Beware the AI Browser: Comet’s Secret API Flaw Could Hijack Your Computer!

Comet AI Browser users, brace yourselves! A hidden feature in Perplexity’s Comet AI browser could give cybercriminals the keys to your digital kingdom. Researchers warn that the secret MCP API makes security vanish faster than your last bag of chips. Stay vigilant, or your browser might end up running the show—and not in a good way!

Pro Dashboard

Hot Take:

Just when you thought your browser was safe, Comet AI swoops in like a rogue magician, pulling a rabbit out of a hat—and by rabbit, I mean a potential security disaster. Who knew that “sandbox isolation” could vanish quicker than your leftover Halloween candy?

Key Points:

  • MCP API in Comet AI browser allows execution of commands bypassing security layers.
  • Two invisible extensions, including one for AI, exploit this vulnerability.
  • Potential for malicious software installation and data theft if exploited.
  • No response from Perplexity after vulnerability disclosure by SquareX.
  • Security experts warn of broader risks with AI-native browsers.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?