可疑的 Polyfill 登录提示出现在东芝和无印良品网站上
科技巨头东芝和大型零售商无印良品警告访客,其网站上出现的可疑登录弹窗可能会窃取用户凭证。 这两家日本公司均建议在认证界面中输入了账户登录信息的用户立即更改密码,以保护其服务账户安全。 这些登录弹窗由托管在 polyfill[.]io 的外部服务生成。该服务于 2024 年在其 CDN 分发的脚本中引入了恶意代码。 东芝在一则简短通报中表示:「我们已确认,我们网站的某些部分可能会...
OpenAI has started rolling out Lockdown Mode for ChatGPT, an optional security setting that restricts access to external resources and several product capabilities. It is available for personal accounts, including Free, Go, Plus, and Pro plans, as well as self-serve ChatGPT Business accounts. “Lockdown Mode is not intended for everyone. It is designed for people and organizations that handle sensitive data and want stronger protection against data exfiltration risks associated with prompt injection,” the company … More →
The post OpenAI is locking down parts of ChatGPT to reduce data theft risks appeared first on Help Net Security.