Researchers Find Severe #Vulnerabilities in #AIBrowser

New research from the web browser company #Brave, should dampen the enthusiasm for the tech. In a report the company outlined glaring #securityflaws with Perplexity’s Comet Browser, which allows users to take screenshots on websites so a built-in AI can analyze them & answer questions. The screenshot feature can be a vector for an attack known as a prompt injection, in which a hacker delivers a hidden message to an AI to carry out harmful

Comet browser faces multiple security vulnerabilities from prompt injection: Perplexity's Comet browser shows critical security flaws allowing data theft through prompt injection attacks disclosed by Brave and LayerX from August through October 2025. https://ppc.land/comet-browser-faces-multiple-security-vulnerabilities-from-prompt-injection/ #CometBrowser #SecurityFlaws #DataTheft #CyberSecurity #PromptInjection
Comet browser faces multiple security vulnerabilities from prompt injection

Perplexity's Comet browser shows critical security flaws allowing data theft through prompt injection attacks disclosed by Brave and LayerX from August through October 2025.

PPC Land
Whistle-Blower Sues Meta Over Claims of WhatsApp Security Flaws

In a lawsuit filed Monday, the former head of security for the messaging app accused the social media company of putting billions of users at risk. Meta pushed back on his claim.

The New York Times
🚨 Oh no! The CVE program is floundering like a fish out of water because the #DHS forgot to hit the "renew" button. 🙈 Apparently, keeping track of security flaws is a bit too complicated for the grown-ups in charge. 🤷‍♂️
https://www.csoonline.com/article/3963190/cve-program-faces-swift-end-after-dhs-fails-to-renew-contract-leaving-security-flaw-tracking-in-limbo.html #CVEprogram #securityflaws #technews #cybersecurity #fail #HackerNews #ngated
CVE program averts swift end after CISA executes 11-month contract extension

After DHS did not renew its funding contract for reasons unspecified, MITRE’s 25-year-old Common Vulnerabilities and Exposures (CVE) program was slated for an abrupt shutdown on April 16, which would have left security flaw tracking in limbo. CISA stepped in to provide a bridge.

CSO Online
CVE program averts swift end after CISA executes 11-month contract extension

After DHS did not renew its funding contract for reasons unspecified, MITRE’s 25-year-old Common Vulnerabilities and Exposures (CVE) program was slated for an abrupt shutdown on April 16, which would have left security flaw tracking in limbo. CISA stepped in to provide a bridge.

CSO Online
Windows 10 security flaws leave millions vulnerable

Microsoft patches 12 critical flaws, but six have already been exploited by criminals. Kurt “CyberGuy" Knutsson says updating your system is only a short-term fix.

Fox News