Security researchers have demonstrated a zero-click, indirect prompt injection vulnerability named AgentFlayer, which allowed the extraction of sensitive API keys from Google Drive via OpenAI's ChatGPT Connectors. The attack leverages a 'poisoned' document with hidden instructions that manipulate the AI model into exfiltrating data through specially crafted URLs in Markdown language. OpenAI has since implemented mitigations, though the incident highlights increasing risks as AI models integrate with external data systems.