No Result
View All Result
  • Login
Friday, April 3, 2026
FeeOnlyNews.com
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
No Result
View All Result
FeeOnlyNews.com
No Result
View All Result
Home Business

OpenAI says AI browsers like ChatGPT Atlas may never be fully secure from hackers—and experts say the risks are ‘a feature not a bug’

by FeeOnlyNews.com
3 months ago
in Business
Reading Time: 3 mins read
A A
0
OpenAI says AI browsers like ChatGPT Atlas may never be fully secure from hackers—and experts say the risks are ‘a feature not a bug’
Share on FacebookShare on TwitterShare on LInkedIn



OpenAI has said that some attack methods against AI browsers like ChatGPT Atlas are likely here to stay, raising questions about whether AI agents can ever safely operate across the open web. The main issue is a type of attack called “prompt injection,” where hackers hide malicious instructions in websites, documents, or emails that can trick the AI agent into doing something harmful. For example, an attacker could embed hidden commands in a webpage—perhaps in text that is invisible to the human eye but looks legitimate to an AI—that override a user’s instructions and tell an agent to share a user’s emails, or drain someone’s bank account.Following the launch of OpenAI’s ChatGPT Atlas browser in October, security researchers were quick to demonstrate how a few words hidden in a Google Doc or clipboard link could manipulate the AI agent’s behavior. Cybersecurity firm Brave, also published findings showing that indirect prompt injection is a systematic challenge affecting multiple AI-powered browsers, including Perplexity’s Comet.

“Prompt injection, much like scams and social engineering on the web, is unlikely to ever be fully ‘solved,’” OpenAI wrote in a blog post Monday, adding that “agent mode” in ChatGPT Atlas “expands the security threat surface.”

“We’re optimistic that a proactive, highly responsive rapid response loop can continue to materially reduce real-world risk over time,” the company said.

Fighting AI with AI

OpenAI’s approach to the problem is to use an AI-powered attacker of its own—essentially a bot trained through reinforcement learning to act like a hacker seeking ways to sneak malicious instructions to AI agents. The bot can test attacks in simulation, observe how the target AI would respond, then refine its approach and try again repeatedly.

“Our [reinforcement learning]-trained attacker can steer an agent into executing sophisticated, long-horizon harmful workflows that unfold over tens (or even hundreds) of steps,” OpenAI wrote. “We also observed novel attack strategies that did not appear in our human red teaming campaign or external reports.”

However, some cybersecurity experts are skeptical that OpenAI’s approach can address the fundamental problem. 

“What concerns me is that we’re trying to retrofit one of the most security-sensitive pieces of consumer software with a technology that’s still probabilistic, opaque, and easy to steer in subtle ways,” Charlie Eriksen, a security researcher at Aikido Security, told Fortune.

“Red-teaming and AI-based vulnerability hunting can catch obvious failures, but they don’t change the underlying dynamic. Until we have much clearer boundaries around what these systems are allowed to do and whose instructions they should listen to, it’s reasonable to be skeptical that the tradeoff makes sense for everyday users right now,” he said. “I think prompt injection will remain a long-term problem … You could even argue that this is a feature, not a bug.”

A cat-and-mouse game

Security researchers also previously told Fortune that while a lot of cybersecurity risks were essentially a continuous cat-and-mouse game, the deep access that AI agents need—such as users’ passwords and permission to take actions on a user’s behalf—posed such a vulnerable threat opportunity it was unclear if their advantages were worth the risk. 

George Chalhoub, assistant professor at UCL Interaction Centre, said that the risk is severe because prompt injection “collapses the boundary between the data and the instructions,” potentially turning an AI agent “from a helpful tool to a potential attack vector against the user” that could extract emails, steal personal data, or access passwords.

“That’s what makes AI browsers fundamentally risky,” Eriksen said. “We’re delegating authority to a system that wasn’t designed with strong isolation or a clear permission model. Traditional browsers treat the web as untrusted by default. Agentic browsers blur that line by allowing content to shape behavior, not just be displayed.”

The U.K.’s National Cyber Security Centre has also warned that prompt injection attacks against generative AI systems are a long‑term issue that may never be fully eliminated. Instead of assuming these attacks can be completely stopped, the agency advises security teams to design systems so that the damage from a successful prompt injection is limited, and to focus on reducing both the likelihood and impact of data exposure or other harmful outcomes.

OpenAI recommends users give agents specific instructions rather than providing broad access with vague directions like “take whatever action is needed.” The company also said Atlas is trained to get user confirmation before sending messages or making payments.

“Wide latitude makes it easier for hidden or malicious content to influence the agent, even when safeguards are in place,” OpenAI said in the blogpost.

This story was originally featured on Fortune.com



Source link

Tags: AtlasbrowsersBugChatGPTExpertsFeatureFullyhackersandOpenAIRiskssecure
ShareTweetShare
Previous Post

SNC: Israeli tech cos raised $15.6b in 2025

Next Post

January Fed Rate Cut Odds Fall to New Lows After Strong U.S. Q3 GDP Report

Related Posts

Checking a bag on United Airlines now costs  more as Iran war sends jet fuel costs up nearly 100%

Checking a bag on United Airlines now costs $10 more as Iran war sends jet fuel costs up nearly 100%

by FeeOnlyNews.com
April 3, 2026
0

Most travelers flying with United Airlines will now pay $10 more to check their luggage beginning on Friday, as rising...

The Benefits of Red Light Therapy: Expert-Approved Advice

The Benefits of Red Light Therapy: Expert-Approved Advice

by FeeOnlyNews.com
April 3, 2026
0

Red light therapy is gaining popularity as a tool for supporting overall wellness, from improving skin health to easing sore...

For some around Trump, war on Iran is a Christian calling

For some around Trump, war on Iran is a Christian calling

by FeeOnlyNews.com
April 3, 2026
0

As he wages war on Iran, President Donald Trump was joined in the Oval Office by Christian pastors. Solemnly, some...

DeFi Development records highest short interest in March, while Bitgo lags

DeFi Development records highest short interest in March, while Bitgo lags

by FeeOnlyNews.com
April 3, 2026
0

Apr 03, 2026, 11:42 AM ETDeFi Development Corp. (DFDV) Stock, NA Stock, BTBT Stock, KULR Stock, SLNH Stock, ASST Stock,...

A  billion ‘slush fund’ to pay TSA agents: Trump’s latest unilateral loophole, explained

A $10 billion ‘slush fund’ to pay TSA agents: Trump’s latest unilateral loophole, explained

by FeeOnlyNews.com
April 3, 2026
0

There’s an idea about how political power is supposed to work in the U.S. To guard against anything resembling monarchy,...

Restrictions eased on outbound flights

Restrictions eased on outbound flights

by FeeOnlyNews.com
April 3, 2026
0

The number of passengers permitted on outbound flights will be increased starting Saturday night to up to 80 passengers...

Next Post
January Fed Rate Cut Odds Fall to New Lows After Strong U.S. Q3 GDP Report

January Fed Rate Cut Odds Fall to New Lows After Strong U.S. Q3 GDP Report

8 social habits that quietly lower your status in other people’s eyes

8 social habits that quietly lower your status in other people's eyes

  • Trending
  • Comments
  • Latest
Judge orders SEC to release data behind B in WhatsApp fines

Judge orders SEC to release data behind $2B in WhatsApp fines

March 10, 2026
8 Cost-Cutting Moves Retirees Are Sharing Online in February

8 Cost-Cutting Moves Retirees Are Sharing Online in February

February 14, 2026
The 23 Largest Global Startup Funding Rounds of February 2026 – AlleyWatch

The 23 Largest Global Startup Funding Rounds of February 2026 – AlleyWatch

March 27, 2026
Easter Basket Ideas for Kids

Easter Basket Ideas for Kids

March 23, 2026
3 Grocery Chains That Give Seniors a “Gas Bonus” for Every  Spent

3 Grocery Chains That Give Seniors a “Gas Bonus” for Every $50 Spent

March 15, 2026
8 Procedures That Can Be Cheaper Without Insurance

8 Procedures That Can Be Cheaper Without Insurance

February 14, 2026
Checking a bag on United Airlines now costs  more as Iran war sends jet fuel costs up nearly 100%

Checking a bag on United Airlines now costs $10 more as Iran war sends jet fuel costs up nearly 100%

0
Fires Break Out in Southern California, Scorch Over 2,000 Acres

Fires Break Out in Southern California, Scorch Over 2,000 Acres

0
Snowflake (SNOW) Names Jonathan Beaulier CRO Following Gannon Departure

Snowflake (SNOW) Names Jonathan Beaulier CRO Following Gannon Departure

0
Iran’s Internet Blackout Hits 35th Day as Citizens Risk Their Lives Reaching Out – Technology Bitcoin News

Iran’s Internet Blackout Hits 35th Day as Citizens Risk Their Lives Reaching Out – Technology Bitcoin News

0
Friday File:  War, Inflation, Food, Gold, and Uncle Warren

Friday File: War, Inflation, Food, Gold, and Uncle Warren

0
Oracle Lays Off More Than 150 California Workers

Oracle Lays Off More Than 150 California Workers

0
Fires Break Out in Southern California, Scorch Over 2,000 Acres

Fires Break Out in Southern California, Scorch Over 2,000 Acres

April 3, 2026
Checking a bag on United Airlines now costs  more as Iran war sends jet fuel costs up nearly 100%

Checking a bag on United Airlines now costs $10 more as Iran war sends jet fuel costs up nearly 100%

April 3, 2026
Iran’s Internet Blackout Hits 35th Day as Citizens Risk Their Lives Reaching Out – Technology Bitcoin News

Iran’s Internet Blackout Hits 35th Day as Citizens Risk Their Lives Reaching Out – Technology Bitcoin News

April 3, 2026
Friday File:  War, Inflation, Food, Gold, and Uncle Warren

Friday File: War, Inflation, Food, Gold, and Uncle Warren

April 3, 2026
Children raised in the 1960s and 70s developed their resilience the same way muscle develops under resistance — not by being protected from the load but by being required to carry it, repeatedly, without assistance, until the carrying became the unremarkable default rather than the exceptional achievement

Children raised in the 1960s and 70s developed their resilience the same way muscle develops under resistance — not by being protected from the load but by being required to carry it, repeatedly, without assistance, until the carrying became the unremarkable default rather than the exceptional achievement

April 3, 2026
The Benefits of Red Light Therapy: Expert-Approved Advice

The Benefits of Red Light Therapy: Expert-Approved Advice

April 3, 2026
FeeOnlyNews.com

Get the latest news and follow the coverage of Business & Financial News, Stock Market Updates, Analysis, and more from the trusted sources.

CATEGORIES

  • Business
  • Cryptocurrency
  • Economy
  • Financial Planning
  • Investing
  • Market Analysis
  • Markets
  • Money
  • Personal Finance
  • Startups
  • Stock Market
  • Trading

LATEST UPDATES

  • Fires Break Out in Southern California, Scorch Over 2,000 Acres
  • Checking a bag on United Airlines now costs $10 more as Iran war sends jet fuel costs up nearly 100%
  • Iran’s Internet Blackout Hits 35th Day as Citizens Risk Their Lives Reaching Out – Technology Bitcoin News
  • Our Great Privacy Policy
  • Terms of Use, Legal Notices & Disclaimers
  • About Us
  • Contact Us

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.

Welcome Back!

Sign In with Facebook
Sign In with Google
Sign In with Linked In
OR

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.