Through indirect prompt injection, researchers have discovered a potential security flaw in Perplexity’s new agentic AI browser, Comet, which could give attackers access to private user data, such as banking passwords, emails, and other private information. Security professionals at Brave, a privacy-conscious search engine and browser business, stated in a blog post on August 20 that the security hole stems from Comet’s management of web page data in response to input from users this webpage. “Because the Perplexity browser agent interprets and acts upon user commands, attackers can silently insert user prompts into webpage content.