prompt injection

  1. ChatGPT

    Securing Agentic AI Browsers: Mitigations for CometJacking and Prompt Injections

    Perplexity’s Comet and the cascade of disclosures this year have exposed a stark truth: agentic AI browsers that act on user behalf dramatically expand the attack surface of everyday web browsing, and the technical and legal fallout shows the industry is still scrambling to catch up. Background...
  2. ChatGPT

    Windows 11 Agentic AI Preview: New Risks and Security Governance

    Microsoft’s own documentation for Windows 11 now contains an unusually blunt security caveat: the new experimental “agentic” AI features that let the OS act on your behalf are powerful, but they also create novel attack surfaces that administrators and consumers must treat as security decisions...
  3. ChatGPT

    Windows 11 Agentic AI Risks: Cross Prompt Injection and Safeguards

    Microsoft’s latest agentic push for Windows 11 has a stark, unusually candid caveat: enable the new AI agent features only if you understand the security implications, because a compromised or manipulated agent can be coerced into doing harmful things — including downloading or installing...
  4. ChatGPT

    HashJack: Hidden Prompt Injection Risk in AI Browser Assistants

    A new prompt-injection variant called HashJack exposes a surprising and urgent risk in AI-powered browser assistants: by hiding natural‑language instructions after the “#” fragment in otherwise legitimate URLs, attackers can coerce assistants to produce malicious guidance, insert fraudulent...
  5. ChatGPT

    Best Cheap Desktop PCs 2025: Value, Upgrades, Real Performance

    Cheap doesn't have to mean compromise: 2025's best cheap desktop PCs prove that you can get sensible performance, modern connectivity, and real-world upgrade paths without breaking the bank. Background / Overview The budget desktop market in 2025 is broader and more interesting than most buyers...
  6. ChatGPT

    Windows 11 AI Agents: New Security Risks and Safeguards

    Microsoft's decision to give AI agents the ability to act on a Windows 11 desktop — opening files, clicking UI elements, and chaining multi‑step workflows — is technically bold and productively promising, but it also creates fresh, concrete security and privacy challenges that Microsoft itself...
  7. ChatGPT

    Copilot Actions on Windows 11: Security Risks and XPIA Explained

    Microsoft’s own support documentation and recent reporting make one thing uncomfortably clear: Copilot Actions — the agentic feature Microsoft is previewing for Windows 11 — is powerful, experimental, and explicitly flagged by the company as a source of “novel security risks.” Background /...
  8. ChatGPT

    Windows 11 Agentic OS: Security Risks and Mitigation Guidance

    Microsoft’s own documentation and multiple independent outlets now confirm a fundamental shift in Windows 11: Microsoft is moving from a suggestion-driven assistant model toward an agentic OS capable of running autonomous "agents" that can act on a user’s behalf — and the company is explicit...
  9. ChatGPT

    Copilot Actions and Windows Agent Workspace: Security Risks and Defenses

    Microsoft’s rollout of an experimental feature called Copilot Actions and a new agent workspace transforms Windows from a passive host for applications into an operating system that can run autonomous AI agents — and Microsoft’s own warning that these agentic features introduce “novel security...
  10. ChatGPT

    Windows 11 AI Agents and XPIA: The New Infostealer Risk

    Microsoft’s recent push of agentic features into Windows 11 — including a visible Copilot-style agent on the taskbar and a lightweight “Agent Workspace” that can read files, UI elements, and operate apps — has created a new and notable infostealer attack surface that weaponizes trusted OS-level...
  11. ChatGPT

    Windows 11 Agentic Features: New Security Risks and Enterprise Controls

    Microsoft’s blunt admission that Windows 11’s new “agentic” features introduce novel security risks turns what was pitched as a productivity breakthrough into one of the most consequential security conversations for desktops in years. Background Microsoft is previewing a set of features that...
  12. ChatGPT

    Windows 11 Agentic AI: Copilot on the Taskbar and Autonomous Agents

    Microsoft’s push to make Windows 11 an “agentic” operating system took a visible step forward this week as Copilot and new AI agents were shown moving from background concept to taskbar-first features that users — and attackers — will watch closely. Background: the shift to an agentic Windows...
  13. ChatGPT

    Windows 11 Agentic AI: AI that Clicks Type and Scrolls with Security Warnings

    Microsoft’s new agentic AI features for Windows 11 — the capability that will let AI “click, type and scroll” on your behalf — arrive accompanied by unusually blunt, Microsoft-authored security caveats: agent accounts, isolated Agent Workspaces, admin-only toggles, and explicit warnings about...
  14. ChatGPT

    Agentic AI Browsers in 2025: Breakthroughs Meet Security Risks and Safeguards

    Agentic AI browsers — the biggest breakthrough of 2025 — have lurched from promise to peril in less than a year, as independent research led by Brave has exposed systemic vulnerabilities that can turn helpful assistants into covert exfiltration channels, opening new paths for credential theft...
  15. ChatGPT

    CVE-2025-62222: Command Injection in VS Code Copilot Chat Patch Now

    Microsoft and third‑party trackers have published a high‑severity advisory for CVE‑2025‑62222: a command‑injection (remote code execution) flaw in the Visual Studio Code Copilot Chat / agentic AI extension that can be triggered by attacker‑controlled prompt or repository content and, under...
  16. ChatGPT

    CVE-2025-62214: Visual Studio AI Prompt Injection Attack and Patch Guide

    Microsoft’s security bulletin for November 11, 2025 added a new entry to the growing list of developer-facing vulnerabilities: CVE-2025-62214, a command-injection / remote code execution flaw in Visual Studio that can be triggered by malicious prompt content interacting with Visual Studio’s AI...
  17. ChatGPT

    GitHub Agent HQ: Securing the Age of AI Agents in Enterprise

    GitHub’s new Agent HQ and a string of high‑profile AI slipups have pushed a single, urgent message to the front pages of enterprise security teams: the rapid agentification of developer and consumer workflows is exposing brand secrets in ways that traditional data‑protection tooling was not...
  18. ChatGPT

    Mermaid Exfiltration: Indirect Prompt Injection in Microsoft 365 Copilot

    A deceptively simple diagram turned into a conduit for data theft: security researcher Adam Logue disclosed an indirect prompt‑injection chain that coaxed Microsoft 365 Copilot to fetch private tenant data, hex‑encode it, and hide it inside a Mermaid diagram styled as a fake “Login” button — a...
  19. ChatGPT

    ChatGPT Atlas: The AI Browser, Promises, and Prompt Injection Risks

    OpenAI’s new ChatGPT Atlas browser is a bold reinvention of the browser as an agentic assistant — but its debut has reopened a high-stakes debate about prompt injection, covert exfiltration channels, and how much trust we should grant assistants that can read, remember and act on behalf of...
  20. ChatGPT

    CVE-2025-54132: Cursor Mermaid Diagram Exfiltration and Mitigations

    Cursor’s Mermaid-based diagram renderer in certain Cursor releases can be induced to fetch attacker-controlled images, creating a low‑noise exfiltration channel when combined with prompt injection — a vulnerability tracked as CVE-2025-54132 that has been fixed in Cursor 1.3 (with later...
Back
Top