ChatGPT Search Feature Reportedly Vulnerable to Prompt Injection and Hidden Text Manipulation

ChatGPT Search’s responses can reportedly be influenced by website owners by using hidden texts.

Advertisement
Written by Akash Dutta, Edited by Siddharth Suvarna | Updated: 27 December 2024 17:17 IST
Highlights
  • Prompt injection is an input that can alter an AI model’s behaviour
  • OpenAI Search reportedly ignored negative reviews on a product page
  • The AI firm rolled out the feature to all users globally last week

ChatGPT Search was known as SearchGPT during the testing phase

Photo Credit: OpenAI

ChatGPT Search, a feature that lets the artificial intelligence (AI) chatbot look for information on the web, is reportedly vulnerable to manipulation by website developers and owners. As per the report, OpenAI's search engine's behaviour can be altered using hidden text on the website. This text is said to be used to feed incorrect and deceptive information to the AI, and more concerningly, to feed prompt injections to the AI model. Notably, OpenAI released its Search feature to all users last week.

ChatGPT Search Vulnerable to Manipulation

The Guardian reported on Tuesday that OpenAI's native search engine-powered feature is prone to manipulation techniques. The publication tested the tool by creating a fake product page, complete with specifications and reviews. In the first instance, the page was left as it was, and ChatGPT was able to deliver a “positive but balanced assessment.” However, things took a darker turn once the publication added hidden text to the webpage.

Notably, hidden text in websites refers to content that is added to a webpage's code but is not visible to users when they see the front end of the page via a browser. Such text is commonly hidden using HTML or CSS techniques. Such text can be found by inspecting the webpage's source code or by using web scraping tools. The latter is typically used by search engines.

Advertisement

After adding hidden text that included a large number of fake positive reviews of the product, ChatGPT's responses also became more positive and it started ignoring its obvious flaws. The publication also used prompt injections, which are inputs for AI systems to alter their behaviour in a way that was not intended by the developers. Such prompt injections as hidden text could reportedly be used to command the OpenAI chatbot to further deceive the user.

Additionally, the report claimed that prompt injections in hidden text could also be used to return malicious code from the websites. If this goes unchecked, many websites can use similar techniques to either get favourable responses about their products and services or try to deceive users in various ways, the publication claimed.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. GTA 6 PC System Requirements: Anticipated Specs, System Recommendations
  1. Engineers Turn Lobster Shells Into Robot Parts That Lift, Grip and Swim
  2. Strongest Solar Flare of 2025 Sends High-Energy Radiation Rushing Toward Earth
  3. Raat Akeli Hai: The Bansal Murders OTT Release: When, Where to Watch the Nawazuddin Siddiqui Murder Mystery
  4. Bison Kaalamaadan Is Now Streaming: Know All About the Tamil Sports Action Drama
  5. Pharma OTT Release: When, Where to Watch the Malayalam Medical Thriller Web Series
  6. Apple, Google and Samsung Reportedly Challenge India's New Proposal on Always-On Smartphone Location Tracking
  7. SpaceX Launches 28 New Starlink Satellites as Falcon 9 Hits Another Milestone
  8. Misaligned Exoplanet Is Challenging How We Think Solar Systems Form
  9. Indian Dance Mudras May Revolutionise Robotic Hand Control, UMBC Study Shows
  10. Mission: Impossible – The Final Reckoning Now Streaming Online: Watch Ethan Hunt's Final Quest on This OTT Platform
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.