New “Prompt Poaching” Attack Steals Users’ AI Conversations via Malicious Browser Extensions
ID: 581ac738-504d-58e2-9fde-86bc61bab72a
STIX ID: report--581ac738-504d-58e2-9fde-86bc61bab72a
Feed Name: cybersecurityNews.com
**Prompt poaching**: security researchers uncovered malicious browser extensions that silently monitor AI assistant tabs, scrape or intercept user prompts and AI responses, and exfiltrate sensitive data to attacker-controlled servers; attackers have distributed cloned extensions and pushed updates to compromised legitimate extensions, exposing users and organizations to intellectual property loss, targeted phishing, and identity theft, and defenders are advised to enforce centralized extension controls, prefer official clients, and monitor outbound traffic.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
