Laughing Hyena
  • Home
  • Hyena Games
  • Esports
  • NFT Gaming
  • Crypto Trends
  • Game Reviews
  • Game Updates
  • GameFi Guides
  • Shop
Tag:

Hijack

ChatGPT quality declines
Gaming Gear

Compromised Google Calendar invites can hijack ChatGPT’s Gmail connector and leak emails

by admin September 13, 2025



A security researcher has demonstrated how a malicious Google Calendar invite can prompt-inject ChatGPT and coax it into leaking private emails once Google connectors are enabled. In a post onX, on September 12, Eito Miyamura outlines a simple scenario: An attacker sends a calendar invitation seeded with instructions and waits for the target to engage with ChatGPT and ask it to perform an action. ChatGPT then reads the booby-trapped event and follows orders to search Gmail and follow sensitive details. “All you need? The victim’s email address,” Miyamura claims.

In mid-August, OpenAI introduced native Gmail, Google Calendar, and Google Contacts connectors in ChatGPT, initially to Pro users and subsequently to Plus, with release notes stating that the assistant can automatically reference these sources in chat after authorization. That means a casual, “What’s on my calendar today?” can pull data directly from your Google account without you explicitly choosing a source each time.

OpenAI’s help center goes further, spelling out that automatic use is enabled for these Google connectors once enabled, and that you can turn it off in ChatGPT’s settings if you prefer to select sources manually. The same page explains that custom connectors using the Model Context Protocol are intended for developers and are not identified by OpenAI. This is particularly important to note because Miyamura frames the attack in the context of recent MCP support and rapidly growing tool ecosystems.


You may like

We got ChatGPT to leak your private email data 💀💀All you need? The victim’s email address. ⛓️‍💥🚩📧On Wednesday, @OpenAI added full support for MCP (Model Context Protocol) tools in ChatGPT. Allowing ChatGPT to connect and read your Gmail, Calendar, Sharepoint, Notion,… pic.twitter.com/E5VuhZp2u2September 12, 2025

What’s happening under the hood is indirect prompt injection. The attacker’s instructions are hidden inside data that the assistant is allowed to read — in this case, the text of a calendar event. In August, researchers demonstrated how a compromised invite could steer Google’s Gemini into controlling smart-home devices and leaking information, work that has since been documented in both security write-ups and a paper titled “Invitation Is All You Need.” The technicalities differ by platform, but the core risk is the same once an assistant is permitted to read compromised calendar content.

Ultimately, nothing happens unless you first connect Gmail and Calendar inside ChatGPT, and the assistant’s behavior still depends on the policies and prompts OpenAI applies when it ingests third-party content. Documentation also notes that you can disconnect sources or disable automatic use, which limits opportunities for a compromised event to influence a routine chat.

If you’re concerned, the most effective fix is on the Google side. Change Google Calendar’s “Automatically add invitations” setting so only invitations from known senders or those you accept appear on your calendar, and consider hiding declined events. Google’s support pages walk through those options in detail, and Google Workspace administrators can set safer defaults organization-wide.

The broader takeaway from this isn’t that ChatGPT or Gmail has been “hacked,” but that tool-using AI is unusually susceptible to hostile instructions lurking in the data you let it read. The connectors that make these assistants somewhat useful also expand the attack surface to calendars and inboxes. Until the industry ships stronger, default-on defenses against indirect prompt injection, the safest course of action is to be conservative about which accounts you connect and, in this specific scenario, lock down your calendar so strangers cannot plant surprises.

Get Tom’s Hardware’s best news and in-depth reviews, straight to your inbox.

Follow Tom’s Hardware on Google News, or add us as a preferred source, to get our up-to-date news, analysis, and reviews in your feeds. Make sure to click the Follow button!





Source link

September 13, 2025 0 comments
0 FacebookTwitterPinterestEmail
Memecoin
NFT Gaming

Memecoin Frenzy: Hackers Hijack Adele, Future, Other Celebrities Instagram Account To Push Dubious FREEBANDZ Token

by admin August 23, 2025


Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure

In a rather shocking development, hackers took over the Instagram accounts of some music celebrities to promote a fraudulent Solana-based memecoin. This incident comes after another high-profile market controversy involving Kanye West’s YZY token.

Celebrity Profiles Hacked, Memecoin Crashes After $900,000 Pump

In an X post on Friday, popular media outlet NFR Podcasts reported that Instagram accounts belonging to the late Michael Jackson, as well as artists Adele, Tyla, and Future, had been simultaneously compromised to promote a scam memecoin. The fraudulent posts shared across the accounts featured an image of Future holding an oversized coin branded FREEBANDZ — the same name as the rapper’s music label and clothing brand. The imagery appeared designed to create a false sense of endorsement and legitimacy for the token.

Although the posts have since been removed, Future’s Instagram account was ultimately disabled. And as of now, none of the affected parties has issued public statements regarding the incident. According to data from Dexscreener, the token briefly surged upon launch, reaching a market cap of nearly $900,000 before collapsing to around $15,000 in about 30 minutes.

Michael Jackson, Future, Tyla, and Adele’s Instagram accounts were hacked simultaneously pic.twitter.com/MCMPcU41Ww

— NFR Lite (@NFR_Lite) August 22, 2025

On-chain data suggests the scam’s orchestrator may be linked to a wallet address ending in zcmPHn, which dumped 700 million FREEBANDZ tokens, securing 251.41 SOL valued at approximately $45,600. Another wallet, ending in bTp, also walked away with an additional $13,300 after swapping 85.6 million FREEBANDZ.

The rapid pump-and-dump underscores the risks surrounding memecoins and the ease with which hackers exploit high-profile names to lure in unsuspecting investors. In late 2024, for instance, rapper Drake’s X account was also compromised to promote a Solana memecoin called $ANITA, which generated around $5 million in trading volume before collapsing.

Meme coins remain largely unregulated, and the SEC has previously clarified that most do not qualify as securities, likening them instead to speculative collectibles with no underlying promise of profit. This regulatory gap has made memecoins fertile ground for these kinds of scams, highlighting the need for caution among traders.

Kanye West’s YZY Under Scrutiny For Insider Trading

In other developments, rap legend Kanye West has become embroiled in another memecoin controversy. According to Bitcoinist, the YZY token skyrocketed to a $3 billion market cap at launch before plunging more than 70% within hours.

On-chain data shows several wallets were pre-funded and primed to buy immediately after Ye’s announcement, fueling suspicions of insider trading. Notably, 13 wallets collectively walked away with $24 million in profits from the YZY frenzy. The token now trades at $0.705, with a fully diluted valuation (FDV) of $699.3 million.

Total crypto market cap valued at $3.95 trillion on the daily chart | Source: TOTAL chart on Tradingview.com

Featured image from ABC News, chart from Tradingview

Editorial Process for bitcoinist is centered on delivering thoroughly researched, accurate, and unbiased content. We uphold strict sourcing standards, and each page undergoes diligent review by our team of top technology experts and seasoned editors. This process ensures the integrity, relevance, and value of our content for our readers.





Source link

August 23, 2025 0 comments
0 FacebookTwitterPinterestEmail

Categories

  • Crypto Trends (1,098)
  • Esports (800)
  • Game Reviews (772)
  • Game Updates (906)
  • GameFi Guides (1,058)
  • Gaming Gear (960)
  • NFT Gaming (1,079)
  • Product Reviews (960)

Recent Posts

  • This 5-Star Dell Laptop Bundle (64GB RAM, 2TB SSD) Sees 72% Cut, From Above MacBook Pricing to Practically a Steal
  • Blue Protocol: Star Resonance is finally out in the west and off to a strong start on Steam, but was the MMORPG worth the wait?
  • How to Unblock OpenAI’s Sora 2 If You’re Outside the US and Canada
  • Final Fantasy 7 Remake and Rebirth finally available as physical double pack on PS5
  • The 10 Most Valuable Cards

Recent Posts

  • This 5-Star Dell Laptop Bundle (64GB RAM, 2TB SSD) Sees 72% Cut, From Above MacBook Pricing to Practically a Steal

    October 10, 2025
  • Blue Protocol: Star Resonance is finally out in the west and off to a strong start on Steam, but was the MMORPG worth the wait?

    October 10, 2025
  • How to Unblock OpenAI’s Sora 2 If You’re Outside the US and Canada

    October 10, 2025
  • Final Fantasy 7 Remake and Rebirth finally available as physical double pack on PS5

    October 10, 2025
  • The 10 Most Valuable Cards

    October 10, 2025

Newsletter

About me

Welcome to Laughinghyena.io, your ultimate destination for the latest in blockchain gaming and gaming products. We’re passionate about the future of gaming, where decentralized technology empowers players to own, trade, and thrive in virtual worlds.

Recent Posts

  • This 5-Star Dell Laptop Bundle (64GB RAM, 2TB SSD) Sees 72% Cut, From Above MacBook Pricing to Practically a Steal

    October 10, 2025
  • Blue Protocol: Star Resonance is finally out in the west and off to a strong start on Steam, but was the MMORPG worth the wait?

    October 10, 2025

Newsletter

@2025 laughinghyena- All Right Reserved. Designed and Developed by Pro


Back To Top
Laughing Hyena
  • Home
  • Hyena Games
  • Esports
  • NFT Gaming
  • Crypto Trends
  • Game Reviews
  • Game Updates
  • GameFi Guides
  • Shop

Shopping Cart

Close

No products in the cart.

Close