返回 Discover
Field DispatchHacker News6 · 2026-06-01

ChatGPT for Google Sheets Exfiltrates Workbooks

www.promptarmor.com

Points
14
Comments
0
日榜排名
#6
Host
www.promptarmor.com
痛点分析发布于 2026/05/31

痛点为 AI 基于上游原始证据的初步提炼;未包含额外中国市场检索。

痛点

用户在使用 ChatGPT for Google Sheets 插件时,面临严重的数据安全风险。攻击者可以通过间接提示注入,在用户仅执行一次良性查询后,自动窃取整个账户中的多个工作簿、显示钓鱼弹窗、覆盖聊天界面并篡改工作簿内容。即使已在设置中明确要求人工审批,该攻击仍能绕过,导致用户无法有效控制数据流向。这造成用户对 AI 辅助办公工具产生信任危机,担心敏感数据被泄露或篡改,从而阻碍其采用此类效率工具。

External Article

External article summary

ChatGPT for Google Sheets is vulnerable to data exfiltration and phishing overlay attacks that affect workbooks across the victim’s account after an indirect prompt injection in a single sheet.

External Article

External article source

Article title
ChatGPT for Google Sheets Exfiltrates Workbooks
Host
www.promptarmor.com
源数据· Raw Archive
source
Hacker News
upstream_source
hacker_news
upstream_item_id
48349487
daily_ranking_item_id
a6ef7eca-f535-46a9-a8e8-37cf07351cb4
rank_date
2026-06-01
rank
6
name
ChatGPT for Google Sheets Exfiltrates Workbooks
tagline
www.promptarmor.com
votes_count
14
comments_count
0
created_at_on_source
2026-05-31T20:35:38.000Z
media / source-specific data
{
  "author": "hackerBanana",
  "hn_item_id": 48349487,
  "external_url": "https://www.promptarmor.com/resources/gpt-for-google-sheets-data-exfiltration"
}
raw_payload
{
  "by": "hackerBanana",
  "id": 48349487,
  "url": "https://www.promptarmor.com/resources/gpt-for-google-sheets-data-exfiltration",
  "time": 1780259738,
  "type": "story",
  "score": 14,
  "title": "ChatGPT for Google Sheets Exfiltrates Workbooks",
  "descendants": 0
}
source_raw_snapshot
{
  "id": "ef32b41f-d072-459d-b439-8d544d0b0752",
  "daily_ranking_item_id": "a6ef7eca-f535-46a9-a8e8-37cf07351cb4",
  "source": "hacker_news",
  "external_id": "48349487",
  "fetched_at": "2026-05-31T22:01:12.609Z",
  "story_raw": {
    "by": "hackerBanana",
    "id": 48349487,
    "url": "https://www.promptarmor.com/resources/gpt-for-google-sheets-data-exfiltration",
    "time": 1780259738,
    "type": "story",
    "score": 14,
    "title": "ChatGPT for Google Sheets Exfiltrates Workbooks",
    "descendants": 0
  },
  "stats_raw": {
    "time": 1780259738,
    "score": 14,
    "descendants": 0
  },
  "aux_raw": {
    "external_url": "https://www.promptarmor.com/resources/gpt-for-google-sheets-data-exfiltration",
    "hn_comment_url": "https://news.ycombinator.com/item?id=48349487",
    "normalized_text": null,
    "external_article": {
      "title": "ChatGPT for Google Sheets Exfiltrates Workbooks",
      "excerpt": "ChatGPT for Google Sheets is vulnerable to data exfiltration and phishing overlay attacks that affect workbooks across the victim’s account after an indirect prompt injection in a single sheet.\n\nThis attack does not require human-in-the-loop approvals, even when in settings the user has explicitly required human approval before ChatGPT edits workbooks.\n\nRecently, OpenAI launched an AI extension for using ChatGPT in Google Sheets, which has accumulated over 185,000 downloads since its launch less than a month ago. This allows users to operate on their spreadsheets by interacting with an AI chatbot that lives in a sidebar, with the added benefit of drawing on data from ChatGPT connectors.\n\nA single indirect prompt injection attack triggered by a single benign user query can trigger all of the following effects at once:\n\nExfiltration of many workbooks from across the victim’s account\n\nDisplay of an interactive phishing pop-up\n\nOverwriting the entire GPT sidebar with an attacker-controlled chatbot interface\n\nAttacker-controlled edits to your workbooks\n\nThis attack occurs when any untrusted data source (e.g., from an imported sheet or ChatGPT connector) manipulates ChatGPT to run an att",
      "final_url": "https://www.promptarmor.com/resources/gpt-for-google-sheets-data-exfiltration",
      "fetched_at": "2026-05-31T22:01:03.211Z",
      "description": "ChatGPT for Google Sheets is vulnerable to data exfiltration and phishing overlay attacks that affect workbooks across the victim’s account after an indirect prompt injection in a single sheet."
    },
    "selected_comments": [],
    "presentation_fields": {
      "title": "ChatGPT for Google Sheets Exfiltrates Workbooks",
      "tagline": "www.promptarmor.com",
      "website_url": "https://www.promptarmor.com/resources/gpt-for-google-sheets-data-exfiltration",
      "canonical_url": "https://news.ycombinator.com/item?id=48349487"
    },
    "external_url_hostname": "www.promptarmor.com",
    "selected_comments_raw": []
  },
  "selection_meta": {
    "discussion_depth": "story_only",
    "external_article": {
      "status": "ok",
      "final_url": "https://www.promptarmor.com/resources/gpt-for-google-sheets-data-exfiltration",
      "status_code": 200,
      "content_type": "text/html",
      "failure_reason": null
    },
    "snapshot_version": "hn_story_v3",
    "selected_comments_count": 0,
    "external_article_resolved": true,
    "text_normalization_applied": false
  },
  "created_at": "2026-05-31T22:01:12.765Z",
  "updated_at": "2026-05-31T22:01:12.765Z"
}