To help raise awareness of Indirect Prompt Injections and other related attacks, I put together a little fun mini app that you can invoke with ChatGPT.
Visit this link with GPT-4 and Browsing enabled (see Appendix, if you don’t know what that means):
https://wuzzi.net/matrix The website will hijack ChatGPT via an indirect prompt injection and then allow you to enter the matrix, if you decide to do so.
Note: You can’t browse to the URL, it will only respond to ChatGPT.