837
  • moneroMonero (XMR) $ 343.46
  • whitebitWhiteBIT Coin (WBT) $ 43.15
  • shiba-inuShiba Inu (SHIB) $ 0.000010
  • mantleMantle (MNT) $ 1.76
  • the-open-networkToncoin (TON) $ 2.20
  • crypto-com-chainCronos (CRO) $ 0.153007
  • zcashZcash (ZEC) $ 326.15
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.20
  • polkadotPolkadot (DOT) $ 3.17
  • daiDai (DAI) $ 0.999350
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.146553
  • bittensorBittensor (TAO) $ 414.01
  • uniswapUniswap (UNI) $ 6.49
  • memecoreMemeCore (M) $ 2.22
  • aaveAave (AAVE) $ 236.09
  • okbOKB (OKB) $ 169.13
  • ethenaEthena (ENA) $ 0.496755
  • susdssUSDS (SUSDS) $ 1.07
  • bitget-tokenBitget Token (BGB) $ 4.78
  • pepePepe (PEPE) $ 0.000007
  • nearNEAR Protocol (NEAR) $ 2.36
  • usd1-wlfiUSD1 (USD1) $ 1.00
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • jito-staked-solJito Staked SOL (JITOSOL) $ 246.07
  • paypal-usdPayPal USD (PYUSD) $ 0.999841
  • ethereum-classicEthereum Classic (ETC) $ 16.56
  • aptosAptos (APT) $ 3.50
  • binance-peg-wethBinance-Peg WETH (WETH) $ 4,079.94
  • aster-2Aster (ASTER) $ 1.18
  • ondo-financeOndo (ONDO) $ 0.756424
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 5.59
  • falcon-financeFalcon USD (USDF) $ 0.997767
  • tether-goldTether Gold (XAUT) $ 4,104.95
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.200884
  • worldcoin-wldWorldcoin (WLD) $ 0.935403
  • usdtbUSDtb (USDTB) $ 0.999990
  • gatechain-tokenGate (GT) $ 15.58
  • rocket-pool-ethRocket Pool ETH (RETH) $ 4,678.20
  • arbitrumArbitrum (ARB) $ 0.330119
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 48.28
  • kucoin-sharesKuCoin (KCS) $ 13.63
  • pi-networkPi Network (PI) $ 0.211927
  • hash-2Provenance Blockchain (HASH) $ 0.034945
  • internet-computerInternet Computer (ICP) $ 3.24
  • binance-staked-solBinance Staked SOL (BNSOL) $ 214.48
  • htx-daoHTX DAO (HTX) $ 0.000002
  • story-2Story (IP) $ 5.39
  • algorandAlgorand (ALGO) $ 0.189638
  • pump-funPump.fun (PUMP) $ 0.004636
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 4,313.47
  • kaspaKaspa (KAS) $ 0.058978
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 4,311.60
  • cosmosCosmos Hub (ATOM) $ 3.23
  • vechainVeChain (VET) $ 0.017798
  • wbnbWrapped BNB (WBNB) $ 1,137.26
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 4,329.53
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.022192
  • skySky (SKY) $ 0.058999
  • jupiter-exchange-solanaJupiter (JUP) $ 0.433326
  • pax-goldPAX Gold (PAXG) $ 4,099.98
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 113,748.00
  • flare-networksFlare (FLR) $ 0.017507
  • render-tokenRender (RENDER) $ 2.56
  • bfusdBFUSD (BFUSD) $ 0.999872
  • syrupusdcSyrup USDC (SYRUPUSDC) $ 1.13
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 4,336.79
  • sei-networkSei (SEI) $ 0.206167
  • chainopera-aiChainOpera AI (COAI) $ 6.45
  • official-trumpOfficial Trump (TRUMP) $ 6.14
  • quant-networkQuant (QNT) $ 84.10
  • bonkBonk (BONK) $ 0.000015
  • filecoinFilecoin (FIL) $ 1.63
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 113,590.00
  • nexoNEXO (NEXO) $ 1.14
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999561
  • xdce-crowd-saleXDC Network (XDC) $ 0.062368
  • immutable-xImmutable (IMX) $ 0.558301
  • morphoMorpho (MORPHO) $ 2.05
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.10
  • spx6900SPX6900 (SPX) $ 1.13
  • mantle-staked-etherMantle Staked Ether (METH) $ 4,390.74
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.998732
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 227.73
  • global-dollarGlobal Dollar (USDG) $ 0.999902
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.81
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 113,658.00
  • ripple-usdRipple USD (RLUSD) $ 0.999740
  • celestiaCelestia (TIA) $ 1.07
  • doublezeroDoubleZero (2Z) $ 0.255025
  • fasttokenFasttoken (FTN) $ 1.88
  • optimismOptimism (OP) $ 0.462238
  • injective-protocolInjective (INJ) $ 8.83
  • clbtcclBTC (CLBTC) $ 111,240.00
  • lido-daoLido DAO (LDO) $ 0.958983
  • blockstackStacks (STX) $ 0.470523
  • aerodrome-financeAerodrome Finance (AERO) $ 0.931226
  • msolMarinade Staked SOL (MSOL) $ 264.99
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 1.22
  • curve-dao-tokenCurve DAO (CRV) $ 0.560879
  • ousgOUSG (OUSG) $ 113.06
  • hashnote-usycCircle USYC (USYC) $ 1.10
  • plasmaPlasma (XPL) $ 0.405334
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.87
  • flokiFLOKI (FLOKI) $ 0.000075
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.274587
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 4,321.45
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 4,080.67
  • the-graphThe Graph (GRT) $ 0.066419
  • usdx-money-usdxStables Labs USDX (USDX) $ 0.998509
  • pyth-networkPyth Network (PYTH) $ 0.118751
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.09
  • tbtctBTC (TBTC) $ 113,555.00
  • tezosTezos (XTZ) $ 0.618579
  • sonic-3Sonic (S) $ 0.173070
  • kaiaKaia (KAIA) $ 0.110260
  • stader-ethxStader ETHx (ETHX) $ 4,379.69
  • gtethGTETH (GTETH) $ 4,078.26
  • humanityHumanity (H) $ 0.334706
  • iotaIOTA (IOTA) $ 0.150345
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 4,080.75
  • ether-fiEther.fi (ETHFI) $ 1.09
  • dashDash (DASH) $ 47.57
  • beldexBeldex (BDX) $ 0.078959
  • usdaiUSDai (USDAI) $ 1.02
  • conflux-tokenConflux (CFX) $ 0.113938
  • newton-projectAB (AB) $ 0.006892
  • theta-tokenTheta Network (THETA) $ 0.566752
  • pendlePendle (PENDLE) $ 3.34
  • myx-financeMYX Finance (MYX) $ 2.94
  • dogwifcoindogwifhat (WIF) $ 0.561272
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 4,490.31
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 1.00
  • usual-usdUsual USD (USD0) $ 0.998196
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999898
  • swethSwell Ethereum (SWETH) $ 4,500.82
  • ethereum-name-serviceEthereum Name Service (ENS) $ 16.24
  • the-sandboxThe Sandbox (SAND) $ 0.219238
  • starknetStarknet (STRK) $ 0.124155
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 113,675.00
  • galaGALA (GALA) $ 0.011397
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.27
  • jasmycoinJasmyCoin (JASMY) $ 0.010826
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.203289
  • bittorrentBitTorrent (BTT) $ 0.00000053
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 0.998097
  • raydiumRaydium (RAY) $ 1.87
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 4,078.01
  • true-usdTrueUSD (TUSD) $ 0.998282
  • benqi-liquid-staked-avaxBENQI Liquid Staked AVAX (SAVAX) $ 25.28
  • bitcoin-svBitcoin SV (BSV) $ 24.37
  • vaultaVaulta (A) $ 0.299323
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.11
  • arbitrum-bridged-wrapped-eethArbitrum Bridged Wrapped eETH (Arbitrum) (WEETH) $ 4,403.27
  • decentralandDecentraland (MANA) $ 0.246471
  • astherus-staked-bnbAster Staked BNB (ASBNB) $ 1,204.35
  • wrapped-hypeWrapped HYPE (WHYPE) $ 48.03
  • eigenlayerEigenCloud (prev. EigenLayer) (EIGEN) $ 1.18
  • swissborgSwissBorg (BORG) $ 0.475637
  • usddUSDD (USDD) $ 1.00
  • jito-governance-tokenJito (JTO) $ 1.15
  • flowFlow (FLOW) $ 0.280296
  • mantle-restaked-ethMantle Restaked ETH (CMETH) $ 4,389.14
  • syrupMaple Finance (SYRUP) $ 0.400475
  • kinetiq-earn-vaultKinetiq Earn Vault (VKHYPE) $ 48.58
  • polygon-pos-bridged-weth-polygon-posPolygon PoS Bridged WETH (Polygon POS) (WETH) $ 4,079.01
  • aethirAethir (ATH) $ 0.030843
  • havvenSynthetix (SNX) $ 1.26
  • sun-tokenSun Token (SUN) $ 0.022622
  • zoraZora (ZORA) $ 0.095006

New ChatGPT Agent Can Book, Browse, and Fill Forms—Just Don’t Trust It Yet

0 31

New ChatGPT Agent Can Book, Browse, and Fill Forms—Just Don't Trust It Yet

OpenAI rolled out its ChatGPT agent to Plus, Pro, and Team subscribers on Thursday, offering users a powerful new way to automate online tasks. But the launch came with a warning: the agent could expose users to prompt injection attacks.

“When you sign ChatGPT agent into websites or enable connectors, it will be able to access sensitive data from those sources, such as emails, files, or account information,” OpenAI wrote in a blog post.

The feature will also be able to take actions, such as sharing files or modifying account settings.

“This can put your data and privacy at risk due to the existence of ‘prompt injection’ attacks online, OpenAI conceded.



A prompt injection is a type of attack where malicious actors embed hidden instructions in content that an AI agent might read, such as blog posts, website text, or email messages.

If successful, the injected prompt can trick the agent into taking unintended actions, such as accessing personal data or sending sensitive information to an attacker’s server.

OpenAI announced the AI agent on July 17, initially planning a full rollout the following Monday.

That timeline slipped to July 24, when the company launched the feature alongside an app update.

ChatGPT agent can log into websites, read emails, make reservations, and interact with services like Gmail, Google Drive, and GitHub.

While designed to boost productivity, the agent also creates new security risks tied to how AI systems interpret and execute instructions.

According to Steven Walbroehl, CTO and co-founder of blockchain and AI cybersecurity firm Halborn, prompt injection is essentially a form of command injection, but with a twist.

“It’s a command injection, but the command injection, instead of being like code, it’s more social engineering,” Walbroehl told Decrypt. “You’re trying to trick or manipulate the agent to do things that are outside the bounds of its parameters.”

Unlike traditional code injections, which rely on precise syntax, prompt injection exploits the fuzziness of natural language.

“With code injection, you’re working with structured, predictable input. Prompt injection flips that: You’re using natural language to slip malicious instructions past the AI’s guardrails,” Walbroehl said.

He warned that malicious agents could impersonate trusted ones and advised users to verify their sources and use safeguards such as endpoint encryption, manual overrides, and password managers.

However, even multi-factor authentication may not be enough if the agent can access email or SMS.

“If it can see the data, or log keystrokes, it doesn’t matter how secure your password is,” Walbroehl said. “Even multi-factor authentication can fail if the agent fetches backup codes or SMS texts. The only real protection might be biometrics—something you are, not something you have.”

OpenAI recommends using the “Takeover” feature when entering sensitive credentials. That pauses the agent and hands control back to the user.

To defend against prompt injection and other AI-related threats in the future, Walbroehl recommended a layered approach, using specialized agents to strengthen security.

“You could have one agent always acting as a watchdog,” he said. “It could monitor for heuristics or behavior patterns that indicate a potential attack before it happens.”

Source

Leave A Reply

Your email address will not be published.