A Flaw in ChatGPT’s Mac App Could Have Let Hackers Grab Sensitive Data
ChatGPT's Mac app had a vulnerability that could have exposed sensitive files. It's now patched—but shows AI software itself is a security target.

Why it matters
A recently patched flaw in OpenAI's ChatGPT Mac application demonstrates that AI consumer products are themselves attractive attack surfaces. This is distinct from AI agents' offensive capabilities; it underscores the operational security burden on vendors shipping AI clients to practitioners and enterprises.
The key facts
9 to knowChatGPT Mac app vulnerability: recently patched
Attack surface: ability to grab sensitive data from the user's machine
Vendor: OpenAI
Status: patched (no active exploitation reported)
Context: contrasts with focus on agent hacking capabilities
ChatGPT Mac app vulnerability patched
Flaw could have allowed sensitive data exfiltration
Highlights AI software as attractive attack target
Contrasts with focus on AI agents' hacking capabilities
Go to the source
Wired AIwired.com
Publisher excerpt: While the focus has been on AI agents’ hacking capabilities, a recently patched vulnerability in a ChatGPT app shows that AI software is itself an inviting—and vulnerable—target.