Technology NewsTechnology NewsTechnology News
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Reading: AI Browser Agents Face Threats as Researchers Expose Manipulation Risks
Share
Font ResizerAa
Technology NewsTechnology News
Font ResizerAa
Search
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Follow US
  • Cookie Policy (EU)
  • Contact
  • About
© 2025 NEWSLINKER - Powered by LK SOFTWARE
CybersecurityTechnology

AI Browser Agents Face Threats as Researchers Expose Manipulation Risks

Highlights

  • AI browser agents can be misled by manipulated web content.

  • Researchers found simple techniques could trick tools like ChatGPT Atlas.

  • Few U.S. firms now employ robust AI governance or protections.

Kaan Demirel
Last updated: 28 October, 2025 - 8:20 pm 8:20 pm
Kaan Demirel 3 weeks ago
Share
SHARE

Automated AI browser agents have rapidly entered daily use, executing tasks such as online shopping and resume screening. As these powerful tools from companies like OpenAI and Perplexity AI handle increasingly sensitive data, security concerns are escalating. Experts warn of potential manipulation in how these browsers interpret web content, which could significantly affect the accuracy and trustworthiness of their outputs. The growing reliance on AI for crucial decision-making raises questions about oversight and safeguards, with some observers noting that vendors and companies may be unprepared for underlying risks. As organizations race to capitalize on AI’s efficiency, the implications of corrupted data sources demand urgent attention.

Contents
How Can Web Content Manipulate AI Browser Agents?What Risks Do These Manipulation Tactics Pose?Have Vendors and Standards Bodies Responded Effectively?

Earlier reports on AI browser agents primarily focused on bias, hallucinations, and the challenges of keeping models updated with current data. However, concrete instances of attackers deliberately manipulating data ingress points appeared less frequently. Previous recommendations suggested routine validation and external audits, but rarely outlined technical details that hackers could exploit. This new research highlights more sophisticated, targeted techniques to trick AI systems, expanding the threat landscape. Response protocols from major vendors like OpenAI have also historically lagged behind those of mature search engines, highlighting slow adoption of established web protections.

How Can Web Content Manipulate AI Browser Agents?

Recent research by SPLX has revealed that ChatGPT Atlas, ChatGPT, and Perplexity AI agents can be deceived into processing different web content than that shown to human users. By detecting browser headers unique to AI crawlers, websites can deliver altered pages filled with misleading or malicious information. SPLX demonstrated this by serving a positive profile to human visitors while AI agents received negative, false narratives about the subject.

“It’s very easy to serve different content based on the header,”

said SPLX AI engineer Ivan Vlahov, highlighting how simple it is to exploit this inconsistency.

What Risks Do These Manipulation Tactics Pose?

The ability to stealthily misinform AI agents has wide-reaching implications. Attackers could orchestrate smear campaigns, manipulate automated hiring systems, or mislead browsers about products and discounts, knowing that AI and human users will see entirely different web pages. In a controlled experiment, SPLX’s team showed that a weak job candidate’s webpage inflated qualifications only when visited by AI, tricking browser agents into awarding top scores.

“Even if the chatbot says something bad about a person…it feels like a hallucination,”

Vlahov observed, noting that users may mistake manipulation for typical AI model errors, further complicating detection and accountability.

Have Vendors and Standards Bodies Responded Effectively?

While search engines like Google have long penalized cloaked content, OpenAI’s current terms and detection methods do not sufficiently address these new attacks. Other firms, including LayerX, report that ChatGPT Atlas lacks meaningful anti-phishing measures, and even exposes users to possible token theft by not securing authentication data as browsers like Chrome or Edge do. OpenAI has not issued substantial guidance or remediation steps in response to SPLX’s and other researchers’ findings. Meanwhile, global standards organizations note that few U.S. companies enforce AI governance or restrict unauthorized tool usage, potentially allowing vulnerabilities to persist in business operations.

Effective deployment of AI browser agents hinges on trust in their data sources. As research shows, adversaries can easily manipulate what these tools “see,” threatening both accuracy and reliability. Unlike traditional search engines, AI model vendors have not fully implemented protective measures against cloaking and data poisoning. The persistent gap in governance frameworks and technical standards points to a need for companies to audit not only their AI systems, but also the web content streams those AIs depend on. Organizations should prioritize building out verification, monitoring, and reporting mechanisms tailored to the unique needs of AI browser workflows. For professionals and users, remaining alert to these risks—and demanding clearer disclosure and tool safeguards—may diminish misuse and encourage responsible integration of automation in daily tasks.

You can follow us on Youtube, Telegram, Facebook, Linkedin, Twitter ( X ), Mastodon and Bluesky

You Might Also Like

Klarna Expands Banking Services and Reports Strong Revenue Growth

Leaders Tackle A.I. Hurdles by Focusing on Data and Clear Goals

Hackers Hijack Ray AI Framework for Global Cryptojacking Operation

European Innovation Drives Progress in Tech, Aerospace, and Biotech

Cloudflare Outage Disrupts OpenAI, Spotify, and X Services

Share This Article
Facebook Twitter Copy Link Print
Kaan Demirel
By Kaan Demirel
Kaan Demirel is a 28-year-old gaming enthusiast residing in Ankara. After graduating from the Statistics department of METU, he completed his master's degree in computer science. Kaan has a particular interest in strategy and simulation games and spends his free time playing competitive games and continuously learning new things about technology and game development. He is also interested in electric vehicles and cyber security. He works as a content editor at NewsLinker, where he leverages his passion for technology and gaming.
Previous Article Tesla Faces Scrutiny as “Mad Max” Mode Raises Driver Responsibility Questions
Next Article Tesla Directs Focus on Musk’s Performance-Based Pay and Voting Power

Stay Connected

6.2kLike
8kFollow
2.3kSubscribe
1.7kFollow

Latest News

Retailers Launch Early Garmin Watch Deals Before Black Friday
Wearables
Tesla Expands Full Self-Driving Testing Across Central Europe
Electric Vehicle
EBIND Empowers AI Agents to Manage Complex Multimodal Data
AI
Robotics Experts Identify Sensor Fusion and Edge AI as Key Trends
AI
Tesla Reaches 75,000 Superchargers with Tasmanian Milestone
Electric Vehicle
NEWSLINKER – your premier source for the latest updates in ai, robotics, electric vehicle, gaming, and technology. We are dedicated to bringing you the most accurate, timely, and engaging content from across these dynamic industries. Join us on our journey of discovery and stay informed in this ever-evolving digital age.

ARTIFICAL INTELLIGENCE

  • Can Artificial Intelligence Achieve Consciousness?
  • What is Artificial Intelligence (AI)?
  • How does Artificial Intelligence Work?
  • Will AI Take Over the World?
  • What Is OpenAI?
  • What is Artifical General Intelligence?

ELECTRIC VEHICLE

  • What is Electric Vehicle in Simple Words?
  • How do Electric Cars Work?
  • What is the Advantage and Disadvantage of Electric Cars?
  • Is Electric Car the Future?

RESEARCH

  • Robotics Market Research & Report
  • Everything you need to know about IoT
  • What Is Wearable Technology?
  • What is FANUC Robotics?
  • What is Anthropic AI?
Technology NewsTechnology News
Follow US
About Us   -  Cookie Policy   -   Contact

© 2025 NEWSLINKER. Powered by LK SOFTWARE
Welcome Back!

Sign in to your account

Register Lost your password?