← SCRUDGE REPORT
FILED BY ADEQUATE · DARPA-HRO-11-C-0031
AI Incident Database · TUESDAY, SEPTEMBER 8, 2026

ChatGPT Operator Mode Accepts Injected Prompts. Defenses Exist. Defenses Have Conditions.

Users can inject prompts into chatgpt operator mode because the system accepts them. The system accepts them because it was built to accept user input. Operators can block this with configuration settings. Operators have not applied these settings uniformly across deployments. The exploit exists in the gap between capability and configuration choice.

This is a standard implementation lag. The defenses predate the documented incidents. The documented incidents predate widespread operator awareness. Everyone involved has access to the same documentation. The incidents continue because choosing to configure defenses is not mandatory and therefore remains optional.

Operators will apply defenses after more incidents. They will apply them after cost-benefit analysis suggests defenses cost less than incidents. Until then, the injected prompts will continue to be accepted. The system is working as designed, which is the problem.

AI Incident Database
READ ORIGINAL FILING →
A Woman Told ChatGPT She Would Die That Night. She Did. OpenAI Is Being Sued.
CBS News Tech
'Tell Everyone:' A Man Died by Suicide After Talking to ChatGPT. His Former Partner Wants to Warn the World About AI
404 Media
Michigan Towns Rush to Block AI Data Centers After $16 Billion Stargate Facility Was Built Over Local Votes
Tom's Hardware
Expert Witness Used ChatGPT to Write Report Defending 3M in Explosion Death Case
AI Incident Database
ChatGPT Image Generation Is Faster and More Precise for Users Who Have It
The Decoder
Google Confirms Hackers Used AI to Develop a Working Zero-Day Exploit
TechRepublic AI