OpenAI and Perplexity race to close security vulnerabilities in new AI browser

Cát Tiên (Theo techcrunch) |

AI browsers such as ChatGPT Atlas and Comet opened the era of smart web browsing, but brought a series of unpredictable user security risks.

AI-powered web browsers such as OpenAI's ChatGPT Atlas and Perplexity's Comet are expected to become a major rival to Google Chrome.

With the ability to browse the web to change users, click, fill in forms or automatically find information, these browsers promise to open a new era of the Internet.

However, cybersecurity experts warn that along with that convenience is a serious security risk that users have not fully anticipated.

To operate effectively, browsers such as Atlas or Comet require in-depth access to the user system, including email, work schedule and contact logistics.

In TechCrunch's experiment, these tools have proven useful in handling simple tasks, but still struggling with complex requirements.

Some experts say that allowing AI to operate completely on personal data is no different from giving a digital home key to a stranger.

Browser is doing everything for you, which is basically dangerous, said Shivan Sahib, senior engineer at Brave.

The biggest threat comes from the phenomenon called Prompt injection attacks, when attackers hide malicious commands on a website, causing AI to misunderstand and execute dangerous instructions themselves.

The consequences can be personal data leakage, illegal transactions, even posting or sending automatic letters without users knowing.

According to Brave, this is a systematic challenge that every AI browser faces. Not only Comet, but also OpenAI's ChatGPT Atlas is struggling with this problem.

Dane Stuckey, Director of Information Security at OpenAI, admitted that the malicious lenh vulnerability is still a risk with no final solution and the fix will require a lot of time, effort and resources.

To minimize risks, OpenAI has implemented a posting mode, in which AI agents do not log into user accounts when browsing the web, while Perplexity develops a real-time attack detection system. However, researchers believe that this is only a temporary solution.

Steve Grobman, Chief Technology Officer of McAfee, said: This is a cat and rat game. Approaching and defending techniques are constantly changing, and there are no really solid fences. Code entry techniques are now more sophisticated, even hidden in images containing malicious data."

Rachel Tobac, CEO of SocialProof Security, recommends that users:

- Use a separate password and multi-factor authentication for the AI browser account.

- Limit ChatGPT Atlas and Comet's access to sensitive data.

- Separate bank, healthcare, or work accounts from these test browsers.

According to Ms. Tobac: "AI browser technology is still in its youth. Let them mature for a while before you let AI completely control your online world.

Cát Tiên (Theo techcrunch)
RELATED NEWS

Vietnam International Digital Week 2025: Promoting institutions for AI, connecting global cooperation

|

On October 25, the Ministry of Science and Technology (Mot s) updated the latest information about Vietnam International Digital Week 2025.

Instagram competes with Google Photos with AI photo editing

|

Restyle on Instagram helps users remove redundant details, add funny effects or change photos and video Stories style quickly with AI.

The AI race between Microsoft and OpenAI heats up with two similar browsers

|

Microsoft launched the Edge upgrade with Copilot AI, turning this browser into a smart web browsing tool just a few days after OpenAI introduced Atlas.

The US maintains a counterpart tax of 20%, opening up opportunities to reduce to 0% for Vietnamese goods

|

Maintaining the counterpart tax rate of 20% and the possibility of expanding the scope of tax reduction for some groups of goods to 0% will open up new opportunities for Vietnam.

On the evening of November 4, Hanoi will launch high-altitude and low-altitude fireworks

|

Hanoi will organize high-altitude and low-altitude fireworks displays at the closing ceremony of the 2025 Autumn Fair, on the evening of November 4.

Conflict of inexorable accounts over investment capital contribution of Hanoi University of Business and Technology

|

Not only in legal crisis, Hanoi University of Business and Technology was also accused of "abandoning" hundreds of investors, "losing" more than 117 billion VND in capital contributions.

sandbags are used all day and night to block the water of Tra Khuc river from overflowing into the inner city of Quang Ngai

|

Quang Ngai - The authorities are keeping their mouths closed day and night at the pumping station at the embankment project to prevent landslides on the southern bank, preventing the Tra Khuc River from flowing back into the inner city.

Floodwaters rise again, the center of Hue City becomes a chaotic traffic "river"

|

HUE - On the afternoon of October 29, floodwaters on rivers rose rapidly, causing many central streets of Hue City to be deeply flooded, vehicles stalled, and traffic paralyzed.

Vietnam International Digital Week 2025: Promoting institutions for AI, connecting global cooperation

HẠO THIÊN |

On October 25, the Ministry of Science and Technology (Mot s) updated the latest information about Vietnam International Digital Week 2025.

Instagram competes with Google Photos with AI photo editing

Cát Tiên (THEO INDIANEXPRESS) |

Restyle on Instagram helps users remove redundant details, add funny effects or change photos and video Stories style quickly with AI.

The AI race between Microsoft and OpenAI heats up with two similar browsers

Cát Tiên (THEO INDIANEXPRESS) |

Microsoft launched the Edge upgrade with Copilot AI, turning this browser into a smart web browsing tool just a few days after OpenAI introduced Atlas.