HashJack Attack Exploits AI Browsers via URL Manipulation

HashJack Attack Exploits AI Browsers via URL Manipulation

First seen 30 Nov 2025, 12:41 UTC TheregisterSchneierZdnetAnthropicInfosecurity-Magazine+3 76% similarity 16.1

Article Content

Browse articles
ThreatCluster

Cato Networks has identified a new cybersecurity vulnerability named 'HashJack' that allows attackers to manipulate AI browser assistants by embedding malicious prompts in URL fragments after the '#' symbol. This indirect prompt injection technique can weaponize legitimate websites, posing risks such as phishing and data theft for users of AI browsers like Perplexity AI's Comet, Microsoft's Copilot for Edge, and Google's Gemini for Chrome.

ThreatCluster AI How this analysis works

Community

Browse all →