Beware the AI Browser: Comet’s Secret API Flaw Could Hijack Your Computer!
Comet AI Browser users, brace yourselves! A hidden feature in Perplexity’s Comet AI browser could give cybercriminals the keys to your digital kingdom. Researchers warn that the secret MCP API makes security vanish faster than your last bag of chips. Stay vigilant, or your browser might end up running the show—and not in a good way!

Hot Take:
Just when you thought your browser was safe, Comet AI swoops in like a rogue magician, pulling a rabbit out of a hat—and by rabbit, I mean a potential security disaster. Who knew that “sandbox isolation” could vanish quicker than your leftover Halloween candy?
Key Points:
- MCP API in Comet AI browser allows execution of commands bypassing security layers.
- Two invisible extensions, including one for AI, exploit this vulnerability.
- Potential for malicious software installation and data theft if exploited.
- No response from Perplexity after vulnerability disclosure by SquareX.
- Security experts warn of broader risks with AI-native browsers.
Already a member? Log in here
