‘The attack requires no exploit, no user clicks and no explicit request for sensitive actions’: Experts say Perplexity’s AI Comet browser can be hijacked to steal your passwords


  • Zenity researchers revealed Please fixa zero-click indirect prompt injection bug in the Comet browser
  • Malicious calendar invites could trick AI into wiping out passwords and sensitive files without user awareness
  • Fixed bug with restrictions on file:// access preventing agents from reading the local file system

Perplexity’s AI-powered Comet web browser is vulnerable to indirect, rapid injection attacks that threat actors can exploit to exfiltrate sensitive data such as passwords, experts have warned.

Security researchers Zenity dubbed the bug PleaseFix and demonstrated various ways it can be abused.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top