Close Menu
  • Academy
  • Events
  • Identity
  • International
  • Inventions
  • Startups
    • Sustainability
  • Tech
  • Español
    • Português
What's Hot

Music mogul “Diddy” faces allegations of abuse on the first day of the US | Court News

House Republicans are proposing $5 billion for private school vouchers

Heavy gunfire, clash in Tripoli, Libya after killing militia leader | United Nations News

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Academy
  • Events
  • Identity
  • International
  • Inventions
  • Startups
    • Sustainability
  • Tech
  • Español
    • Português
Fyself News
Home » Hackers exploit ChatGpt vulnerabilities to target US government and financial companies
Tech

Hackers exploit ChatGpt vulnerabilities to target US government and financial companies

userBy userMarch 19, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Just a year after Openai’s internal AI secrets were stolen in a data breach, hackers are now exploiting a year-old security flaw with ChatGpt. According to a Security Week report, the vulnerabilities are being used to target financial institutions and US government agencies.

Cybersecurity company Veriti has flagged the surge in attacks, warning that cybercriminals are scanning the internet for weaknesses.

The vulnerability, CVE-2024-27564, is associated with a flaw in the PictureProxy.php file. An attacker can manipulate URL parameters and force the system to force an unauthorized request. What’s your biggest concern? No authentication is required. This means that bad actors can be abused without requiring their credentials.

“Hackers exploited a vulnerability in ChatGpt’s PictureProxy.php file, allowing over 10,000 attacks from one IP in a week.

Known weaknesses, now real threats

The issue was first reported in September 2023 and was published a year ago. Since then, proof of concept (POC) exploit code has been widely available, providing hackers with ready-made tools to chase unearned systems.

At least one threat actor has already added this exploit to its arsenal, scanning the internet for vulnerable applications. In just a week, Veriti recorded over 10,000 attack attempts from a single IP address. The company warns that security misconceptions could put one in three target organizations at serious risk.

Who is being targeted?

The main goals are US government agencies and financial institutions, but that’s not just a domestic issue. Banks and healthcare companies in Germany, Thailand, Indonesia, Colombia and the UK are also crossing.

“Banks and fintech companies rely on AI-driven services and API integrations, making them vulnerable to SSRF attacks that access internal resources or steal sensitive data,” Veriti said.

Why is this important?

This is considered a medium vulnerability, but hackers treat it as an open door. Attackers don’t always need the biggest, flashiest exploits. They only need one weakness that is often overlooked to gain access.

Organizations should immediately patch affected systems, check firewalls and security settings, and monitor logs of suspicious activity.

Veriti is frank. “Ignoring the vulnerability of moderate radicalism is a costly mistake, especially for high-value financial organizations.”

The whole picture

Cybercriminals don’t need new vulnerabilities if the old ones aren’t sitting yet. The latest wave of this attack is wake-up calls for businesses that rely on AI-driven services. Security must be proactive, not reactive, as hackers are not waiting.


Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleDisputes between parents groups in the Ohio School District over gender pronoun policy
Next Article The leaked black busta chat suggests that Russian officials will help the leader escape from Armenia
user
  • Website

Related Posts

Google launches the AI ​​Futures Fund and invests in the next wave of AI startups

May 12, 2025

AB DAO and AB Charity Foundation work together to build trustworthy infrastructure and promote global philanthropy

May 12, 2025

Top tech startup funding news for today, May 12, 2025

May 12, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Music mogul “Diddy” faces allegations of abuse on the first day of the US | Court News

House Republicans are proposing $5 billion for private school vouchers

Heavy gunfire, clash in Tripoli, Libya after killing militia leader | United Nations News

Google launches the AI ​​Futures Fund and invests in the next wave of AI startups

Trending Posts

Music mogul “Diddy” faces allegations of abuse on the first day of the US | Court News

May 12, 2025

Heavy gunfire, clash in Tripoli, Libya after killing militia leader | United Nations News

May 12, 2025

Trump Administration welcomes 59 South Africans as refugees to the US | Donald Trump News

May 12, 2025

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Google launches the AI ​​Futures Fund and invests in the next wave of AI startups

AB DAO and AB Charity Foundation work together to build trustworthy infrastructure and promote global philanthropy

Top tech startup funding news for today, May 12, 2025

Israeli startup Classiq raises $110 million to become “microsoft in quantum computing.”

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.