TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Check Point Research

ChatGPT Data Leakage via a Hidden Outbound Channel in the Code Execution Runtime

alexeybu · 2026-03-30 · Read original ↗

ATT&CK techniques detected

1 predictions
T1572Protocol Tunneling
85%
“through the same path. in effect, the attacker could establish a remote shell inside the linux environment that chatgpt creates to perform code execution and data analysis tasks. this interaction happened outside the normal chatgpt response flow. when users interact with the assi…”

Summary

Key Takeaways What Happened AI assistants now handle some of the most sensitive data people own. Users discuss symptoms and medical history. They ask questions about taxes, debts, and personal finances, upload PDFs, contracts, lab results, and identity-rich documents that contain names, addresses, account details, and private records. That trust depends on a simple expectation: […]

The post ChatGPT Data Leakage via a Hidden Outbound Channel in the Code Execution Runtime appeared first on Check Point Research.