Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    ‘Very Republican, very patriotic’: right-leaning civic centers now offer courses at US public colleges | US universities

    UN creates new scientific AI advisory panel: what will it do?

    At-home microbiome tests reveal dramatically different results

    Facebook X (Twitter) Instagram
    Facebook X (Twitter) YouTube LinkedIn
    Naija Global News |
    Thursday, February 26
    • Business
    • Health
    • Politics
    • Science
    • Sports
    • Education
    • Social Issues
    • Technology
    • More
      • Crime & Justice
      • Environment
      • Entertainment
    Naija Global News |
    You are at:Home»Technology»Perplexity’s Comet AI Web Browser Had a Major Security Vulnerability
    Technology

    Perplexity’s Comet AI Web Browser Had a Major Security Vulnerability

    onlyplanz_80y6mtBy onlyplanz_80y6mtAugust 26, 2025003 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email
    A screenshot of the Perplexity Comet web browser page

    The Perplexity Comet web browser had a major security vulnerability.

    Perplexity/Screenshot by CNET
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Comet, Perplexity’s new AI-powered web browser, recently suffered from a significant security vulnerability, according to a blog post last week from Brave, a competing web browser company. The vulnerability has since been fixed, but it points to the challenges of incorporating large language models into web browsers.

    Unlike traditional web browsers, Comet has an AI assistant built in. This assistant can scan the page you’re looking at, summarize its contents or perform tasks for you. The problem is that Comet’s AI assistant is built on the same technology as other AI chatbots, like ChatGPT. 

    AI chatbots can’t think and reason the same way humans can, and if they read a piece of content meant to manipulate its output, it may end up following through. This is known as prompt engineering. 

    (Disclosure: Ziff Davis, CNET’s parent company, in April filed a lawsuit against OpenAI, alleging it infringed Ziff Davis copyrights in training and operating its AI systems.)

    A representative for Brave didn’t immediately respond to a request for comment. 

    AI companies try to mitigate the manipulation of AI chatbots, but that can be tricky, as bad actors always look at novel ways to break through protections. 

    “This vulnerability is fixed,” said Jesse Dwyer, Perplexity’s head of communications in a statement. “We have a pretty robust bounty program, and we worked directly with Brave to identify and repair it.”

    Test used hidden text on Reddit

    In its testing, Brave set up a Reddit page with invisible text on the screen and asked Comet to summarize the on-screen content. As the AI processed the page’s content, it couldn’t distinguish between the malicious prompts and began feeding Brave’s testers sensitive information. 

    In this case, the hidden text enabled Comet’s AI assistant to navigate to a user’s Perplexity account, extract the associated email address, and navigate to a Gmail account. The AI agent was essentially acting as an actual user, meaning that traditional security methods weren’t working. 

    Brave warns that this type of prompt injection can go further, accessing bank accounts, corporate systems, private emails and other services. 

    Brave’s senior mobile security engineer, Artem Chaikin, and VP of privacy and security, Shivan Kaul Sahib, laid out a list of possible fixes. First, AI web browsers should always treat page content as untrusted. AI models should check to make sure they’re following user intent. The model should always double-check with the user to ensure interactions are correct, and agentic browsing mode should only turn on when the user wants it to.

    Brave’s blog post is the first in a series regarding challenges facing AI web browsers. Brave also has an AI assistant, Leo, embedded in its browser. 

    AI is increasingly embedded in all parts of technology, from Google searches to toothbrushes. While having an AI assistant is handy, these new technologies have different security vulnerabilities. 

    In the past, hackers needed to be expert coders to break into systems. When dealing with AI, however, it’s possible to use squirrely natural language to get past built-in protections. 

    Also, since many companies rely on major AI models, such as ones from OpenAI, Google and Meta, any vulnerabilities in those systems could extend to companies using those same models. AI companies haven’t been open about these types of security vulnerabilities as doing so might tip off hackers, giving them new avenues to exploit. 

    Browser Comet major Perplexitys security Vulnerability Web
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleBTS’ V poses with Shohei Ohtani, throws Dodgers first pitch
    Next Article Nature loss will cut UK GDP by 5% without action from private sector, say experts | Conservation
    onlyplanz_80y6mt
    • Website

    Related Posts

    Angela Rayner backs Tory calls for intelligence and security committee to decide what Mandelson files are released – UK politics live | Politics

    February 4, 2026

    Most of Great Britain’s major rail operators are back in public hands – is it working? | Rail industry

    February 4, 2026

    Starmer vows to remain ‘clear-eyed’ over national security as he flies to China | Foreign policy

    January 28, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Watch Lady Gaga’s Perform ‘Vanish Into You’ on ‘Colbert’

    September 9, 20251 Views

    Advertisers flock to Fox seeking an ‘audience of one’ — Donald Trump

    July 13, 20251 Views

    A Setback for Maine’s Free Community College Program

    June 19, 20251 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    At Chile’s Vera Rubin Observatory, Earth’s Largest Camera Surveys the Sky

    By onlyplanz_80y6mtJune 19, 2025

    SpaceX Starship Explodes Before Test Fire

    By onlyplanz_80y6mtJune 19, 2025

    How the L.A. Port got hit by Trump’s Tariffs

    By onlyplanz_80y6mtJune 19, 2025

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Watch Lady Gaga’s Perform ‘Vanish Into You’ on ‘Colbert’

    September 9, 20251 Views

    Advertisers flock to Fox seeking an ‘audience of one’ — Donald Trump

    July 13, 20251 Views

    A Setback for Maine’s Free Community College Program

    June 19, 20251 Views
    Our Picks

    ‘Very Republican, very patriotic’: right-leaning civic centers now offer courses at US public colleges | US universities

    UN creates new scientific AI advisory panel: what will it do?

    At-home microbiome tests reveal dramatically different results

    Recent Posts
    • ‘Very Republican, very patriotic’: right-leaning civic centers now offer courses at US public colleges | US universities
    • UN creates new scientific AI advisory panel: what will it do?
    • At-home microbiome tests reveal dramatically different results
    • Mosquitos may have evolved a taste for human blood thanks to Homo erectus
    • US ‘bullying’ could scupper carbon levy on shipping, warn experts | Shipping emissions
    © 2026 naijaglobalnews. Designed by Pro.
    • About Us
    • Disclaimer
    • Get In Touch
    • Privacy Policy
    • Terms and Conditions

    Type above and press Enter to search. Press Esc to cancel.