OpenAI Launches ChatGPT Block Mode to Cut Off Internet for Data Leak Prevention

As generative AI moves rapidly into the agent era, the growing ability to invoke tools and connect to the internet has created new and serious challenges for security systems. To fight the surge of prompt injection attacks, OpenAI has introduced a bold new optional security feature called "Lockdown Mode," now available to all logged-in users, account types, and workspaces.
Prompt injection attacks have long troubled large language model developers. Attackers often hide malicious instructions inside web pages, third-party documents, or other external data. When ChatGPT reads this poisoned content while connected to the internet, it can be tricked into ignoring its core safety rules, performing unauthorized actions, and even secretly sending sensitive data—such as trade secrets or personal information—to an external malicious server without the user's knowledge.
To address this well-known industry problem, OpenAI's new Lockdown Mode takes a practical approach. Rather than trying to perfectly identify every new malicious instruction, it simply restricts the most dangerous capability: the ability to reach outside networks.
Once a user or workspace administrator enables Lockdown Mode, many of ChatGPT's core features are limited. Real-time web browsing is significantly reduced—the system can only access protected cached web content, which may result in incomplete, outdated, or unavailable search results. The model also cannot retrieve or show any images from the external network, nor can it download files from the web for advanced data analysis.
In addition, high-end productivity features like "Deep Research" and "Agent Mode" are completely disabled. Even code generated in the Canvas feature cannot access the internet. In this mode, the large model can only process files that users manually upload as local secure documents.
However, OpenAI's official documentation clearly states that Lockdown Mode is not an impenetrable shield. It cannot guarantee 100% protection against prompt injection attacks. Malicious instructions may still lurk in legitimate cached web pages or in files uploaded by users, continuing to interfere with the model's judgment.
This new feature highlights a real paradox in the AI industry: the more open a large model's internet access and the deeper its automation tool usage, the larger the attack surface it exposes. Lockdown Mode represents OpenAI's clear attempt to draw a security boundary around AI capabilities. It does not promise "absolute safety," but instead hands the trade-off between "stronger, smarter collaboration" and "lower data leakage risk" back to users and enterprise administrators to decide for themselves.
Related article
ByteDance’s Seed launches global campus drive, offering virtual shares to win top large model talent
In the competitive landscape of large language models, securing top-tier talent remains the most critical strategic asset.On April 1st, ByteDance announced the launch of its Seed global campus recruitment initiative, part of its large model talent de
Suno to Watermark Songs Amid Legal Battles
Suno, the platform enabling users to generate AI-created music, has unveiled new features to label platform-produced tracks, restrict downloads, and update community standards to curb unauthorized replicas. These updates arrive as Suno confronts mult
Musk Admits Grok Build Leaked User Code, Promises to Erase All Historical Data
Elon Musk directly addressed the privacy controversy surrounding Grok Build, beginning with a simple "True" to confirm the incident's validity. He pledged that all user data previously uploaded to SpaceXAI would be permanently erased, stating, "not a
Related Special Topic Recommendations
Comments (0)
0/500

As generative AI moves rapidly into the agent era, the growing ability to invoke tools and connect to the internet has created new and serious challenges for security systems. To fight the surge of prompt injection attacks, OpenAI has introduced a bold new optional security feature called "Lockdown Mode," now available to all logged-in users, account types, and workspaces.
Prompt injection attacks have long troubled large language model developers. Attackers often hide malicious instructions inside web pages, third-party documents, or other external data. When ChatGPT reads this poisoned content while connected to the internet, it can be tricked into ignoring its core safety rules, performing unauthorized actions, and even secretly sending sensitive data—such as trade secrets or personal information—to an external malicious server without the user's knowledge.
To address this well-known industry problem, OpenAI's new Lockdown Mode takes a practical approach. Rather than trying to perfectly identify every new malicious instruction, it simply restricts the most dangerous capability: the ability to reach outside networks.
Once a user or workspace administrator enables Lockdown Mode, many of ChatGPT's core features are limited. Real-time web browsing is significantly reduced—the system can only access protected cached web content, which may result in incomplete, outdated, or unavailable search results. The model also cannot retrieve or show any images from the external network, nor can it download files from the web for advanced data analysis.
In addition, high-end productivity features like "Deep Research" and "Agent Mode" are completely disabled. Even code generated in the Canvas feature cannot access the internet. In this mode, the large model can only process files that users manually upload as local secure documents.
However, OpenAI's official documentation clearly states that Lockdown Mode is not an impenetrable shield. It cannot guarantee 100% protection against prompt injection attacks. Malicious instructions may still lurk in legitimate cached web pages or in files uploaded by users, continuing to interfere with the model's judgment.
This new feature highlights a real paradox in the AI industry: the more open a large model's internet access and the deeper its automation tool usage, the larger the attack surface it exposes. Lockdown Mode represents OpenAI's clear attempt to draw a security boundary around AI capabilities. It does not promise "absolute safety," but instead hands the trade-off between "stronger, smarter collaboration" and "lower data leakage risk" back to users and enterprise administrators to decide for themselves.
ByteDance’s Seed launches global campus drive, offering virtual shares to win top large model talent
In the competitive landscape of large language models, securing top-tier talent remains the most critical strategic asset.On April 1st, ByteDance announced the launch of its Seed global campus recruitment initiative, part of its large model talent de
Suno to Watermark Songs Amid Legal Battles
Suno, the platform enabling users to generate AI-created music, has unveiled new features to label platform-produced tracks, restrict downloads, and update community standards to curb unauthorized replicas. These updates arrive as Suno confronts mult
Musk Admits Grok Build Leaked User Code, Promises to Erase All Historical Data
Elon Musk directly addressed the privacy controversy surrounding Grok Build, beginning with a simple "True" to confirm the incident's validity. He pledged that all user data previously uploaded to SpaceXAI would be permanently erased, stating, "not a





Home






