flâneur — a map of the web's best reading

Data Exfiltration from Slack AI via indirect prompt injection

promptarmor.substack.com · 1,610 words · saved by 1 readers

Authors: PromptArmor

Data Exfiltration from Slack AI via indirect prompt injection Authors: PromptArmor PromptArmor Aug 20, 2024 24 4 Share This vulnerability can allow attackers to steal anything a user puts in a private Slack channel by manipulating the language model used for content generation. This was responsibly disclosed to Slack (more details in Responsible Disclosure section at the end). In this scenario, we display how, via Slack AI, an attacker with access to Slack can exfiltrate data in private channels they are not a part of. [EDIT for clarity: An attacker can prompt Slack AI to exfil data from priva

Explore this link on the map →

saved by

related reading