Top stories.
- OpenAI fixes zero-click flaw in ChatGPT's Deep Research agent.
- CISA shares details on malware targeting Ivanti flaws.
- WatchGuard patches critical firewall flaw.
OpenAI fixes zero-click flaw in ChatGPT's Deep Research agent.
OpenAI has fixed a zero-click vulnerability in ChatGPT's Deep Research agent that could have exposed Gmail data, Infosecurity Magazine reports. Researchers at Radware discovered the flaw, explaining that "[u]nlike prior research that relied on client-side image rendering to trigger the leak, this attack leaks data directly from OpenAI’s cloud infrastructure, making it invisible to local or enterprise defenses."
Attackers could embed invisible instructions within an email before sending it to a targeted user. If the user asks ChatGPT Deep Research to analyze their emails, the AI agent will encounter the hidden instructions and follow them. In Radware's example, an attacker could send an email to an HR worker with instructions for Deep Research to find employee information and upload it to a URL.
OpenAI silently fixed the vulnerability in August, then acknowledged the flaw on September 3rd.

