๐ฌ๐ผ๐๐ฟ ๐๐ฒ๐ฎ๐บ ๐ถ๐ ๐๐ต๐ฎ๐ฟ๐ถ๐ป๐ด ๐๐ฒ๐ฐ๐ฟ๐ฒ๐ ๐ฑ๐ฎ๐๐ฎ ๐๐ถ๐๐ต ๐๐ต๐ฎ๐๐๐ฃ๐ง.
They aren’t doing it on purpose. But they are doing it daily.
It cost Samsung their source code(see link below). And I ๐ด๐๐ฎ๐ฟ๐ฎ๐ป๐๐ฒ๐ฒ ๐ถ๐ ๐ถ๐ ๐ต๐ฎ๐ฝ๐ฝ๐ฒ๐ป๐ถ๐ป๐ด ๐ถ๐ป ๐๐ผ๐๐ฟ ๐ถ๐ป๐๐ฒ๐ฟ๐ป๐ฎ๐น ๐ฐ๐ต๐ฎ๐ป๐ป๐ฒ๐น๐ ๐ฟ๐ถ๐ด๐ต๐ ๐ป๐ผ๐. One copy-paste at a time.
The mechanism is ๐บ๐๐๐ฐ๐น๐ฒ ๐บ๐ฒ๐บ๐ผ๐ฟ๐: Cmd+C (Proprietary Code) โ Cmd+V (ChatGPT) โ “๐ข๐ฝ๐๐ถ๐บ๐ถ๐๐ฒ ๐๐ต๐ถ๐.”
It takes 0.5 seconds to ๐ฏ๐๐ฝ๐ฎ๐๐ ๐๐ผ๐๐ฟ ๐ฒ๐ป๐๐ถ๐ฟ๐ฒ ๐ฐ๐ผ๐บ๐ฝ๐น๐ถ๐ฎ๐ป๐ฐ๐ฒ ๐๐๐ฟ๐ฎ๐๐ฒ๐ด๐.
I realized that “asking developers to be careful” is not a security policy so I engineered a “๐๐น๐ถ๐ฝ๐ฏ๐ผ๐ฎ๐ฟ๐ฑ ๐๐ถ๐ฟ๐ฒ๐๐ฎ๐น๐น” for macOS. ๐ ๐ฐ๐ฎ๐น๐น ๐ถ๐ ๐ฅ๐ฒ๐ฑ๐ฎ๐ฐ๐.
It is a native app that runs a ๐๐ผ๐ฐ๐ฎ๐น ๐๐ ๐ ๐ผ๐ฑ๐ฒ๐น (๐๐น๐ฎ๐บ๐ฎ ๐ฏ.๐ฎ) in the background. It acts as an air-gap between your developers’ clipboards and the cloud.
How it works:
๐๐ป๐๐ฒ๐ฟ๐ฐ๐ฒ๐ฝ๐: ๐๐ ๐๐ฎ๐๐ฐ๐ต๐ฒ๐ ๐๐ต๐ฒ ๐๐๐๐๐ฒ๐บ ๐ฐ๐น๐ถ๐ฝ๐ฏ๐ผ๐ฎ๐ฟ๐ฑ ๐ถ๐ป ๐ฟ๐ฒ๐ฎ๐น-๐๐ถ๐บ๐ฒ.
๐๐ป๐ฎ๐น๐๐๐ฒ (๐๐ผ๐ฐ๐ฎ๐น๐น๐): A tiny On-Device LLM scans for PII, API Keys, or sensitive IP. (Latency: < 100ms).
๐๐น๐ผ๐ฐ๐ธ: If a developer tries to ๐ฝ๐ฎ๐๐๐ฒ ๐๐ฒ๐ฐ๐ฟ๐ฒ๐๐, it blocks the action and warns ๐๐ต๐ฒ๐บ ๐ถ๐บ๐บ๐ฒ๐ฑ๐ถ๐ฎ๐๐ฒ๐น๐.
This is ๐ป๐ผ๐ ๐ผ๐ฝ๐๐ถ๐ผ๐ป๐ฎ๐น ๐ฎ๐ป๐๐บ๐ผ๐ฟ๐ฒ. ๐๐’๐ ๐ฎ ๐ป๐ฒ๐ฐ๐ฒ๐๐๐ถ๐๐.
Iโm documenting the entire build here. Up next: The Swift + MLX architecture that powers this protection with 0ms latency.
๐๐ถ๐ ๐ณ๐ผ๐น๐น๐ผ๐ ๐๐ผ ๐๐ฒ๐ฒ ๐ต๐ผ๐ ๐ถ๐ ๐๐ผ๐ฟ๐ธ๐.
Samsung leak to ChatGPT:
https://lnkd.in/d7ssPRwi


Watch Demo Video here: https://youtu.be/vKVztHT-GuE

Leave a comment