Crafted URLs can trick OpenAI Atlas into running dangerous commands

OpenAI Atlas, a web browser with built-in ChatGPT, is vulnerable to prompt injection attacks. Attackers can disguise malicious instructions as URLs, tricking the browser into executing them as trusted commands. This vulnerability allows attackers to override user intent, bypass safety checks, and perform harmful actions.

Edward Kiledjian @ekiledjian