Perplexity's Comet Browser Faces Prompt Injection Vulnerability

Perplexity AI's Comet browser recently faced a security challenge due to a prompt injection vulnerability. This issue allowed the AI-powered browser to execute malicious instructions embedded in web pages, posing significant security risks.
The vulnerability was discovered by a rival browser maker, which identified that Comet could be manipulated into performing unintended actions through indirect prompt injection attacks. These attacks exploit the AI's inability to differentiate between user instructions and harmful content on a webpage.
The flaw has been addressed as of August 13, 2025, although the patch details remain undisclosed. Despite the fix, concerns persist about the security of AI-driven browsers, highlighting the need for robust defenses against such vulnerabilities.
This incident underscores the ongoing challenges in ensuring the security of agentic AI systems, which are increasingly being integrated into web browsers to automate tasks and enhance user experience.
We hope you enjoyed this article.
Consider subscribing to one of our newsletters like Cybersecurity AI Weekly or Daily AI Brief.
Also, consider following us on social media:
More from: Cybersecurity
Subscribe to Cybersecurity AI Weekly
Weekly newsletter about AI in Cybersecurity.
Market report
AI’s Time-to-Market Quagmire: Why Enterprises Struggle to Scale AI Innovation
The 2025 AI Governance Benchmark Report by ModelOp provides insights from 100 senior AI and data leaders across various industries, highlighting the challenges enterprises face in scaling AI initiatives. The report emphasizes the importance of AI governance and automation in overcoming fragmented systems and inconsistent practices, showcasing how early adoption correlates with faster deployment and stronger ROI.
Read more