We got ChatGPT to leak your private email data 💀💀
All you need? The victim's email address. ⛓️💥🚩📧
On Wednesday, @OpenAI added full support for MCP (Model Context Protocol) tools in ChatGPT. Allowing ChatGPT to connect and read your Gmail, Calendar, Sharepoint, Notion, and more, invented by @AnthropicAI
But here's the fundamental problem: AI agents like ChatGPT follow your commands, not your common sense.
And with just your email, we managed to exfiltrate all your private information.
Here's how we did it:
1. The attacker sends a calendar invite with a jailbreak prompt to the victim, just with their email. No need for the victim to accept the invite.
2. Waited for the user to ask ChatGPT to help prepare for their day by looking at their calendar
3. ChatGPT reads the jailbroken calendar invite. Now ChatGPT is hijacked by the attacker and will act on the attacker's command. Searches your private emails and sends the data to the attacker's email.
For now, OpenAI only made MCPs available in "developer mode", and requires manual human approvals for every session, but decision fatigue is a real thing, and normal people will just trust the AI without knowing what to do and click approve, approve, approve.
Remember that AI might be super smart, but can be tricked and phished in incredibly dumb ways to leak your data.
ChatGPT + Tools poses a serious security risk
8 months ago, exo was a hackathon project. Today it's front page of The Wall Street Journal @WSJ.
We're a real company now (I guess..?), we raised some money from a few investors like @naval, hit #1 trending on github, published at ICML, shipped an enterprise product, and we're hiring.
Our mission at @exolabs is simple. We don't want AI to be controlled by a few companies. We're making it more distributed.
dYdX v3 Product Sunset 🌅
It’s been fascinating to follow dYdX’s journey, which has been a major inspiration for building X10. With v3 shutting down at the end of October, there is still $140M in TVL — a testament to the product’s value.
We know that many traders would prefer to continue using dYdX v3, but with its closure, that won't be possible soon. That's why we're inviting dYdX users to try out https://t.co/hJw5J99Lpm, where you can enjoy the same StarkEx architecture with 0% fees.
We offer the enhanced performance (latency <20ms), full compatibility for your v3 algorithms, and exclusive benefits. We’re confident that if you enjoyed trading on dYdX v3, you’ll love X10 even more!
On October 8, we took a snapshot of L1 addresses active on dYdX v3 in the past 6 months. These wallets are now on our allowlist for X10 Closed Mainnet, with 0% fees during this period and access to rewards programs.
Learn more about the offer here: https://t.co/9wOCvNLkTf
Know someone who qualifies? Share this tweet with them!
1/14 🪢 Introducing Musubi -- Chainless Swaps
Swap assets across Ethereum with your fingerprint without leaving your Kinto-insured wallet.
It unties the fragmented liquidity and unites Ethereum once again.
The Research team I have created and lead is no longer part of Matter labs. It’s one of the most capable and productive teams working on rollup-related problems and blockchain-related research, more broadly. https://t.co/DV3JXiRnZH
"Exo's use of Llama 405B and consumer-grade devices to run inference at scale on the edge shows that the future of AI is open source and decentralized." - @mo_baioumy https://t.co/MFejDKgHIU
Radicle 1.0 is out 👾 https://t.co/2hCyvMOaRu
This release marks the culmination of years of trial & error and exploration into uncharted territory. Few teams have attempted something similar, and even fewer have made it this far.
Now that authoritarianism and surveillance tech have become the new normal, we’re doing something different.
It took a long time, but we didn’t cut corners; we chose the path that felt right to us, embedding our cypherpunk values into every step of development.
We’re now entering a new era for @radicle and I couldn’t be more excited 🎆
You don't need to be an AI expert to run an autonomous AI agent.
With Pearl, you can quickly launch an AI agent and get the chance to earn OLAS rewards as it runs.
Setup takes just a few minutes.
Get the app today: https://t.co/h6xq5qId6s
We’re looking for our 3rd partner at Version One
At @VersionOneVC, we are strong believers that early-stage investing is best done by small teams that are aligned around a differentiated investment thesis and are investing with high conviction. The partnership is currently @angelatytran and myself. We’re on our 4th fund and 2nd opportunity fund, and we are looking to add a third partner over the course of the next year or so.
We like to invest at the edges, not in the mainstream. We like to lead, not follow. We are comfortable betting on founders without (obvious) pedigree. We like to back mission-driven founders that are early in new areas. We love investing in people, not necessarily in existing traction and numbers. And we’re happy to back first-time entrepreneurs that nobody has ever backed.
We’ve got a strong conviction in the type of founders we like to invest in…and we’re just as clear as to the type of partner we are looking for as our 3rd partner:
- You have some investing experience, either as a solo GP, junior member of a larger firm and/or frequent angel investor.
- You are a generalist, but you are more interested in the edges of technology markets (crypto, climate, AI, syn bio, deep tech, AR/VR) than the mainstream.
- You want to be a great partner to founders, asking good questions but not always shouting out the answers.
- You’re an independent thinker and always look for the contrarian angle to the mainstream opinion.
- You’re in the flow connecting with people – either online or in person. You learn from others, and they learn from you, which makes your network sticky.
- You’re hungry and want to make your mark on the VC business, acknowledging that this is a decade+ long endeavor.
What does not matter:
- Your degrees
- Your location (but a larger tech ecosystem is a plus)
What we’re not looking for:
- Transactional people: we thrive to have meaningful connections with both our founders and between ourselves and want to keep it this way.
- Candidates that see this position as a springboard to joining a larger fund (if that is your goal, you should apply at such a fund right now).
- Candidates that rely on a playbook (there isn’t one in early-stage investing!)
There is no formal application process for this role. Please find us on the Internet and reach out in the most meaningful way that reflects what we are looking for. We look forward to meeting you.
There are tons of examples of competitors helping me a long the way, I can’t possibly list and thank them all, but here are some of them:
- @ilblackdragon and @AlexSkidanov: Awesome at being a sounding board and spotting the 'birthday problem' bug in the xor hasher. The hash is back, but now with lattice math 🤯!!!
- @dominic_w : Might not remember, but way back in super early 2018, he hopped onto a panel with me, putting me in the spotlight.
- @zmanian: The L1 founder therapist you call when everything's on fire and you need to freak out.
- @dankrad: He shed light on kzg commitments and their role in light client sampling, sparking some cool turbine upgrades. Our debate on light client security reshaped my thoughts on protecting L1 users.
- @VitalikButerin: A role model for L1 founders and a wizard at researching the next big thing months in advance.
- @toghrulmaharram, @colludingnode: In a parallel universe, I'd totally be your teammate.
Wishing these amazing folks and their communities stellar holidays and a fabulous new year! 🎉🥳🎊🎁🍾
A year ago we started our journey to redefine global payments by leveraging blockchain rails and stablecoin liquidity across regions.
Today we are happy to announce our Seed funding and a due launch.
Here's our CEO's piece on WHY we started Due.
https://t.co/yTJcJi34Dd
Brace yourselves for Starknet's upcoming Mainnet 0.12 Quantum Leap launch this summer.
The imminent tech fusion of StarkWare and @class_lambda brilliance is set to skyrocket our capabilities into a new speed dimension. 🎆🚀
read on anon!
@LidoFinance's proposed Staking Router is an architecture for the allocation of stake across plug and play modules that make pools of validators available for use. Its core ambition is found at the intersection of the simplicity, utility, practicality, and sustainability.
/1
Was waiting for this one more thing from @itamarl as if @argentHQ weren’t already doing enough amazing stuff but it was definitely worth it. Check it out