Researchers at Zenity Labs discovered flaws affecting multiple AI browsers, including Perplexity’s Comet. Before being patched, an attacker could exploit them via a legitimate calendar invite, using a prompt injection to force the AI browser to act against its user. (Image via Getty)
Through a simple calendar invite, AI browsers like Comet can be directed to access local file systems, browse directories, open and read files, and exfiltrate data.
Close-up of phone screen displaying icon for Anthropic Claude app, a Large Language Model (LLM) powered generative artificial intelligence chatbot. (Photo by Smith Collection/Gado/Getty Images)
Minnesota Gov. Tim Walz speaks during a press conference at the State Capitol building on Jan. 5, 2026 in St. Paul, Minnesota. (Stephen Maturen / Getty Images)
U.S. Navy Corpsmen assigned to Task Force Ashland, I Marine Expeditionary Force and Royal Thai Navy service members conduct tactical combat casualty care at Hat Yao Beach, Rayong, Thailand, Feb. 25, 2026. (U.S. Air Force photo by Senior Airman Austin Salazar)
A photo taken on March 31, 2023 in Manta, near Turin, shows a computer screen with the home page of the artificial intelligence OpenAI web site, displaying its chatGPT robot. (Photo by Marco BERTORELLO / AFP) (Photo by MARCO BERTORELLO/AFP via Getty Images)
Darío Gil, former SVP of IBM Research, is seen during the inauguration of Europe’s first IBM Quantum Data Center on Oct. 1, 2024 in Ehningen, Germany. The tech industry veteran now serves as the Energy Department’s under secretary for science and director of the Genesis Mission. (Photo by Thomas Niedermueller/Getty Images)
U.S. Paratroopers assigned to the 1st Brigade Combat Team, 82nd Airborne Division, conduct an airborne operation from a CH-47 Chinook at Sicily Drop Zone, Fort Bragg, North Carolina, Feb. 12, 2026. (U.S. Army photo by Capt. Alvin Cade Jr.)
This photograph shows a figurine in front of the logo of the US artificial intelligence safety and research company Anthropic during a photo session in Paris on Feb. 13, 2026. (Photo by JOEL SAGET / AFP)
The Health and Human Services seal on a door of the office building in downtown Washington DC on April 1, 2025. (Photo by Robb Hill for The Washington Post via Getty Images)
The Claude AI logo is displayed on the screen of a smartphone placed on a reflective surface onto which lines of computer code are projected. Following the release of Claude Opus 4.6 on February 5, Anthropic continues to challenge its main competitors in the generative AI market in Creteil, France, on February 6, 2026. (Photo by Samuel Boivin/NurPhoto via Getty Images)