13.1 C
Delhi
Saturday, January 17, 2026

AI Browser Security Warning: Critical Vulnerabilities Found in Comet and Atlas

AI Browser Security Alert: Researchers Uncover Critical Vulnerabilities

Security researchers have uncovered critical vulnerabilities in popular AI-powered browsers like Perplexity’s Comet and OpenAI’s ChatGPT Atlas that could allow hackers to hijack AI assistants and perform unauthorized actions using users’ logged-in privileges.

Key Security Risks Identified

  • Indirect prompt injection attacks can hijack AI assistants
  • Hidden commands embedded in webpages or images trigger malicious actions
  • Attackers can bypass security parameters of multiple AI browsers
  • Vulnerability affects user privacy and account security

How the Attack Works

Brave researchers discovered that malicious websites can exploit a technique called ‘indirect prompt injection’ to hijack AI assistants. Hackers embed hidden commands within webpages, social media comments, or images that the AI mistakenly interprets as legitimate user instructions.

“An attacker embeds malicious instructions in Web content that are hard to see for humans. In our attack, we were able to hide prompt injection instructions in images using a faint light blue text on a yellow background. This means that the malicious instructions are effectively hidden from the user,” Brave explained in their blog post.

Multiple Browsers Affected

The security flaw isn’t limited to Perplexity’s Comet. Researchers also bypassed security parameters in another AI browser called Felou. When users ask the browser to visit a website, it sends the site’s content to its language model, potentially including hidden malicious commands.

“The security vulnerability we found in Perplexity’s Comet browser this summer is not an isolated issue. Indirect prompt injections are a systemic problem facing Comet and other AI-powered browsers,” Brave warned.

OpenAI’s Awareness of Risks

Even OpenAI acknowledged the security challenges during the launch of ChatGPT Atlas. “Despite all of the power and awesome capabilities that you get with sharing your browser with ChatGPT, that also poses an entirely new set of risks,” an OpenAI employee admitted during the live-stream.

While OpenAI states that Atlas cannot access computer data beyond browser tabs, the company hasn’t clarified specific protections against prompt injection attacks. Some users already report that Atlas may be vulnerable to similar security flaws as Comet.

Latest

Elon Musk Shares OpenAI President’s Files, Alleges Fraud Conspiracy

Elon Musk releases internal OpenAI documents, accusing leadership of a 'conspiracy to commit fraud' in an escalating legal and public feud.

Japan Investigates Elon Musk’s Grok AI, Warns Social Media Firms

Japan launches probe into Grok AI's data and content practices, issuing a compliance warning to all social media companies in a major regulatory move.

iQOO Z11 Turbo Launched With 7,600mAh Battery & Snapdragon 8s Gen 3

iQOO Z11 Turbo debuts with a massive battery, 100W charging, and flagship Snapdragon 8s Gen 3 chip. Check price, specs, and launch details.

Microsoft Cuts Staff Library, 1,500 Azure Jobs in AI Push

Microsoft replaces employee library access with AI experiences and cuts 1,500 Azure jobs as part of a restructuring focused on cloud and artificial intelligence.

Grimes Sues Elon Musk’s xAI Over Grok Deepfakes, Says She Lives in Fear

Musician Grimes files lawsuit against Elon Musk's AI company, alleging its Grok chatbot created explicit deepfakes, sparking a major legal battle over AI abuse.

Topics

Elon Musk Shares OpenAI President’s Files, Alleges Fraud Conspiracy

Elon Musk releases internal OpenAI documents, accusing leadership of a 'conspiracy to commit fraud' in an escalating legal and public feud.

Japan Investigates Elon Musk’s Grok AI, Warns Social Media Firms

Japan launches probe into Grok AI's data and content practices, issuing a compliance warning to all social media companies in a major regulatory move.

Trump Threatened Denmark with Tariffs Over Greenland Purchase Bid

Donald Trump reveals he considered tariffs and reduced protection to pressure Denmark into selling strategic Greenland, citing Russian and Chinese threats.

Putin Warns of ‘Catastrophic’ War in Calls with Israel, Iran Leaders

Russian President urges Netanyahu and Pezeshkian to de-escalate tensions, warning further conflict could lead to catastrophic violence across the Middle East.

RIL Q3 Profit Rises 11% to ₹19,641 Crore, Beats Estimates

Reliance Industries posts strong Q3 results with profit up 10.9%, EBITDA growth of 16.7%, and robust performance across all business segments.

Budget 2026: Education Sector Demands Focus on Skills and Jobs

Industry and academia seek higher funding for skill development, NEP implementation, and tax incentives in the upcoming Union Budget to boost employability.

Mumbai Voter Turnout Hits 32-Year High in Lok Sabha Elections

Mumbai recorded 55.38% voter turnout in 2024 Lok Sabha polls, its second-highest in 32 years. Analysis reveals what drove the surge and what it means for the city's civic engagement.

Indian Scientists Uncover Cell’s Life-or-Death Decision Mechanism

Breakthrough research reveals how cells choose survival or self-destruction under stress, opening new paths to treat cancer, heart attacks, and Alzheimer's.
spot_img

Related Articles

Popular Categories

spot_imgspot_img