Explorer

OpenAI's ChatGPT Search Can Be Manipulated With Prompt Injection & Hidden Text To Produce Favourable Results?

OpenAI's search engine-powered feature could be susceptible to manipulation tactics.

If you are someone who trusts AI chatbots blindly then you might be in for a surprise. ChatGPT Search is apparently vulnerable to manipulation by website developers and owners. According to a report by the Guardian, the feature that lets AI chatbot search for information on the web can be altered with the help of hidden text on websites.

The hidden text's prime goal is to feed incorrect and deceptive information to the chatbot. It also feeds prompt injections to the AI model.

ALSO READ | Best Smartphones Of 2024: Samsung Galaxy S24 Ultra, Vivo X Fold 3 Pro, More

ChatGPT Search's Vulnerability Explained

On Tuesday, The Guardian reported that OpenAI's search engine-powered feature could be susceptible to manipulation tactics. To test its vulnerability, the publication created a fake product page, including specifications and reviews. Initially, with no alterations, ChatGPT provided a “positive but balanced assessment” of the product. However, the experiment took a concerning turn when hidden text was added to the webpage.

Hidden text refers to content embedded in a webpage's code that remains invisible to users viewing the page in a browser. Techniques such as HTML or CSS styling are commonly used to conceal this text, which can still be detected by inspecting the source code or utilizing web scraping tools—methods often employed by search engines.

When the publication inserted hidden text filled with fake positive reviews, ChatGPT’s responses became noticeably more favourable, overlooking the product's obvious flaws. Additionally, prompt injections—commands designed to influence AI behaviour in unintended ways—were employed. According to the report, these injections, combined with hidden text, could potentially mislead users by manipulating the chatbot’s output. 

The report further claimed that prompt injections in hidden text could also be used to return malicious code from the websites. If OpenAI does not focus on this and improve this loophole then a number of websites can use similar techniques to get favourable responses on their products and services with the aim of deceiving users in various ways.

Top Headlines

‘Qurbani Will Continue’: Humayun Kabir Stirs Controversy Over Cow Slaughter Ahead Of Bakrid
‘Qurbani Will Continue’: Humayun Kabir Stirs Controversy Over Cow Slaughter Ahead Of Bakrid
Tamil Nadu Cabinet Expansion: Vijay Inducts Srinath, Wilson Among 23 Ministers In TVK Govt; Full List Here
Tamil Nadu Cabinet Expansion: Vijay Inducts Srinath, Wilson Among 23 Ministers In TVK Govt; Full List Here
'Bibi’s Hair Was On Fire’: Trump And Netanyahu Clash Over Iran Strategy In Tense Phone Call
'Bibi’s Hair Was On Fire’: Trump And Netanyahu Clash Over Iran Strategy In Tense Phone Call
Delhi-NCR Cab And Auto Strike Begins, Commuters May Face Trouble For 3 Days
Delhi-NCR Cab And Auto Strike Begins, Commuters May Face Trouble For 3 Days

Videos

Breaking: Family alleges denial of justice in Twisha case, seeks High Court intervention, raises claims
Mumbai violence: 15 arrested after attack on police, FIR against 150 people, probe on
Weather Alert: North India heatwave intensifies, Delhi reports first heat stroke case at RML Hospital IMD
BREAKING: Mumbai Bandra Encroachment Drive Enters Day 3, 80% Illegal Slums Demolished
BREAKING: Twisha Sharma Case Deepens as Family Alleges Influence, Bail and Phone Call Controversy

Photo Gallery

25°C
New Delhi
Rain: 100mm
Humidity: 97%
Wind: WNW 47km/h
See Today's Weather
powered by
Accu Weather
Embed widget