logo

Simple Custom Font Rendering Can Poison ChatGPT, Claude, Gemini, and Other AI Systems

ID: b69e5d0c-f24d-5a57-aad8-379516768eb7

STIX ID: report--b69e5d0c-f24d-5a57-aad8-379516768eb7

Feed Name: cybersecurityNews.com

Threat Score
70/100

Date Published: 2026-03-17

Date Updated: 2026-04-21

Author: Guru Baran

...
...

LayerX published a proof-of-concept for a novel attack that leverages custom fonts and CSS-based visual substitution to show malicious instructions to users while AI web assistants read only benign DOM text; multiple major AI assistants failed to detect the hidden payload and vendor responses to disclosure were inconsistent.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.