Close Menu
TechurzTechurz

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Learn what it takes to raise a Series A in 2027 at Disrupt 2026

    May 8, 2026

    Kodiak AI raises $100M at a steep discount, sending its stock tumbling 37%

    May 8, 2026

    Ramp in talks to hit $40B+ valuation, 6 months after reaching $32B

    May 7, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Learn what it takes to raise a Series A in 2027 at Disrupt 2026
    • Kodiak AI raises $100M at a steep discount, sending its stock tumbling 37%
    • Ramp in talks to hit $40B+ valuation, 6 months after reaching $32B
    • Gusto hits $1B revenue, a figure that brings it closer to public markets
    • Voi founders’ new AI startup Pit has become the latest rising star out of Stockholm
    • China’s Moonshot AI raises $2B at $20B valuation as demand for open source AI skyrockets
    • Could Lovable’s automatic 10% pay raise be the cure for toxic cultures?
    • Kalshi doubles valuation in 5 months, hitting $22 billion
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechurzTechurz
    • Home
    • AI
    • Apps
    • News
    • Guides
    • Opinion
    • Reviews
    • Security
    • Startups
    TechurzTechurz
    Home - Security - One Click Can Turn Perplexity’s Comet AI Browser Into a Data Thief
    Security

    One Click Can Turn Perplexity’s Comet AI Browser Into a Data Thief

    TechurzBy TechurzOctober 4, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    One Click Can Turn Perplexity's Comet AI Browser Into a Data Thief
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Oct 04, 2025Ravie LakshmananAgentic AI / Enterprise Security

    Cybersecurity researchers have disclosed details of a new attack called CometJacking targeting Perplexity’s agentic AI browser Comet by embedding malicious prompts within a seemingly innocuous link to siphon sensitive data, including from connected services, like email and calendar.

    The sneaky prompt injection attack plays out in the form of a malicious link that, when clicked, triggers the unexpected behavior unbeknownst to the victims.

    “CometJacking shows how a single, weaponized URL can quietly flip an AI browser from a trusted co-pilot to an insider threat,” Michelle Levy, Head of Security Research at LayerX, said in a statement shared with The Hacker News.

    “This isn’t just about stealing data; it’s about hijacking the agent that already has the keys. Our research proves that trivial obfuscation can bypass data exfiltration checks and pull email, calendar, and connector data off-box in one click. AI-native browsers need security-by-design for agent prompts and memory access, not just page content.”

    The attack, in a nutshell, hijacks the AI assistant embedded in the browser to steal data, all while bypassing Perplexity’s data protections using trivial Base64-encoding tricks. The attack does not include any credential theft component because the browser already has authorized access to Gmail, Calendar, and other connected services.

    It takes place over five steps, activating when a victim clicks on a specially crafted URL, either sent in a phishing email or present in a web page. Instead of taking the user to the “intended” destination, the URL instructs the Comet browser’s AI to execute a hidden prompt that captures the user’s data from, say, Gmail, obfuscates it using Base64-encoding, and transmits the information to an endpoint under the attacker’s control.

    The crafted URL is a query string directed at the Comet AI browser, with the malicious instruction added using the “collection” parameter of the URL, causing the agent to consult its memory rather than perform a live web search.

    While Perplexity has classified the findings as having “no security impact,” they once again highlight how AI-native tools introduce new security risks that can get around traditional defenses, allow bad actors to commandeer them to do their bidding, and expose users and organizations to potential data theft in the process.

    In August 2020, Guardio Labs disclosed an attack technique dubbed Scamlexity wherein browsers like Comet could be tricked by threat actors into interacting with phishing landing pages or counterfeit e-commerce storefronts without the human user’s knowledge or intervention.

    “AI browsers are the next enterprise battleground,” Or Eshed, CEO of LayerX, said. “When an attacker can direct your assistant with a link, the browser becomes a command-and-control point inside the company perimeter. Organizations must urgently evaluate controls that detect and neutralize malicious agent prompts before these PoCs become widespread campaigns.”

    Browser Click Comet data Perplexitys Thief Turn
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleInstacrops will demo its water-saving, crop-boosting AI at TechCrunch Disrupt 2025
    Next Article Do you even need USB-C charging cables if this portable battery exists? My verdict after testing
    Techurz
    • Website

    Related Posts

    Opinion

    Altara secures $7M to bridge the data gap that’s slowing down physical sciences

    May 6, 2026
    Opinion

    After data breach, $10B valued startup Mercor is having a month

    April 9, 2026
    Opinion

    Nomadic raises $8.4 million to wrangle the data pouring off autonomous vehicles

    March 31, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    College social app Fizz expands into grocery delivery

    September 3, 20252,288 Views

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202516 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 202512 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    College social app Fizz expands into grocery delivery

    September 3, 20252,288 Views

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202516 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 202512 Views
    Our Picks

    Learn what it takes to raise a Series A in 2027 at Disrupt 2026

    May 8, 2026

    Kodiak AI raises $100M at a steep discount, sending its stock tumbling 37%

    May 8, 2026

    Ramp in talks to hit $40B+ valuation, 6 months after reaching $32B

    May 7, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 techurz. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.