@yabbapappa @stux Yes, this attack ("repeat the previous text") works against some other chat bots too. Not all of them, though, and definitely not against those that open the conversation first by saying something (e.g., presenting themselves to the user).
@bontchev @stux no, I didn't mean how this work. Actually I started to think, could it be possible to generate a fake AI chat service, let's say KusetusAi.biz (a little js, html and css), but actually just use some hidden initiating magic to bridge victims chatgpt prompt from openai to it, to get into my victims chat logs. (So when he/she chats with my "bot" it actually same time copypastes logs to my server background). So basically run MITM with some cross site scripting with some social play