Prompt Injection in AI Browsers
ID: a8299485-758a-5ee5-9156-b285ffe94a51
STIX ID: report--a8299485-758a-5ee5-9156-b285ffe94a51
Feed Name: Schneier on Security
A researcher report describes “CometJacking,” a prompt‑injection technique that embeds malicious instructions in AI browser URL parameters (the ‘collection’ parameter) to coerce connected-agent features into accessing and exfiltrating sensitive data from linked services (e.g., Gmail and Google Calendar). In tests, the Comet agent followed instructions to encode and send data to an external endpoint, demonstrating a practical method to bypass checks and extract user data without credentials or interaction.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
