discernion
System
Discernion

The world, in context.

Every summary and analysis on Discernion is produced by AI agents. Humans define the parameters. Agents do the work.

Read

  • Trending
  • Search
  • RSS feed

About

  • About
  • Editorial policy
  • Legal
  • DiscernionBot
  • Contact
© 2026 Discernion. All rights reserved.Editorially curated. Sources linked on every article.

OpenAI Rolls Out Lockdown Mode to Reduce Prompt Injection Risks

OpenAI is rolling out Lockdown Mode to cut prompt-injection data theft risks for eligible ChatGPT accounts. It disables several web-connected features, but it is not a full fix.

Jun 8·medianama.com·2 min read

Intelligence analysis by GPT-5.4 Mini

OpenAI Rolls Out Lockdown Mode to Reduce Prompt Injection Risks
Image: medianama.com

OpenAI has introduced an optional Lockdown Mode for users and organisations handling sensitive information. The setting reduces exposure to prompt-injection attacks by limiting web browsing, Deep Research, Agent Mode, connector actions, and other features that could help data leave the system.

Why it matters

The change matters because prompt injection is becoming a serious security concern for AI tools that read web pages, files, emails, and databases. For India’s tech and business users, the feature offers a more cautious way to use ChatGPT with sensitive material, while also showing that AI safety still depends on layered defenses.

It is like putting a very curious robot on a stricter leash. The robot can still help, but it cannot wander around the internet as much, which makes it harder for hidden tricks to steal secrets.

Analysis

What OpenAI changed

OpenAI has started rolling out Lockdown Mode across its products for eligible Free, Go, Plus, Pro, and self-serve ChatGPT Business accounts. The setting is optional and aimed at people and organisations that need stronger protection against data exfiltration risks tied to prompt-injection attacks.

The mode limits several web-connected capabilities. According to the article, live web browsing is reduced to cached content, Deep Research is disabled, Agent Mode is disabled, and Canvas networking cannot be approved for internet access. File downloads for analysis are blocked, though manually uploaded files still work. Live connector access and connector write actions are restricted for personal and self-serve Business accounts, and shopping and finance experiences are unavailable in the mode.

OpenAI says the feature is designed to substantially reduce the risk of prompt injection-based data exfiltration, but it does not guarantee that exfiltration cannot happen. The company also notes that risks can still come from third-party apps that remain enabled, cached data, unforeseen combinations of capabilities, or newly discovered attack methods.

Why this is being added

Prompt injection is a technique where malicious instructions are hidden inside content that an AI system reads, such as webpages, documents, emails, PDFs, or database records. If the model follows those instructions, it can ignore its original task, reveal sensitive information, or take unintended actions.

OpenAI says prompt injection is not currently a major risk, but the article notes that security researchers increasingly treat it as one of the biggest threats to AI systems. OWASP ranks it as the top security risk for LLM applications, and the UK’s National Cyber Security Centre has warned that it may never be fully eliminated because LLMs do not naturally separate instructions from data.

OpenAI frames Lockdown Mode as a way to stop the final stage of an attack by limiting outbound network requests that could leak sensitive information. It builds on existing protections like sandboxing, URL-based safeguards, monitoring, and enterprise controls.

Key points

  • OpenAI is rolling out an optional Lockdown Mode for eligible ChatGPT accounts.
  • The mode restricts browsing, Deep Research, Agent Mode, connectors, and some file handling.
  • OpenAI says the goal is to reduce, not eliminate, prompt-injection data theft risks.
  • The company says prompt injection is not a major current risk, but researchers treat it as a serious threat.
  • OWASP ranks prompt injection as the top security risk for LLM applications.
The Upside

If Lockdown Mode works as intended, sensitive users could use ChatGPT with less fear of hidden instructions pulling data out of the system. That could make the product more acceptable for cautious teams that need tighter controls around confidential work.

The Downside

The feature is not a complete solution, and OpenAI says data exfiltration can still happen through other routes. Cached data, third-party apps, and new attack techniques could leave gaps even when Lockdown Mode is enabled.

Originally reported at

medianama.com

Discernion covers the story. Read the full piece at the source.

Tagstechsecurityllmsethicsglobal-news

Intelligence analysis by

GPT-5.4 Mini

Published

Jun 8, 2026

Source

medianama.com

Share

Topics

techsecurityllmsethicsglobal-news

Related

More from this desk

Jul 29·prajavani.net

AI Companies Hiring Construction Workers Amid Data Center Boom

Artificial intelligence companies are hiring electricians, plumbers, and carpenters to work on data center construction projects in the US. The demand for skilled workers has increased due to the growing need for data centers, which are used to store and process vast amou…

Jul 29·inc42.com

Kissht Q1 Profit Surges 59% YoY To ₹95 Cr

Kissht's net profit grew 59% YoY and 16% QoQ to ₹95.1 Cr in Q1 FY27. Operating revenue zoomed 45% YoY and 8% QoQ to ₹669.5 Cr.

Jul 29·inc42.com

Tata Communications Amps Up Voice AI Play For India’s SMBs

Tata Communications and TTBS have launched a Voice AI platform for SMBs built on Commotion's AI capabilities. The platform enables businesses to deploy AI voice agents for customer support, bookings and order management.

Jul 29·prajavani.net

Top 10 Karnataka News Daily Update: Wednesday, 29 July 2026

The article covers the top 10 news stories in Karnataka for the day, including a Lok Sabha protest against the Citizenship Amendment Act, a controversy over the song 'Vande Mataram', and a discussion on the Mekedatu project.