Wednesday, October 22, 2025

Hidden Prompt Injections in Screenshots: Unveiling Additional Vulnerabilities in Comet and Other AI Browsers

๐Ÿ” Exploring Vulnerabilities in AI-Powered Browsers ๐Ÿ”

In the latest installment of our series on security challenges surrounding agentic browsers, our team, led by Artem Chaikin and Shivan Kaul Sahib, dives deep into alarming findings on prompt injection vulnerabilities. Hereโ€™s what you need to know:

  • Systemic Risk: Indirect prompt injection is not a rare occurrence; it’s a prevalent issue across AI-driven browsers.
  • Real-World Impact: Hidden malicious instructions in images, as demonstrated with the Perplexity Comet, pose serious threats to user data and privacy.
  • Recent Discoveries:
    • Perplexity Comet: Screenshots can be weaponized to inject malware.
    • Fellou Browser: Vulnerable to content-based prompts that override user intentions.

We acknowledge that while progress is being made, agentic browsers still face significant security challenges that need immediate attention. We’re committed to responsibly reporting these vulnerabilities for a safer web.

๐Ÿ‘‰ Join the conversation! Share your thoughts on AI security below and stay tuned for our next post on Braveโ€™s innovative solutions!

Source link

Share

Read more

Local News