Article may be outdated

This article is 56 days old. Some details may have changed since publication.

Wired·4 min read·hard

OpenAI’s Browser Could Be Hijacked to Spam Your WhatsApp Contacts

M
Matt Burgess
OpenAI’s Browser Could Be Hijacked to Spam Your WhatsApp Contacts
✦AI Summary

Security researchers have identified multiple vulnerabilities in AI-enabled web browsers that could allow attackers to hijack sessions and access sensitive user data. While OpenAI's Atlas tool had the most protections, experts warn that integrating AI agents into browsers creates significant security risks.

Why it matters

As AI agents become more integrated into daily web browsing, the potential for automated exploitation of user data poses a major cybersecurity threat.

✦Dive DeeperCreate a free account to unlock

The Atlas findings, from researchers at security firm Zenity, are part of a broad series of flaws the company discovered in leading AI-enabled web browsers and browser extensions, including products from Google, Anthropic, Microsoft, and Perplexity. The researchers found around 20 flaws, which allowed them to access local machines, grab files, take over a password manager, and leak someone’s entire browsing history.

“They have nerfed the security control of browsers—we are now back to seeing the kinds of attacks that you saw on browsers 20 years ago,” says Michael Bargury, cofounder and CTO of Zenity, who is presenting the findings at the security conference with Zenity’s Stav Cohen and other colleagues.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →
technologyscience
✦

Get smarter about the news

Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.

Create free account

Already have an account? Sign in