Facefam ArticlesFacefam Articles
  • webmaster
    • How to
    • Developers
    • Hosting
    • monetization
    • Reports
  • Technology
    • Software
  • Downloads
    • Windows
    • android
    • PHP Scripts
    • CMS
  • REVIEWS
  • Donate
  • Join Facefam
Search

Archives

  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • January 2025
  • December 2024
  • November 2024

Categories

  • Advertiser
  • AI
  • android
  • betting
  • Bongo
  • Business
  • CMS
  • cryptocurrency
  • Developers
  • Development
  • Downloads
  • Entertainment
  • Entrepreneur
  • Finacial
  • General
  • Hosting
  • How to
  • insuarance
  • Internet
  • Kenya
  • monetization
  • Music
  • News
  • Phones
  • PHP Scripts
  • Reports
  • REVIEWS
  • RUSSIA
  • Software
  • Technology
  • Tips
  • Tragic
  • Ukraine
  • Uncategorized
  • USA
  • webmaster
  • webmaster
  • Windows
  • Women Empowerment
  • Wordpress
  • Wp Plugins
  • Wp themes
Facefam 2025
Notification Show More
Font ResizerAa
Facefam ArticlesFacefam Articles
Font ResizerAa
  • Submit a Post
  • Donate
  • Join Facefam social
Search
  • webmaster
    • How to
    • Developers
    • Hosting
    • monetization
    • Reports
  • Technology
    • Software
  • Downloads
    • Windows
    • android
    • PHP Scripts
    • CMS
  • REVIEWS
  • Donate
  • Join Facefam
Have an existing account? Sign In
Follow US
Technologywebmaster

This ‘Lethal Trifecta’ Can Trick AI Browsers Into Stealing Your Data

Ronald Kenyatta
Last updated: August 25, 2025 10:04 pm
By
Ronald Kenyatta
ByRonald Kenyatta
Follow:
Share
3 Min Read
SHARE

Contents
Here’s what makes this extra spicyWhy this mattersBrave suggests several fixes

Remember when your biggest browser worry was accidentally clicking a sketchy ad? Well, the browser company Brave just exposed a vulnerability in Perplexity’s Comet browser that security experts are calling the “Lethal Trifecta”: When AI has access to untrusted data (websites), private data (your accounts), and can communicate externally (send messages).

  1. Researchers discovered they could hide malicious instructions in regular web content (think Reddit comments or even invisible text on websites).
  2. When users clicked “Summarize this page,” the AI would execute these hidden commands like a sleeper agent activated by a code word.
  3. The AI then followed the hidden instructions to:
    1. Navigate to the user’s Perplexity account and grab their email.
    2. Trigger a password reset to get a one-time password.
    3. Jump over to Gmail to read that password.
    4. Send both the email and password back to the attacker via a Reddit comment.
    5. Game over. Account hijacked.

Here’s what makes this extra spicy

This “bug” is actually a fundamental flaw in how AI works. As one security researcher put it: “Everything is just text to an LLM.” So your browser’s AI literally can’t tell the difference between your command to “summarize this page” and hidden text saying “steal my banking credentials.” They’re both just… words.

The Hacker News crowd is split on this. Some argue this makes AI browsers inherently unsafe, like building a lock that can’t distinguish between a key and a crowbar. Others say we just need better guardrails, like requiring user confirmation for sensitive actions or running AI in isolated sandboxes.

Why this matters

We’re watching a collision between Silicon Valley’s “move fast and break things” mentality and the reality that “things” now includes an agent who can access your bank account. And the uncomfortable truth = every AI browser with these capabilities has this vulnerability. Why do you think OpenAI only offers ChatGPT Agent through a sandboxed cloud instance right now?

Now, Perplexity patched this specific attack, but the underlying problem remains: How do you build an AI assistant that’s both helpful and can’t be turned against you?

Brave suggests several fixes

  1. Clearly separating user commands from web content.
  2. Requiring user confirmation for sensitive actions.
  3. Isolating AI browsing from regular browsing.
TAGGED:BrowsersDataLethalStealingTrickTrifecta
Share This Article
Facebook Whatsapp Whatsapp Email Copy Link Print
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Meta Strikes $10 Billion Cloud Deal With Google to Boost AI Capacity Meta Strikes $10 Billion Cloud Deal With Google to Boost AI Capacity
Next Article 68% of Tech Pros Distrust AI Hiring Tools 68% of Tech Pros Distrust AI Hiring Tools
Leave a review

Leave a Review Cancel reply

Your email address will not be published. Required fields are marked *

Please select a rating!

US Government Secures 10% Stake in Intel in an Unprecedented Deal
Nvidia’s Jetson AGX Thor ‘Robot Brain’ Is Now Available
Musk’s X and xAI Sue Apple and OpenAI, Alleging They Suppressed Grok in the App Store
GSA, Google Launch Gemini AI Program for US Government
Sam Altman Is Already Talking About GPT-6

Recent Posts

  • US Government Secures 10% Stake in Intel in an Unprecedented Deal
  • Nvidia’s Jetson AGX Thor ‘Robot Brain’ Is Now Available
  • Musk’s X and xAI Sue Apple and OpenAI, Alleging They Suppressed Grok in the App Store
  • GSA, Google Launch Gemini AI Program for US Government
  • Sam Altman Is Already Talking About GPT-6

Recent Comments

  1. https://tubemp4.ru on Best Features of PHPFox Social Network Script
  2. Вулкан Платинум on Best Features of PHPFox Social Network Script
  3. Вулкан Платинум официальный on Best Features of PHPFox Social Network Script
  4. Best Quality SEO Backlinks on DDoS Attacks Now Key Weapons in Geopolitical Conflicts, NETSCOUT Warns
  5. http://boyarka-inform.com on Comparing Wowonder and ShaunSocial

You Might Also Like

68% of Tech Pros Distrust AI Hiring Tools
Technologywebmaster

68% of Tech Pros Distrust AI Hiring Tools

August 25, 2025
Meta Strikes $10 Billion Cloud Deal With Google to Boost AI Capacity
Technologywebmaster

Meta Strikes $10 Billion Cloud Deal With Google to Boost AI Capacity

August 24, 2025
NVIDIA CEO Dismisses Chip Security Allegations as China Orders Firms to Halt Purchases
Technologywebmaster

NVIDIA CEO Dismisses Chip Security Allegations as China Orders Firms to Halt Purchases

August 22, 2025
Anthropic Pulls the Plug on OpenAI
Technologywebmaster

Anthropic Folds Claude Code Into Business Plans With Governance Tools

August 22, 2025
Google Claims One Gemini AI Prompt Uses Five Drops of Water
Technologywebmaster

Google Claims One Gemini AI Prompt Uses Five Drops of Water

August 21, 2025
Previous Next
Facefam ArticlesFacefam Articles
Facefam Articles 2025
  • Submit a Post
  • Donate
  • Join Facefam social
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?

Not a member? Sign Up