[CVE-2024-9143] DOMPurify绕过、提示注入ChatGPT到shell、AI模糊测试发现——白帽黑客新闻汇总
yeswehack.com | 博客 | CVE-2024-9143 | #ai-security | #prompt-injection | #llm-security | #openssl | #oss-fuzz | #dompurify | #roundup
摘要
安全研究汇总:DOMPurify多个默认配置(≤3.1.2版本)绕过、对容器化ChatGPT提示注入获取shell,以及Google借助AI生成模糊测试目标在OSS-Fuzz中发现26个漏洞(含OpenSSL CVE-2024-9143)等。
- 发布时间
- 收录时间
Skip to content