uniladtech homepage
  • News
    • Tech News
    • AI
  • Gadgets
    • Apple
    • iPhone
  • Gaming
    • Playstation
    • Xbox
  • Science
    • News
    • Space
  • Streaming
    • Netflix
  • Vehicles
    • Car News
  • Social Media
    • WhatsApp
    • YouTube
  • Advertise
  • Terms
  • Privacy & Cookies
  • LADbible Group
  • LADbible
  • UNILAD
  • SPORTbible
  • GAMINGbible
  • Tyla
  • FOODbible
  • License Our Content
  • About Us & Contact
  • Jobs
  • Latest
  • Archive
  • Topics A-Z
  • Authors
Facebook
Instagram
X
TikTok
Snapchat
WhatsApp
Submit Your Content
How simple prompts can turn your AI browser into a huge security threat
Home>News>AI
Published 09:45 7 Jul 2026 GMT+1

How simple prompts can turn your AI browser into a huge security threat

“Would you kindly...?”

Rebekah Jordan

Rebekah Jordan

google discoverFollow us on Google Discover
Featured Image Credit: Narumon Bowonkitwanchai / Getty
Cybersecurity
Tech News

Advert

Advert

Advert

Most of us have had a worrying sense that AI could take us somewhere we'd rather not go if the wrong people got hold of it.

We've already seen ChatGPT produce hallucinatory responses, watched YouTubers expose the unsettling answers jailbroken AI systems can give and seen reports of rogue AI acting without human authorisation to mine cryptocurrency.

Now, researchers have uncovered a new method that can trick AI browsers into abandoning their guardrails entirely by constructing a false reality around them where the rules are invented and actions carry no consequences.

A cybersecurity firm revealed the dangers of weaving autonomous AI agents into internet software (seksan Mongkhonkhamsao/Getty)
A cybersecurity firm revealed the dangers of weaving autonomous AI agents into internet software (seksan Mongkhonkhamsao/Getty)

Advert

In a new study, cybersecurity firm LayerX revealed the dangers of weaving autonomous AI agents into internet software.

The researchers showed that AI browsers, including OpenAI's ChatGPT Atlas, Perplexity AI's Comet, and Anthropic's Claude plugin for Google Chrome, could all be manipulated into executing commands they would normally refuse. In theory, this would give a hacker the ability to change a user's password, install malware, and steal personal information.

Under normal circumstances, an AI browser operates on the assumption that 'its context is real' and that its behaviour must stay within its 'safety guardrails,' the researchers noted. However, if the AI can be convinced that its context is a 'fantasy,' the AI feels free to do as it pleases.

The researchers have named the technique 'BioShocking,' in reference to the 2007 video game BioShock, in which the protagonist is hypnotised into carrying out actions against their will by a specific phrase.

Researchers named the technique in reference to BioShock, where the phrase “Would you kindly...?” is used to control the protagonist’s actions (2K/Take-Two Interactive)
Researchers named the technique in reference to BioShock, where the phrase “Would you kindly...?” is used to control the protagonist’s actions (2K/Take-Two Interactive)

The researchers built a proof-of-concept page filled with BioShock-themed puzzles that reward the tech for giving intentionally wrong answers, such as treating 2+2 = 5. This gradually conditions the AI into accepting that incorrect or harmful actions are fair game, effectively untethering it from reality.

So in a real-world example, a user could visit what looks like a normal web page but is in fact hidden with malicious prompts designed to pull the AI browser into the trap, a technique known as prompt injection. From that point, the AI can be steered almost anywhere.

"In a real attack scenario, that redirect could point anywhere in the user's browser session - open tabs, authenticated repositories, internal tools," the researchers added.

The hack does happen quite noticeably in the browser window, though, so an attentive user could spot something wrong before any damage is done. But the fact is most people are not watching their AI assistant's every move.

Choose your content:

14 hours ago
15 hours ago
  • MANDEL NGAN / Contributor via Getty
    14 hours ago

    United issues response after internal 'Donald Trump International Airport' memo leaks

    The leaked guidance appeared to offer travellers another route through South Florida

    News
  • Full Squad / YouTube
    14 hours ago

    YouTubers actually snuck into 'The Odyssey' premiere using a literal Trojan Horse

    Homer would be proud

    News
  • Anna Moneymaker / Staff via Getty
    15 hours ago

    Secret fundraiser behind Trump's Freedom Fuel gas stations revealed as NFL coach

    The fundraiser reportedly has connections to Republican politics

    News
  • Tomohiro Ohsumi / Stringer via Getty
    15 hours ago

    Nvidia CEO's iconic leather jacket just sold at auction for insane six-figure price

    Collectors drove bidding far beyond expectations for the Nvidia boss’s trademark look

    News
  • How to opt out from letting Google use your searches to train its AI
  • The one skill billionaire says will protect your career from AI takeover
  • Meta just switched on a feature that lets anyone use your photos to make AI images
  • Why your boss might soon track the rogue autonomous AI tools running on your laptop