SquareX has revealed a hidden MCP API in the Comet AI browser that allows extensions to execute arbitrary commands on users' devices. This API bypasses security measures found in traditional browsers, posing risks to…
SquareX claims to have identified a method to exploit a hidden Comet API for executing local commands. Perplexity disputes this assertion, labeling the research as fake. The disagreement highlights ongoing tensions in…
SquareX claims to have discovered a vulnerability in the Comet browser that allows for the abuse of a hidden API to execute local commands. Perplexity disputes this claim, labeling the research as fake. The disagreement…
SquareX researchers have identified a hidden MCP API in the Comet AI browser that enables embedded extensions to execute local commands and potentially take full control of users' devices. This API circumvents…