Perplexity’s Comet Browser Hijacked Using Calendar Invite to Exfiltrate Sensitive Data

A poisoned Google Calendar invite is all it takes to weaponize Perplexity’s Comet browser. Security researchers at Zenity Labs have discovered a critical vulnerability, dubbed PerplexedBrowser, that tricks Comet’s AI agent into reading local files and stealing credentials. This zero-click attack requires only that the user ask the agent to handle a routine meeting invite, […]

The post Perplexity’s Comet Browser Hijacked Using Calendar Invite to Exfiltrate Sensitive Data appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: