OpenAI's new Atlas browser may have some extremely concerning security
issues, experts warn - here's what we know
Date:
Thu, 23 Oct 2025 12:02:00 +0000
Description:
Atlas, Comet, Fellou are all susceptible to indirect prompt injection, so be careful.
FULL STORY ======================================================================All agentic AI browsers are susceptible to indirect prompt injections Only use agentic browsing when youre not handling sensitive info We could need to rethink how browsers work, and how we use them
Just days after OpenAI released Atlas , its take on the web browser, the company is battling to maintain its reputation amid security concerns.
The Chromium-based browser which has a built-in AI agent for web navigation and automation, has been found vulnerable to indirect prompt injection, which means malicious commands can be hidden within web content to manipulate the agentic features.
As a result, cybercriminals could alter the behavior of the browser without having to directly address OpenAIs technology, and users could be susceptible to data leaks. OpenAIs Atlas could be vulnerable to attacks
The warning comes from a new report from Brave - but its not just Atlas that could face these challenges, but rather any AI browser, including Perplexitys Comet.
AI-powered browsers that can take actions on your behalf are powerful yet extremely risky, the researchers wrote.
Brave explained the core problem stems from the fact that AI browsers not
only use trusted user input, but they must also use untrusted web content to form prompts. Even malicious comments on sites like Reddit could trigger actions with unintended consequences.
In the meantime, Brave recommends separating normal browsing from agentic browsing through browsers like Atlas, Comet and Fellou, using them only when its beneficial or necessary.
Sessions handling sensitive information, like banking and communications, are probably best kept to your regular browser.
Braves researchers also noted that, where possible, users should set up the
AI to require explicit user confirmation before carrying out autonomous
tasks.
Nevertheless, the problem seems to be a much broader one. Indirect prompt injection is not an isolated issue, but a systemic challenge facing the
entire category of AI-powered browsers, the researchers wrote.
Brave promises to bring longer-term solutions for users to maintain maximum security going forward, but its clear a total overhaul to how browsers work and how we interact with them could be needed.
Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the
Follow button!
And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.
======================================================================
Link to news story:
https://www.techradar.com/pro/openais-new-atlas-browser-may-have-some-extremel y-concerning-security-issues-experts-warn
--- Mystic BBS v1.12 A49 (Linux/64)
* Origin: tqwNet Technology News (1337:1/100)