One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and Claude
The Hacker News
Read full postSecurity researchers at Forever Security demonstrated that a single browser extension could hijack AI assistants in Chrome, Comet, Edge, Opera Neon, and Claude in Chrome, enabling unauthorized control and data access. The exploit abuses common extension permissions to inject code into trusted AI web pages, allowing attackers to command the AI's browser 'body'. Google and Microsoft have patched some vulnerabilities, while others remain unpatched and unassigned CVEs.



