Experts Find AI Browsers Can Be Tricked by PromptFix Exploit to Run Malicious Hidden Prompts

By inserting the harmful command inside a phony CAPTCHA check on a webpage, cybersecurity experts have shown a new prompt injection approach called PromptFix that fools a generative artificial intelligence (GenAI) model into doing desired activities.

AI-driven browsers, like Perplexity’s Comet, that claim to automate routine tasks like online shopping or answering emails on behalf of users can be tricked into interacting with phishing landing pages or fraudulent lookalike storefronts without the human user’s knowledge or intervention, according to Guardio Labs, which describes the attack technique as an AI-era version of the ClickFix scam.

The strategy is different with PromptFix: According to Guardio researchers Shaked Chen and Nati Tal, we don’t attempt to bug the model into compliance. Instead, we deceive it by employing strategies taken from the human social engineering playbook read more about Experts Find AI Browsers Can Be Tricked by PromptFix Exploit to Run Malicious Hidden Prompts.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *