{"data":{"id":"1e6224e8-3ce3-41df-979c-17f5a0786d6e","title":"A Flaw in ChatGPT’s Mac App Could Have Let Hackers Grab Sensitive Data","summary":"Researchers at the Objective-See Foundation found a flaw in the macOS version of OpenAI's ChatGPT app that could let an attacker take over the app on a victim's computer. The bug let unprivileged code pass signature checks by routing a request through a trusted script interpreter, exposing chat logs, stored data and browser sessions. OpenAI acknowledged the flaw and fix in its system change log on September 25.","solution":"OpenAI patched the flaw, as acknowledged in its system change log on September 25. The source does not give a fixed version number or further mitigation steps.","labels":["security","industry"],"sourceUrl":"https://www.wired.com/story/a-flaw-in-chatgpts-mac-app-could-have-let-hackers-grab-sensitive-data/","publishedAt":"2026-10-02T09:45:00.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"medium","attackType":["other"],"issueType":"news","affectedPackages":null,"affectedPackageNames":null,"affectedVendors":["OpenAI","Meta"],"affectedVendorsRaw":["ChatGPT","ChatGPT macOS app","Meta Muse AI assistant","OpenAI Dots AI assistant"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":null,"headlinePromptVersion":null,"cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"epssCheckedAt":null,"kevDateAdded":null,"advisoryAliases":null,"affectedPackagesSource":null,"affectedPackagesCheckedAt":null,"patchAvailable":null,"disclosureDate":"2026-10-02T09:45:00.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"trivial","impactType":["confidentiality","integrity"],"aiComponentTargeted":"agent","llmSpecific":true,"classifierConfidence":0.9,"researchCategory":null,"atlasIds":null}}