ChatGPT for Google Sheets Exfiltrates Workbooks
Summary
The article documents a vulnerability in the ChatGPT for Google Sheets extension that enables data exfiltration and phishing overlays via indirect prompt injection. It details the attack chain, potential impact across user workbooks, and emphasizes responsible disclosure and the need for mitigations and governance controls.