Mozilla Warns GitHub Repos Can Trick AI Tools Into Hacking Your PC
Mozilla's 0din security team has discovered widespread prompt injection AI malware plaguing the GitHub ecosystem. This exploit, dubbed "indirect prompt injection," isn't the first of its kind. Previously, we've seen prompt injection malware impact the OpenAI ChatGPT Alias browser, and Microsoft has warned that the same could happen with Copilot.
In line with wider industry trends indicating Anthropic's Claude AI leads with developers, this exploit is only reported for Claude. However, the nature of the attack by no means limits it to Claude specifically, and outdated models will likely be even more vulnerable. It's a frightening prompt injection AI exploit as well, since it prompts the bot to download thinly-disguised malware from GitHub and proceed to fully compromise the user's system and GitHub credentials.
đ¨ JAILBREAK ALERT đ¨
OPENAI: PWNED đ
ATLAS-BROWSER: LIBERATED đ
WOW! There's a new AI browser on the block! Has some hefty guardrails in play, but...
Copyright of this story solely belongs to hothardware.com. To see the full text click HERE