We collect cookies to analyze our website traffic and performance; we never collect any personal data. Cookies Policy
Accept
AsolicaAsolicaAsolica
  • Home
  • Business
  • Crypto
  • Finance
  • Marketing
  • Startup
Reading: Consultants warn OpenAI’s ChatGPT Atlas has safety vulnerabilities that would flip it towards customers—revealing delicate knowledge, downloading malware, and worse | Fortune
Share
Font ResizerAa
AsolicaAsolica
Font ResizerAa
  • Home
  • Business
  • Crypto
  • Finance
  • Marketing
  • Startup
Follow US
© 2025 Asolica News Network. All Rights Reserved.
Asolica > Blog > Business > Consultants warn OpenAI’s ChatGPT Atlas has safety vulnerabilities that would flip it towards customers—revealing delicate knowledge, downloading malware, and worse | Fortune
Business

Consultants warn OpenAI’s ChatGPT Atlas has safety vulnerabilities that would flip it towards customers—revealing delicate knowledge, downloading malware, and worse | Fortune

Admin
Last updated: October 23, 2025 10:30 am
Admin
2 months ago
Share
Consultants warn OpenAI’s ChatGPT Atlas has safety vulnerabilities that would flip it towards customers—revealing delicate knowledge, downloading malware, and worse | Fortune
SHARE

Contents
  • AI browsers create a brand new assault floor
  • Customers might underestimate data-sharing dangers

Cybersecurity specialists are warning that OpenAI’s new browser, ChatGPT Atlas, could possibly be susceptible to malicious assaults that would flip AI assistants towards customers, doubtlessly stealing delicate knowledge and even draining their financial institution accounts.

The AI firm launched Atlas on Tuesday, with the purpose of introducing an AI browser that may finally assist customers execute duties throughout the web in addition to seek for solutions. Somebody planning a visit, for instance, might additionally use Atlas to seek for concepts, plan an itinerary, after which ask it to e book flights and lodging immediately.

ChatGPT Atlas has a number of new options, reminiscent of “browser memories,” which permit ChatGPT to recollect key particulars from a consumer’s internet shopping to enhance chat responses and provide smarter options, and an experimental “agent mode,” the place ChatGPT can take over shopping and interacting with webpages for a consumer.

The browser is a part of a wider push by the corporate to broaden ChatGPT from an app right into a broader computing platform. It additionally places OpenAI extra immediately in competitors with Google and Microsoft, in addition to newer gamers reminiscent of Perplexity, which has launched an AI-powered browser of its personal, known as Comet. (Google has additionally built-in its Gemini AI mannequin into its Chrome browser.)

Nonetheless, cybersecurity specialists warn that every one present AI browsers pose new safety dangers, significantly on the subject of what is known as “prompt injection”—a sort of assault the place malicious directions are given to an AI system to make it behave in unintended methods, reminiscent of revealing delicate info or performing dangerous actions.

“There will always be some residual risks around prompt injections because that’s just the nature of systems that interpret natural language and execute actions,” George Chalhoub, assistant professor at UCL Interplay Centre, advised Fortune. “In the security world, it’s a bit of a cat-and-mouse game, so we can expect to see other vulnerabilities emerge.”

In a publish on X, Dane Stuckey, OpenAI’s Chief Info Safety Officer, stated the corporate was “very thoughtfully researching and mitigating” the dangers round immediate injections.

“Our long-term goal is that you should be able to trust ChatGPT agent to use your browser, the same way you’d trust your most competent, trustworthy, and security-aware colleague or friend,” he wrote. “For this launch, we’ve performed extensive red-teaming, implemented novel model training techniques to reward the model for ignoring malicious instructions, implemented overlapping guardrails and safety measures, and added new systems to detect and block such attacks. However, prompt injection remains a frontier, unsolved security problem, and our adversaries will spend significant time and resources to find ways to make ChatGPT agent fall for these attacks.”

Stuckey stated the corporate had carried out a number of measures to mitigate dangers and shield customers, together with constructing speedy response techniques to detect and block assault campaigns rapidly, and persevering with to spend money on analysis, safety, and security to strengthen mannequin robustness and infrastructure defenses. The corporate additionally has options reminiscent of “logged out mode” which lets ChatGPT act with out account credentials, and “Watch Mode” to assist preserve customers conscious and in management when the agent operates on delicate websites.

When reached for remark, OpenAI referred Fortune to Stuckey’s feedback.

AI browsers create a brand new assault floor

A number of social media customers have shared early examples of efficiently utilizing a lot of these immediate injection assaults towards ChatGPT Atlas. One consumer demonstrated how Atlas could possibly be exploited by way of clipboard injection. By embedding hidden “copy to clipboard” actions in buttons on a webpage, the consumer confirmed that when the AI agent navigates the location, it might unknowingly overwrite the consumer’s clipboard with malicious hyperlinks. Later, if the consumer pastes usually, they could possibly be redirected to phishing websites and have delicate login info stolen, together with MFA codes.

In Comet, Courageous additionally discovered that attackers can conceal instructions in photos which might be executed when a consumer takes a screenshot, whereas in Fellou—one other agentic AI browser—merely navigating to a malicious webpage can set off the AI to observe dangerous directions.

“These are significantly more dangerous than traditional browser vulnerabilities,” Chalhoub stated. “With an AI system, it’s actively reading content and making decisions for you. So the attack surface is much larger and really invisible. Whereas in the past, with a normal browser, you needed to take a number of actions to be attacked or infected.”

“The security and privacy risks involved here still feel insurmountably high to me,” U.Ok.-based programmer Simon Willison stated of ChatGPT Atlas in his weblog. “I’d like to see a deep explanation of the steps Atlas takes to avoid prompt injection attacks. Right now, it looks like the main defense is expecting the user to carefully watch what agent mode is doing at all times!”

Customers might underestimate data-sharing dangers

There are additionally questions round privateness and knowledge retention. Notably, ChatGPT Atlas asks customers to choose in to share their password keychains, one thing that could possibly be exploited by malicious assaults aimed on the browser’s agent.

“The challenge is that if you want the AI assistant to be useful, you need to give it access to your data and your privileges, and if attackers can trick the AI assistant, it is as if you were tricked,” Srini Devadas, MIT Professor and CSAIL Principal Investigator, stated.

Devadas stated that the primary privateness concern with AI browsers is the potential leakage of delicate consumer knowledge, reminiscent of private or monetary info, when non-public content material is shared with AI servers. He additionally warned that AI browsers would possibly present incorrect info as a result of mannequin hallucinations and that process automation could possibly be exploited for malicious functions, like dangerous scripting.

“The integration layer between browsing and AI is a new attack surface,” he stated.

Chalhoub added that it could possibly be straightforward for much less technically literate customers to obtain these browsers and assume privateness is constructed into the product.

“Most users who download these browsers don’t understand what they’re sharing when they use these agents, and it’s really easy to import all of your passwords and browsing history from Chrome, and I don’t think users realize it, so they’re not really opting in knowingly,” he stated.

Trump desires his title on the Washington Commanders’ deliberate $3.7 billion stadium, and he has ‘loads of playing cards to play,’ report says | Fortune
Campbell’s fires exec after leaked recording berating ‘poor’ clients and ‘bioengineered meat’ prompts outrage and investigation | Fortune
The Pentagon all of a sudden ordered all its high brass from around the globe to a gathering. Trump wasn’t a part of the preliminary plan however will now attend | Fortune
‘Santa Rally’ stalls although a December minimize from the Fed is a close to certainty | Fortune
NFL workplace shooter had low-level CTE, NYC medical expert finds | Fortune
TAGGED:AtlasChatGPTDatadownloadingExpertsFortuneMalwareOpenAIsSecuritysensitiveturnusersrevealingvulnerabilitieswarnworse
Share This Article
Facebook Email Print
Previous Article Crypto has turn out to be Kim Jong-Un’s lifeline — and Russia’s secret weapon Crypto has turn out to be Kim Jong-Un’s lifeline — and Russia’s secret weapon
Next Article After plunging 33% is the Glencore share value now flashing ‘Buy, Buy’? After plunging 33% is the Glencore share value now flashing ‘Buy, Buy’?
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe
TelegramFollow
Popular News
Trump asks Justice Division to probe meatpackers on costs | Fortune
Business

Trump asks Justice Division to probe meatpackers on costs | Fortune

Admin
By Admin
1 month ago
Walmart is promoting a 'mild, easy-to-pack' rain jacket for simply $20 proper now
Amazon, Walmart, and Goal make vacation return coverage modifications
How a lot do you want in a FTSE 100 tracker fund to focus on £1,500 in month-to-month passive earnings?
Here is what number of Shell shares it takes to earn a £1,000 second earnings

You Might Also Like

Jeffrey Katzenberg says laws to guard youngsters from on-line harms is unlikely: ‘It took 80 years’ to go seatbelt legal guidelines

Jeffrey Katzenberg says laws to guard youngsters from on-line harms is unlikely: ‘It took 80 years’ to go seatbelt legal guidelines

3 months ago
Large 5 AI ‘hyperscalers’ are more and more utilizing debt to fund their operations, Financial institution of America says | Fortune

Large 5 AI ‘hyperscalers’ are more and more utilizing debt to fund their operations, Financial institution of America says | Fortune

3 weeks ago
I requested ChatGPT for a 5-stock FTSE 100 portfolio to assist me retire early. That is what it stated…

I requested ChatGPT for a 5-stock FTSE 100 portfolio to assist me retire early. That is what it stated…

4 weeks ago
AI is altering how workers prepare—and beginning to scale back how a lot coaching they want | Fortune

AI is altering how workers prepare—and beginning to scale back how a lot coaching they want | Fortune

1 month ago
about us

Welcome to Asolica, your reliable destination for independent news, in-depth analysis, and global updates.

  • Home
  • Business
  • Crypto
  • Finance
  • Marketing
  • Startup
  • About Us
  • Contact Us
  • Privacy Policy
  • Cookie Policy
  • Disclaimer
  • Terms & Conditions

Find Us on Socials

© 2025 Asolica News Network. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?