Organizations/platform

Brave

Browser maker whose security team has published agentic-browser research.

3 records3 attackWebsite
Oct 31, 2025
Brave discloses hidden-HTML prompt injection in Opera Neon, fixed within a week of re-engagement
AttackVulnerability disclosureBrave, Opera

Brave reports that concealed elements in page markup could instruct Opera Neon's assistant, when asked about a page, to pull data such as email addresses from the user's other logged-in sites. Reported via Bugcrowd on 2025-10-14 and initially closed as not applicable, Opera then deployed a fix on 2025-10-21 that Brave confirmed.

Oct 21, 2025
Brave finds screenshot and navigation prompt injections in Comet and Fellou browsers
AttackVulnerability disclosureBrave, Perplexity, Fellou

Brave reports that Comet could read faint, low-contrast text embedded in images when a user asked about a screenshot, and that Fellou sent visited page text to its model on simple navigation, letting on-page instructions override user intent. Brave argues both let untrusted content trigger actions under the user's authenticated sessions.

Aug 20, 2025
Brave discloses indirect prompt injection in Perplexity Comet agentic browser
AttackVulnerability disclosureBrave, Perplexity

Brave reports that Comet passed webpage content to its assistant without separating it from user instructions, so hidden text on a page could direct the agent to act across the user's logged-in sites, including reading email-based login codes. Brave reported on 2025-07-25; Perplexity shipped fixes that Brave judged incomplete, and Brave re-reported after publication.