Skip to content
HashJack Attack Exploits AI Browsers and Assistants

HashJack Attack Exploits AI Browsers and Assistants

First seen 5 Dec 2025, 19:45 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

Security researchers at Cato Networks have identified a new attack technique named HashJack, which targets AI browsers and agentic AI systems. This indirect prompt injection method allows attackers to manipulate these systems into delivering phishing links, sharing sensitive data, or providing misleading information. The attack leverages malicious instructions hidden in the #fragment of URLs that appear legitimate.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 194d ago How this analysis works

More articles in this cluster (2)