Agentic Browser Security: Indirect Prompt Injection in Perplexity Comet
Created 11/26/2025 at 3:16:40 PM
Visit a Reddit post with Comet and ask it to summarize the thread, and malicious instructions in a post there can trick Comet into accessing web pages in another tab to extract the user's email address, then perform all sorts of actions like triggering an account recovery flow and grabbing the resulting code from a logged in Gmail session.
llmsecurityprompt-injectionai
Public