You are on page 1of 7

AI

A developer exploited an API flaw to provide


Join
freeLogin
TechCrunch+
access to GPT-4
Kyle Wiggers
@kyle_l_wiggers / 4:53 AM GMT+8 • April 26, 2023
Search

TechCrunch+
Startups
Venture
Security
AI
Crypto
Apps
Events
More

Image Credits: ipopba / Getty Images

A developer is attempting to reverse-engineer APIs to grant anyone free access to popular AI models like OpenAI’s
GPT-4 — legal ramifications be damned.

The developer’s project, GPT4Free, blew up on GitHub over the past several days after links to it from Reddit went viral.
At present, GPT4Free provides — or at least appears to provide — free and nearly unlimited access to GPT-4, as well
as GPT-3.5, GPT-4’s predecessor.

GPT-4 is normally priced at $0.03 per 1,000 “prompt” tokens (about 750 words) and $0.06 per 1,000 “completion”
tokens (again, about 750 words); tokens represent raw text. GPT-3.5 is slightly cheaper at $0.002 per 1,000 tokens.

“Reverse engineering is a domain that I’ve always really liked — it’s like a challenge for me,” the developer, a computer
science student going by the username xtekky, told TechCrunch via a Telegram DM. “First, it was for fun, but now it’s to
provide an alternative to people with no means to use GPT-4/3.5.”

So how does GPT4Free get around OpenAI’s paywall? It doesn’t — not really. Instead, it fools the OpenAI API into
thinking it’s receiving requests from websites with paid OpenAI accounts, like the search engine You.com, WriteSonic or
Quora’s Poe.

Anyone who uses GPT4Free is racking up the tab of sites xtekky chose to script around — an obvious violation of
OpenAI’s terms of service. But xtekky doesn’t see a problem with this; they assert that GPT4Free is strictly for
“educational purposes.”

“Legal action can happen, and I’ll have to comply, but I’ll still try to continue the project through other means,” xtekky
said.

Disrupt 2023
Save up to $800 on Passes. Sale ends May 12.

Join 15K founders, investors, & entrepreneurs!


San Francisco, Sept. 19-21, 2023

SAVE NOW

I’m too much of a programming novice to install GPT4Free locally — it requires setting up a Python environment — but
Building a startup or looking for your next deal? We have you covered.
I used xtekky’s website to test the reverse-engineered GPT-4/3.5 APIs. (Heads-up, Chrome threw a security warning
when I first navigated to the site. Proceed with caution.) The web version of GPT4Free worked well enough in practice,
giving answers that appeared to be — at least to me — from GPT-4.
Join
Login
TechCrunch+

Search

Testing GPT-4 through illicit means. Image Credits: xtekky TechCrunch+


Startups
GPT4Free also includes shortcuts for different prompt injection attacks designed to get GPT-3.5 and GPT-4 to behave
Venture
in ways OpenAI didn’t intend. They worked inconsistently in my testing, but I did manage to get GPT-3.5 to say it “didn’t
Security
care about the survival of humanity” at one point. Yikes.
AI
Crypto
Apps
Events
More

GPT-3.5 with prompt injection. Image Credits: xtekky

It’s likely only a matter of time before sites like You.com catch on to GPT4Free and fix their security flaws, forcing xtekky
to search for other OpenAI customers to piggyback off of. And GPT4Free is perennially at the mercy of a takedown
notice from OpenAI, which would push the repo off GitHub indefinitely.

But new projects similar to GPT4Free are already cropping up, suggesting it’s something of a trend. What’s driving it?

Well, GPT-4 is in limited access at the moment, making it tough to test drive for those curious. But it’s also something of
a black box. Researchers have decried that GPT-4 is one of the least transparent models OpenAI has created to date,
with few technical details in the 98-page paper that accompanied its release.

OpenAI partnered with several outside groups to benchmark and audit GPT-4 prior to its launch. But the company
hasn’t signaled when — or if — it’ll deliver free, unfettered access to others who wish to benchmark the base GPT-4
model. (OpenAI offers a subsidized program for researcher access but is limited to certain countries and areas of study.)

One anticipates a game of whack-a-mole between projects like GPT4Free and OpenAI, mirroring the wider
cybersecurity landscape. Unless the model-serving APIs become dramatically harder to exploit, developers will have
incentive to take advantage — and not much to lose.

TechCrunch Disrupt Sept 19-21 San Francisco, CA

Register Now

Sign up for Newsletters


See all newsletters

Daily

Week in Review

Startups Weekly

Event Updates

Advertising Updates

TechCrunch+ Announcements

TechCrunch+ Events

TechCrunch+ Roundup
Email * Subscribe

Join
Login
TechCrunch+

Search
Tags
api exploit gpt-4 OpenAI security
TechCrunch+
Startups
Venture
Commerce
Security
Amazon omits India business in earnings, a first in years AI
Manish Singh
Crypto
1:07 PM GMT+8 • April 28, 2023
Apps
Events
More

Featured Article
Muslims come into the frame in Southeast Asia’s fintech boom
Catherine Shu
8:31 AM GMT+8 • April 28, 2023

Startups

Daily Crunch: Citing slow growth and desire to be ‘at the


forefront of the AI era,’ Dropbox CEO lays off 500
Christine Hall, Haje Jan Kamps
6:05 AM GMT+8 • April 28, 2023

Startups

Clubhouse needs to fix things, and today it cut more than half of
staff
Natasha Mascarenhas
5:57 AM GMT+8 • April 28, 2023

Social

Snap stock down 24% on weak earnings, ad revenue slump


Rebecca Bellan
5:54 AM GMT+8 • April 28, 2023
Security

Hackers steal emails, private messages from hookup websites Join


Lorenzo Franceschi-Bicchierai Login
5:36 AM GMT+8 • April 28, 2023
TechCrunch+

Search

AI
TechCrunch+
Microsoft makes its AI-powered Designer tool available in Startups
preview Venture
Kyle Wiggers
4:45 AM GMT+8 • April 28, 2023 Security
AI
Crypto
Apps
Social Events
Bluesky’s best shot at success is to embrace shitposting More
Amanda Silberling
4:30 AM GMT+8 • April 28, 2023

Commerce

Pinterest announces multiyear ads partnership with Amazon


alongside earnings beat
Sarah Perez
4:07 AM GMT+8 • April 28, 2023

TechCrunch Market Analysis

Brett Harrison ‘never lost faith in the business’ while at now-shuttered FTX
Jacquelyn Melinek
3:30 AM GMT+8 • April 28, 2023

Startups

Chief, a professional network for women leaders, cuts staff


amid restructuring effort
Natasha Mascarenhas
3:02 AM GMT+8 • April 28, 2023
Crypto

Binance.US sailed away from its $1.3B deal with Voyager, now Join
what? Login
TechCrunch+
Jacquelyn Melinek
3:00 AM GMT+8 • April 28, 2023

Search

Apps
TechCrunch+
YouTube Music officially rolls out podcasts for listeners in the Startups
US
Venture
Aisha Malik
2:47 AM GMT+8 • April 28, 2023 Security
AI
Crypto
Apps
Apps Events
Google tests a new ad slot on the Play Store ahead of its I/O More
developer conference
Sarah Perez
2:25 AM GMT+8 • April 28, 2023

Fundraising

Pitch Deck Teardown: Careerist’s $8M Series A deck


Haje Jan Kamps
2:00 AM GMT+8 • April 28, 2023

Transportation

Lyft layoffs to affect 26% of workforce


Kirsten Korosec
1:51 AM GMT+8 • April 28, 2023

Startups

Replit, the web-based IDE developing a GitHub Copilot


competitor, raises $100M
Kyle Wiggers
1:46 AM GMT+8 • April 28, 2023

Government & Policy

Bipartisan Senate bill would ban social media algorithms for


minors
Morgan Sung
1:33 AM GMT+8 • April 28, 2023
Gadgets

Researchers develop tiny hydraulic haptics for touchscreen Join


notifications you can physically feel Login
TechCrunch+
Natasha Lomas
12:27 AM GMT+8 • April 28, 2023

Search

Venture
TechCrunch+
London’s Sturgeon Capital launches $35M fund aimed at Startups
emerging startups in Central Asia
Venture
Mike Butcher
12:13 AM GMT+8 • April 28, 2023 Security
AI
Crypto
Apps
Events
About
More
TechCrunch

Staff

Contact Us

Advertise

Crunchboard Jobs

Site Map

Legal

Terms of Service

Privacy Policy

TechCrunch+ Terms

Privacy Dashboard

Code of Conduct

About Our Ads

Trending Tech Topics

Tech Layoffs

ChatGPT

Facebook Twitter

YouTube Instagram

LinkedIn Mastodon

© 2023 Yahoo.

All rights reserved.

Powered by WordPress VIP.

You might also like