| 講演抄録/キーワード |
| 講演名 |
2024-03-22 12:35
GPTsの公開秘密 ○久保佑介(NTTコミュニケーションズ)・谷 知亮(NTTセキュリティ)・渡邉龍星(エヌ・エフ・ラボラトリーズ/早大)・若井琢朗・利川悠斗(早大)・森 達哉(早大/NICT/理研) ICSS2023-91 |
| 抄録 |
(和) |
OpenAIは2023年11月にGPTsというサービスを公開した. 任意の機能を持つChatGPTを容易に作成できる一方で, カスタムGPTの作成に用いた内容がPrompt Leakingという攻撃手法により漏えいする問題がGPTsには存在する.
本研究では, 公開されているカスタムGPTを大規模に調査し, Prompt Leakingの脅威の実態を明らかにした. また, カスタムGPTを分析する過程で, Prompt Leaking対策を回避する3つの汎用的な攻撃手法を発見した.
本稿では, GPTsにおけるPrompt Leakingという脅威の啓発を目的として, 調査結果と発見した攻撃手法の詳細および対策について説明する. |
| (英) |
OpenAI released a service called GPTs in November 2023. Creating GPTs with arbitrary functionalities is straightforward; however, GPTs face a vulnerability known as Prompt Leaking, where the data used in their development can be leaked through specific attack prompts.
In this study, we conducted a large-scale survey of publicly available GPTs to clarify the reality of the Prompt Leaking threat. In the process of analyzing the GPTs, we also discovered three generic attack methods to evade Prompt Leaking countermeasures.
In this paper, we describe the results of our survey, the details of the attack methods we discovered, and countermeasures to raise awareness of the Prompt Leaking threat in GPTs. |
| キーワード |
(和) |
GPTs / Prompt Leaking / / / / / / |
| (英) |
GPTs / Prompt Leaking / / / / / / |
| 文献情報 |
信学技報, vol. 123, no. 448, ICSS2023-91, pp. 160-165, 2024年3月. |
| 資料番号 |
ICSS2023-91 |
| 発行日 |
2024-03-14 (ICSS) |
| ISSN |
Online edition: ISSN 2432-6380 |
著作権に ついて |
技術研究報告に掲載された論文の著作権は電子情報通信学会に帰属します.(許諾番号:10GA0019/12GB0052/13GB0056/17GB0034/18GB0034) |
| PDFダウンロード |
ICSS2023-91 |
|