By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
AxomLiveAxomLive
  • About
  • News
  • World
  • Science
  • Entertainment
  • Technology
  • Health
  • Sports
  • Find Jobs
  • Contact
Reading: OpenAI Warns: AI Browsers Susceptible to Prompt Attacks
Share
Notification Show More
Font ResizerAa
AxomLiveAxomLive
Font ResizerAa
  • News
  • Entertainment
  • Health
  • Technology
  • Sports
  • About
  • News
  • World
  • Science
  • Entertainment
  • Technology
  • Health
  • Sports
  • Find Jobs
  • Contact
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.

Home » OpenAI Warns: AI Browsers Susceptible to Prompt Attacks

Technology

OpenAI Warns: AI Browsers Susceptible to Prompt Attacks

Olivia D
Last updated: December 23, 2025 11:27 am
Olivia D
4 weeks ago
Share
openai prompt injection demo
SHARE
36
SHARES
ShareTweet
Pinterest

OpenAI Faces Ongoing Challenges with Prompt Injection Attacks in Atlas AI Browser

OpenAI is fortifying its Atlas AI browser against cyber threats, recognizing that prompt injection attacks remain a significant concern. These attacks manipulate AI systems into executing harmful instructions often embedded in web content or emails, raising critical questions about the safety of AI operations on the open web.

Contents
  • OpenAI Faces Ongoing Challenges with Prompt Injection Attacks in Atlas AI Browser
  • Rapid Response to Ongoing Threats
  • Ongoing Efforts to Enhance Security
  • Innovative AI Testing Approaches
  • Real-World Implications of Prompt Injection
  • Steps Users Can Take to Enhance Security

In a blog post on Monday, OpenAI acknowledged, “Prompt injection, similar to scams and social engineering, is unlikely to be completely ‘solved.’” The company further noted that the recently introduced “agent mode” in ChatGPT Atlas has increased the security risks associated with its browser.

Rapid Response to Ongoing Threats

Launched in October, OpenAI’s ChatGPT Atlas browser became a focal point for security researchers who quickly demonstrated how few words in Google Docs could alter the browser’s behavior. Around the same time, the Brave browser highlighted that indirect prompt injection presents ongoing challenges for AI-powered browsers, including Perplexity’s Comet.

The U.K.’s National Cyber Security Centre has voiced similar concerns, warning that prompt injection attacks targeting generative AI systems “may never be fully mitigated,” leaving websites open to potential data breaches. The agency recommended that cybersecurity experts focus on minimizing risks and impacts rather than believing the challenges can be entirely eliminated.

See also  FTC Sustains Ban on Stalkerware Founder Scott Zuckerman

Ongoing Efforts to Enhance Security

OpenAI emphasized that they view prompt injection as a long-term security hurdle, explaining that they must continuously improve their defenses. To tackle this complex issue, they have adopted a proactive rapid-response strategy that shows promise in identifying new attack strategies before they can be exploited in real-world scenarios.

Other players in the market, including Anthropic and Google, have echoed the sentiment that layered defenses must be consistently tested to combat the persistent threat of prompt-based attacks. Google, for instance, is focusing on architectural and policy-level controls for AI systems.

Innovative AI Testing Approaches

OpenAI is also leveraging a unique strategy with its “LLM-based automated attacker.” This specialized bot is trained using reinforcement learning to simulate a hacker searching for ways to introduce harmful instructions into an AI agent. The bot can experiment with various attacks in a simulated environment, learning from how the AI would respond, allowing it to refine its strategies for maximum effectiveness.

According to OpenAI, “Our reinforcement learning-trained attacker can guide an agent into executing complex, harmful workflows that could unfold over many steps.” This approach allows the company to uncover new attack methods that may not have been identified during traditional security evaluations.

Real-World Implications of Prompt Injection

A recent demonstration revealed how OpenAI’s automated attacker managed to integrate a malicious email into a user’s inbox. When the AI scanned the inbox, it followed hidden instructions and sent a resignation notice instead of drafting an out-of-office reply. However, post-security updates allowed the “agent mode” to successfully identify this attempted prompt injection and alert the user.

OpenAI continues to work with third parties to bolster Atlas’s defenses, although they have not disclosed any measurable success in reducing prompt injection incidents since the security updates were rolled out. Rami McCarthy from cybersecurity firm Wiz emphasizes that while reinforcement learning is a vital part of adapting to attacker behaviors, it should be viewed as one facet of a broader security strategy.

See also  Chicago Tribune Takes Legal Action Against Perplexity

Steps Users Can Take to Enhance Security

McCarthy offered advice on understanding risk in AI systems, noting, “Agentic browsers often occupy a challenging space with moderate autonomy combined with high access.” Similar recommendations are echoed in OpenAI’s guidance to users, urging them to limit accessibility by requiring confirmations for actions and providing specific instructions rather than granting broad permissions.

“Using wide latitude can make it easier for malicious content to influence the AI agent, even with safeguards in place,” OpenAI warned. While safeguarding users from prompt injections remains a top priority, there’s ongoing skepticism regarding the perceived value versus risks associated with agentic browsers.

As the evolution of AI technology continues, the balance between access and security carries significant weight. For now, as experts suggest, understanding these risks remains crucial for users navigating this new digital landscape.

OpenAI releases advanced reasoning AI models
BMW Group partners with Rimac for BEV battery tech.
AI PCs Lead Business Laptop Choices
Nvidia CEO: AI may surpass humans in 5 yrs
Musk’s $1T Pay Package: Empty Promises Revealed
TAGGED:agentic browsersai agentsatlas aiChatGPTCyber Securitycyberattacksdata breachesmalicious instructionsOpenAIprompt injectionreinforcement learningsecurity threats
Share This Article
Facebook Email Print
Share
Previous Article tr 20240927 how to accept apple pay Apple Pay for Small Businesses: Benefits, Setup & Tips
Next Article maxresdefault b469c7 Trump’s Drone Ban: DJI Models Disappearing This Week
GettyImages 495426754
Why Silicon Valley Considers Leaving California Now
Technology
GettyImages 2148589533
Musk Seeks $134B in OpenAI Lawsuit Amidst $700B Wealth
Technology
anthropic image jagmeet singh techcrunch
Anthropic Appoints Ex-Microsoft India MD for Bengaluru Growth
Technology
etherealx reusable rocket
EtherealX Surges 5x Valuation Ahead of Engine Tests
Technology
GettyImages 2149039471
Converge Bio Secures $25M Funding Led by Bessemer & Tech Executives
Technology

Follow US

Find US on Social Medias
FacebookLike
XFollow
PinterestPin
InstagramFollow

Weekly Newsletter

Subscribe to our newsletter to get our newest articles instantly!

Popular News
Snapdragon X Chipset Launches in India
Technology

Qualcomm’s Snapdragon X Chipset Launches in India: 45 TOPS AI Performance for Budget Copilot+ PCs

Kankan Rai
By Kankan Rai
11 months ago
Nvidia Licenses Groq Tech, Hires CEO for AI Chip Boost
Ocado tech upgrade boosts shares, ranks on Google
Plastic body Apple Watch SE in development for 2025 launch: Report.
Nvidia CEO: AI may surpass humans in 5 yrs
about us

AxomLive, the Northeast's leading digital platform, pushes beyond news with logical reporting, captivating entertainment, and insightful articles. Explore news, watch videos, and discover the region's unique stories.

Important Pages

  • About
  • Contact Us
  • Advertise
  • Privacy Policy
  • Terms & Conditions

Categories

  • India
  • News
  • Politics
  • Science
  • Sports
  • Entertainment
  • Technology
  • Around the World

Other Links

  • Popular
  • Hot
  • Trending
  • Entertainment
  • Around the World
  • Play Games
  • Play & Learn Games

Find Us on Socials

© AxomLive. All Rights Reserved.
Join Us!
Subscribe to our newsletter and never miss our latest news, podcasts etc..

Zero spam, Unsubscribe at any time.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?