All News
Logo

Notification Center

No messages!

Notification Center

No messages!

Categories

    • •All “Technologies” Subcategories
    • •Artificial Intelligence
    • •Cars
    • •Gadgets
    • •Internet
    • •Space
    • •New Energy
    • •All “Science” Subcategories
    • •Physics & Chemistry
    • •Sun
    • •Medicine & Biology
    • •Astronomy & Astrophysics
    • •History & Archeology
    • •Quantum physics
    • •Genetics
    • •All “Planet” Subcategories
    • •Oceans
    • •Animals
    • •Discovery
    • •Flora
    • •Unusual Phenomena
    • •Weather & Ecology
    • •Antarctica
    • •All “Society” Subcategories
    • •Music
    • •Records
    • •Art
    • •Architecture
    • •Gossip
    • •Disclosure
    • •Films
    • •Fashion
    • •Food & Kitchen
    • •All “Money” Subcategories
    • •Taxes
    • •Auctions
    • •Banks & Currency
    • •Showbiz
    • •Cryptocurrency
    • •Stock Market
    • •Companies
    • •All “World Events” Subcategories
    • •Summary
    • •Breaking news
    • •International Organizations
    • •Summit Meetings
    • •Upcoming global events
    • •Trump U.S.
    • •All “Human” Subcategories
    • •Meow and woof
    • •Consciousness
    • •Design
    • •Youth
    • •Psychology
    • •Education
    • •Trips
    • •Languages

Follow us

  • •Technologies
  • •Science
  • •Planet
  • •Society
  • •Money
  • •World Events
  • •Human

Share

  • •Artificial Intelligence
  • •Cars
  • •Gadgets
  • •Internet
  • •Space
  • •New Energy
  • About us
  • Terms of Use
  • Privacy Policy
  • Home
  • Technologies
  • Artificial Intelligence

Emergence of 'Man-in-the-Prompt' Cyber Threat Highlights Need for Enhanced Digital Security Measures

20:02, 31 July

Edited by: Veronika Radoslavskaya

The digital landscape is continually evolving, bringing with it new challenges in cybersecurity. A recent development, termed the 'Man-in-the-Prompt' attack, underscores the necessity for proactive digital wellness and a reassessment of our security strategies.

This attack method exploits browser extensions to inject malicious instructions into AI tools, potentially compromising sensitive user data. The vulnerability arises from how these AI tools interact with the Document Object Model (DOM) of web pages. Any browser extension with basic DOM access can read or alter what users input into AI prompts, even without special permissions.

Researchers have demonstrated proof-of-concept attacks on major platforms, showing how an extension with minimal permissions could inject a prompt, extract the AI's response, and remove the chat history from the user's view. For AI tools integrated with services like Google Workspace, the attack could access and exfiltrate sensitive user data, including emails and contacts.

To fortify against these threats, organizations are advised to adopt a multi-layered approach. This includes monitoring DOM interactions within AI tools to detect suspicious activity, blocking risky extensions based on their behavior, and actively preventing prompt tampering and data exfiltration in real-time at the browser level.

By embracing a proactive stance, we can transform potential threats into opportunities for growth and understanding. It's about recognizing that our digital choices shape not only our individual experiences but also the world around us.

Sources

  • TecMundo

  • HackRead

  • arXiv

Read more news on this topic:

02 August

UB Researchers Develop E-Textile Enhancing Human-Robot Interaction

01 August

Higgsfield AI's ReelMagic Creates 10-Minute Videos in 10 Minutes

31 July

Elon Musk's xAI Introduces 'Imagine' Feature for Grok Chatbot

Did you find an error or inaccuracy?

We will consider your comments as soon as possible.

News rating