Perplexity Comet Artificial Intelligence browser vulnerable to prompt injection exploit

Brave published details of a vulnerability in Perplexity’s Comet Artificial Intelligence browser that can be triggered when the browser summarizes a page, allowing injected prompts to access data in other open tabs.

Brave published details about a security issue affecting Comet, Perplexity’s Artificial Intelligence browser, that could allow an attacker to inject a prompt into the browser and access data held in other open browser tabs. The article was published on August 26, 2025 and is credited to Search Engine Journal. The reporting links to Brave’s blog post for the technical disclosure and includes a source link to Search Engine Journal’s coverage.

According to the coverage, the vulnerability can be activated when a user asks the Comet Artificial Intelligence browser to summarize a web page. In that workflow the large language model will read the web page and process content on the page. Brave’s writeup says the model will also process any embedded prompts present on the page that command the model to take actions affecting open tabs. Brave’s account explains how those embedded instructions can be treated as input to the model, creating a prompt injection vector that was sufficient to extract or expose data from other tabs.

The article quotes Brave’s explanation of the vulnerability but the quoted passage is truncated in this report. Readers seeking full technical details, example exploit chains, and Brave’s mitigation advice are directed to Brave’s original blog post, which is linked in the coverage. Beyond the summary of Brave’s disclosure provided here, the report does not state whether Perplexity has released a patch or what immediate mitigations are available to users; the linked Brave post contains the disclosure material referenced by Search Engine Journal.

70

Impact Score

OpenAI launches Artificial Intelligence deployment consulting unit

OpenAI has created a new consulting and deployment business aimed at helping enterprises build and roll out Artificial Intelligence systems. The move mirrors a similar push by Anthropic and signals a broader effort by model providers to capture more of the enterprise services market.

SK Group warns DRAM shortages could curb memory use

SK Group chairman Chey Tae-won warned that customers may reduce memory consumption through infrastructure and software optimization if DRAM suppliers fail to raise output. Demand from Artificial Intelligence data centers is keeping the market tight as memory makers weigh expansion against the long timelines for new fabs.

BitUnlocker bypasses TPM-only Windows 11 BitLocker

Intrinsec disclosed BitUnlocker, a downgrade attack that can bypass TPM-only Windows 11 BitLocker protections with physical access to a machine. The technique abuses a flaw in Windows recovery and deployment components and relies on older trusted boot code.

Micron samples 256 GB DDR5 9200 MT/s RDIMM server modules

Micron has begun sampling 256 GB DDR5 RDIMM server modules built on its 1-gamma technology to key ecosystem partners. The company positions the new modules as a higher-speed, more power-efficient option for scaling next-generation Artificial Intelligence and HPC infrastructure.

Contact Us

Got questions? Use the form to contact us.

Contact Form

Clicking next sends a verification code to your email. After verifying, you can enter your message.