Israeli researchers say the newly discovered 'PleaseFix' vulnerabilities can compromise AI-powered browsers from Google, Microsoft, OpenAI, Anthropic and Perplexity, enabling account takeovers and even remote control of victims' computers

AI browsers from top vendors remain vulnerable to prompt injection attacks despite multiple security guardrails, according to new research.

Researchers at security firm Zenity found more than a dozen flaws in AI browsers—and managed to get OpenAI’s Atlas to make an unauthorized Amazon purchase.