Explorer

OpenAI's ChatGPT Search Can Be Manipulated With Prompt Injection & Hidden Text To Produce Favourable Results?

OpenAI's search engine-powered feature could be susceptible to manipulation tactics.

If you are someone who trusts AI chatbots blindly then you might be in for a surprise. ChatGPT Search is apparently vulnerable to manipulation by website developers and owners. According to a report by the Guardian, the feature that lets AI chatbot search for information on the web can be altered with the help of hidden text on websites.

The hidden text's prime goal is to feed incorrect and deceptive information to the chatbot. It also feeds prompt injections to the AI model.

ALSO READ | Best Smartphones Of 2024: Samsung Galaxy S24 Ultra, Vivo X Fold 3 Pro, More

ChatGPT Search's Vulnerability Explained

On Tuesday, The Guardian reported that OpenAI's search engine-powered feature could be susceptible to manipulation tactics. To test its vulnerability, the publication created a fake product page, including specifications and reviews. Initially, with no alterations, ChatGPT provided a “positive but balanced assessment” of the product. However, the experiment took a concerning turn when hidden text was added to the webpage.

Hidden text refers to content embedded in a webpage's code that remains invisible to users viewing the page in a browser. Techniques such as HTML or CSS styling are commonly used to conceal this text, which can still be detected by inspecting the source code or utilizing web scraping tools—methods often employed by search engines.

When the publication inserted hidden text filled with fake positive reviews, ChatGPT’s responses became noticeably more favourable, overlooking the product's obvious flaws. Additionally, prompt injections—commands designed to influence AI behaviour in unintended ways—were employed. According to the report, these injections, combined with hidden text, could potentially mislead users by manipulating the chatbot’s output. 

The report further claimed that prompt injections in hidden text could also be used to return malicious code from the websites. If OpenAI does not focus on this and improve this loophole then a number of websites can use similar techniques to get favourable responses on their products and services with the aim of deceiving users in various ways.

Read more
Sponsored Links by Taboola

Top Headlines

Dense Smog Shrouds Delhi As AQI Remains 'Severe Plus'; Near-Zero Visibility Disrupts Flights
Dense Smog Shrouds Delhi As AQI Remains 'Severe Plus'; Near-Zero Visibility Disrupts Flights
Trump Condemns 'Antisemitic Attack' At Australia's Bondi Beach That Killed 15, Injured 40
'Antisemitic Attack': Trump Condemns Bondi Beach Shooting That Killed 15
Hong Kong Media Tycoon Jimmy Lai Convicted Under National Security Law, Could Face Life Imprisonment
Hong Kong Media Tycoon Jimmy Lai Convicted Under National Security Law, Could Face Life Imprisonment
‘Never Allowed In India’: India Refutes Bangladesh’s Terror Claim After Envoy Is Summoned
‘Never Allowed In India’: India Refutes Bangladesh’s Terror Claim After Envoy Is Summoned

Videos

Breaking: BJP Questions Congress Over Vote Theft Claims, Demands Proof
Air Pollution: Dense Fog Triggers Multiple Road Accidents in Greater Noida and Rewari
Banaskantha Violence: Mob Attacks Forest Team, 47 Cops and Officials Injured
Delhi Air Pollution: Delhi Turns Gas Chamber as AQI Crosses 550, GRAP-IV Restrictions Enforced Across NCR
Breaking: ED Busts UP Cough Syrup Smuggling Network, ₹400 Crore Fake Firms Scam Uncovered

Photo Gallery

25°C
New Delhi
Rain: 100mm
Humidity: 97%
Wind: WNW 47km/h
See Today's Weather
powered by
Accu Weather
Embed widget