According to research by cybersecurity firm Veriti, this vulnerability has already been weaponized in numerous real-world attacks, demonstrating how threat actors can leverage even moderate security flaws to compromise sophisticated AI systems. Cyber Security News is a Dedicated News Platform For Cyber News, Cyber Attack News, Hacking News & Vulnerability Analysis. The exploitation trend shows a surge in January 2025, followed by a decrease in February and March, possibly indicating attackers’ shifting tactics or response to security measures. By manipulating the ‘url’ parameter, attackers can initiate arbitrary requests, potentially bypassing security controls. Kaaviya is a Security Editor and fellow reporter with Cyber Security News. The exploitation of CVE-2024-27564 serves as a stark reminder that even medium-severity vulnerabilities can pose significant risks when weaponized by determined attackers. Attackers are actively exploiting a Server-Side Request Forgery (SSRF) vulnerability in OpenAI’s ChatGPT infrastructure. She is covering various cyber security incidents happening in the Cyber Space. The vulnerability, identified as CVE-2024-27564, has become a significant threat despite its medium severity classification. As disclosed in a recent report, attackers have attempted to misuse ChatGPT for harmful activities in more than 20 incidents since early 2024.
This Cyber News was published on cybersecuritynews.com. Publication date: Tue, 18 Mar 2025 12:40:13 +0000