AI web browsers 'aren't ready for the public,' scientists warn as they highlight massive security red flags ...Middle East

News by : (Live Science) -

Browsers equipped with AI agents, such as ChatGPT's Atlas, are like ordinary internet browsers but with additional chatbot functionality baked into the software. Using AI, agentic browsers can summarize websites, search for specific information, and even automate repetitive tasks.

Many agentic browsers have only been released in 2025, and they're already rising in popularity. Scientists, however, have warned in a new study that many popular AI browsers bypass an important security measure that keeps their data private. They presented their findings April 26 at the Agents in the Wild Workshop in Rio de Janeiro, Brazil.

"Even if you’re a relatively savvy user, if these agents have access to a browser that contains your credentials — your email, your bank account, whatever it is — you should not trust that these systems are ready to truly protect your information. They may get there in time, but they're not there yet."

However, AI browsers require full access to all the web content available to the user, which could include cross-origin iframes — code shared across multiple websites, such as online advertisements — or require cross-origin visibility so they can access information from multiple websites. An AI browser essentially has the same overview as a user.

One major risk, for instance, is "prompt injection," whereby an AI agent is tricked into misinterpreting data embedded on a malicious website as an instruction they need to carry out. In their study, the researchers offered an example of an AI browser visiting an otherwise "safe" website, with malicious code embedded within that contained a hidden instruction for the agentic browser to automatically share the user's personal details.

The better the browser, the riskier it is

The key focus in this research was to assess how current AI browsers interact with the same-origin policy and what the security implications could be. The researchers examined seven browsers — including Atlas, Claude for Chrome, Brave Leo AI, Chrome with Gemini, Microsoft Edge with CoPilot, Firefox AI Mode and Perplexity Comet — with test sites and prompts, allowing them to study how each behaved.

There is no consistency among AI browsers in how they operate, the researchers found, which they suggest could be due to the lack of standardization in how AI browsers interact with browser security.

Related stories

AI hallucinations work both ways, study shows — using chatbots can amplify and reinforce our own delusionsThere are 32 different ways AI can go rogue, scientists say — from hallucinating answers to a complete misalignment with humanityAI may accelerate scientific progress — but here's why it can't replace human scientists

According to the study, AI browsers have not yet established the right trade-offs between functionality and security. Currently, the more functional a browser is, the less secure it becomes.

Looking to the future, the researchers questioned how AI agents can be integrated into browsers in ways that provide rich functionality without undermining the browser's security and potentially exposing sensitive information.

Hence then, the article about ai web browsers aren t ready for the public scientists warn as they highlight massive security red flags was published today ( ) and is available on Live Science ( Middle East ) The editorial team at PressBee has edited and verified it, and it may have been modified, fully republished, or quoted. You can read and follow the updates of this news or article from its original source.

Read More Details
Finally We wish PressBee provided you with enough information of ( AI web browsers 'aren't ready for the public,' scientists warn as they highlight massive security red flags )

Last updated :

Also on site :

Most Viewed News
جديد الاخبار