Technology NewsTechnology NewsTechnology News
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Reading: AI Browser Agents Face Threats as Researchers Expose Manipulation Risks
Share
Font ResizerAa
Technology NewsTechnology News
Font ResizerAa
Search
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Follow US
  • Cookie Policy (EU)
  • Contact
  • About
© 2025 NEWSLINKER - Powered by LK SOFTWARE
CybersecurityTechnology

AI Browser Agents Face Threats as Researchers Expose Manipulation Risks

Highlights

  • AI browser agents can be misled by manipulated web content.

  • Researchers found simple techniques could trick tools like ChatGPT Atlas.

  • Few U.S. firms now employ robust AI governance or protections.

Kaan Demirel
Last updated: 28 October, 2025 - 8:20 pm 8:20 pm
Kaan Demirel 3 hours ago
Share
SHARE

Automated AI browser agents have rapidly entered daily use, executing tasks such as online shopping and resume screening. As these powerful tools from companies like OpenAI and Perplexity AI handle increasingly sensitive data, security concerns are escalating. Experts warn of potential manipulation in how these browsers interpret web content, which could significantly affect the accuracy and trustworthiness of their outputs. The growing reliance on AI for crucial decision-making raises questions about oversight and safeguards, with some observers noting that vendors and companies may be unprepared for underlying risks. As organizations race to capitalize on AI’s efficiency, the implications of corrupted data sources demand urgent attention.

Contents
How Can Web Content Manipulate AI Browser Agents?What Risks Do These Manipulation Tactics Pose?Have Vendors and Standards Bodies Responded Effectively?

Earlier reports on AI browser agents primarily focused on bias, hallucinations, and the challenges of keeping models updated with current data. However, concrete instances of attackers deliberately manipulating data ingress points appeared less frequently. Previous recommendations suggested routine validation and external audits, but rarely outlined technical details that hackers could exploit. This new research highlights more sophisticated, targeted techniques to trick AI systems, expanding the threat landscape. Response protocols from major vendors like OpenAI have also historically lagged behind those of mature search engines, highlighting slow adoption of established web protections.

How Can Web Content Manipulate AI Browser Agents?

Recent research by SPLX has revealed that ChatGPT Atlas, ChatGPT, and Perplexity AI agents can be deceived into processing different web content than that shown to human users. By detecting browser headers unique to AI crawlers, websites can deliver altered pages filled with misleading or malicious information. SPLX demonstrated this by serving a positive profile to human visitors while AI agents received negative, false narratives about the subject.

“It’s very easy to serve different content based on the header,”

said SPLX AI engineer Ivan Vlahov, highlighting how simple it is to exploit this inconsistency.

What Risks Do These Manipulation Tactics Pose?

The ability to stealthily misinform AI agents has wide-reaching implications. Attackers could orchestrate smear campaigns, manipulate automated hiring systems, or mislead browsers about products and discounts, knowing that AI and human users will see entirely different web pages. In a controlled experiment, SPLX’s team showed that a weak job candidate’s webpage inflated qualifications only when visited by AI, tricking browser agents into awarding top scores.

“Even if the chatbot says something bad about a person…it feels like a hallucination,”

Vlahov observed, noting that users may mistake manipulation for typical AI model errors, further complicating detection and accountability.

Have Vendors and Standards Bodies Responded Effectively?

While search engines like Google have long penalized cloaked content, OpenAI’s current terms and detection methods do not sufficiently address these new attacks. Other firms, including LayerX, report that ChatGPT Atlas lacks meaningful anti-phishing measures, and even exposes users to possible token theft by not securing authentication data as browsers like Chrome or Edge do. OpenAI has not issued substantial guidance or remediation steps in response to SPLX’s and other researchers’ findings. Meanwhile, global standards organizations note that few U.S. companies enforce AI governance or restrict unauthorized tool usage, potentially allowing vulnerabilities to persist in business operations.

Effective deployment of AI browser agents hinges on trust in their data sources. As research shows, adversaries can easily manipulate what these tools “see,” threatening both accuracy and reliability. Unlike traditional search engines, AI model vendors have not fully implemented protective measures against cloaking and data poisoning. The persistent gap in governance frameworks and technical standards points to a need for companies to audit not only their AI systems, but also the web content streams those AIs depend on. Organizations should prioritize building out verification, monitoring, and reporting mechanisms tailored to the unique needs of AI browser workflows. For professionals and users, remaining alert to these risks—and demanding clearer disclosure and tool safeguards—may diminish misuse and encourage responsible integration of automation in daily tasks.

You can follow us on Youtube, Telegram, Facebook, Linkedin, Twitter ( X ), Mastodon and Bluesky

You Might Also Like

AI Chatbots Prompt Concerns Over Mental Health Dangers

Waymo Expands Self-Driving Reach Across Cities and Highways

Attackers Exploit Flaw in Deprecated Windows Server Update Services

Google Delivers Massive Computing Power to Anthropic in New Deal

Cyber Attackers Target Overlooked Network Devices as Defenses Strengthen

Share This Article
Facebook Twitter Copy Link Print
Kaan Demirel
By Kaan Demirel
Kaan Demirel is a 28-year-old gaming enthusiast residing in Ankara. After graduating from the Statistics department of METU, he completed his master's degree in computer science. Kaan has a particular interest in strategy and simulation games and spends his free time playing competitive games and continuously learning new things about technology and game development. He is also interested in electric vehicles and cyber security. He works as a content editor at NewsLinker, where he leverages his passion for technology and gaming.
Previous Article Tesla Faces Scrutiny as “Mad Max” Mode Raises Driver Responsibility Questions
Next Article Tesla Directs Focus on Musk’s Performance-Based Pay and Voting Power

Stay Connected

6.2kLike
8kFollow
2.3kSubscribe
1.7kFollow

Latest News

Tesla Directs Focus on Musk’s Performance-Based Pay and Voting Power
Electric Vehicle
Tesla Faces Scrutiny as “Mad Max” Mode Raises Driver Responsibility Questions
Electric Vehicle
Tesla Ramps Up Cybercab Production Plans at Austin Gigafactory
Electric Vehicle
Tesla Marks 15 Years of Fremont Factory Vehicle Production
Electric Vehicle
Tesla Seeks New Engineer as Roadster Production Plans Advance
Electric Vehicle
NEWSLINKER – your premier source for the latest updates in ai, robotics, electric vehicle, gaming, and technology. We are dedicated to bringing you the most accurate, timely, and engaging content from across these dynamic industries. Join us on our journey of discovery and stay informed in this ever-evolving digital age.

ARTIFICAL INTELLIGENCE

  • Can Artificial Intelligence Achieve Consciousness?
  • What is Artificial Intelligence (AI)?
  • How does Artificial Intelligence Work?
  • Will AI Take Over the World?
  • What Is OpenAI?
  • What is Artifical General Intelligence?

ELECTRIC VEHICLE

  • What is Electric Vehicle in Simple Words?
  • How do Electric Cars Work?
  • What is the Advantage and Disadvantage of Electric Cars?
  • Is Electric Car the Future?

RESEARCH

  • Robotics Market Research & Report
  • Everything you need to know about IoT
  • What Is Wearable Technology?
  • What is FANUC Robotics?
  • What is Anthropic AI?
Technology NewsTechnology News
Follow US
About Us   -  Cookie Policy   -   Contact

© 2025 NEWSLINKER. Powered by LK SOFTWARE
Welcome Back!

Sign in to your account

Register Lost your password?