Close Menu
Alpha Leaders
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
What's On
I was rejected 33 times and built a 0 million company — at 48 years old. Age bias in tech is costing us all

I was rejected 33 times and built a $390 million company — at 48 years old. Age bias in tech is costing us all

3 April 2026
UK accuses Iran of Hormuz ‘hijack,’ holding global economy hostage

UK accuses Iran of Hormuz ‘hijack,’ holding global economy hostage

3 April 2026
U.S. gas prices are at their highest since 2022, and it’s primarily hurting low-income households

U.S. gas prices are at their highest since 2022, and it’s primarily hurting low-income households

3 April 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Alpha Leaders
newsletter
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
Alpha Leaders
Home » Password-Stealing AI HashJack Threat To Web Browsers Confirmed
Innovation

Password-Stealing AI HashJack Threat To Web Browsers Confirmed

Press RoomBy Press Room26 November 20253 Mins Read
Facebook Twitter Copy Link Pinterest LinkedIn Tumblr Email WhatsApp
Password-Stealing AI HashJack Threat To Web Browsers Confirmed

Two significant current security concerns involve web browser vulnerabilities and AI-related threats. So, when security researchers issue a warning about something that combines both in one handy attack scenario, it’s time for your ears to prick up. HashJack is the latest hacking technique that, the researchers said, can enable attackers to do everything from spread misinformation to steal your credentials. Here’s what you need to know.

The AI HashJack Attack Explained

AI prompt injection attacks are nothing new; they are as old as generative AI services themselves. Google has developed many resources and tools to fight just such prompt-injection risks as they apply to Gemini. Cybercriminals, however, continue to find ways around the protections put in place to prevent the use of malicious prompts in all use-case scenarios. There are even systems, such as GhostGPT, that cybercriminals have flocked to for the purposes of creating malware and phishing scam messaging alike.

Now security researchers from the Cato CTRL Threat Research team at Cato Networks have confirmed the latest addition to the AI-hacker toolset: HashJack.

“HashJack is a newly discovered indirect prompt injection technique that conceals malicious instructions after the # in legitimate URLs,” Vitaly Simonovich, a senior security researcher with Cato CTRL, said. “When AI browsers send the full URL, including the fragment, to their AI assistants,” Simonovich warned, “those hidden prompts get executed.” This is actually as nasty as it sounds, because by so doing it can enable a variety of malicious and criminal behaviors.

AI HashJack Attack Scenarios

The ability of HashJack to effectively weaponize ordinary websites is, as far as I am aware, unique so far in such threat types. The web servers are none the wiser that everything after the # symbol in an otherwise entirely legitimate URL gets processed by AI browsers, and not ordinary ones, to facilitate the prompt injection attack with complete stealth.

The Cato report has explored a total of six potential HashJack attack scenarios, namely: callback phishing, data exfiltration, misinformation, malware guidance, medical harm, and credential theft.

Callback phishing involves an attacker using the hidden prompts to direct the browser to “add security or support links that point to threat actor resources, including phone numbers and WhatsApp groups that look official,” Simonovich said.

Data exfiltration involves using the hidden fragment to tell an agentic browser to go fetch a threat actor URL and “append user context such as account name, account number, transaction history, profile email, and phone number as parameters,” Simonovich said.

Credential theft involves the embedding of “convincing security steps or re-login instructions in URL fragments that instruct the AI browser assistant to insert a threat actor-controlled login link into responses.”

Simonovich has posted a timeline of reporting and remediation for the AI HashJack attack vulnerability, showing Google Gemini as yet unresolved, Microsoft CoPilot for Edge fixed on October 27, and Perplexity (Comet) fixed on November 18. I have reached out to Google for further clarification.

AI Hack Cato Networks Hack Hacking AI hacking AI browsers Hasgtag attack HashJack Hashtag hashtag hack Web Browser security
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

Related Articles

1 Habit Emotionally Intelligent Adults Had As Kids, By A Psychologist

1 Habit Emotionally Intelligent Adults Had As Kids, By A Psychologist

1 April 2026
The Graveyard Of OpenAI’s Dead Products And Incomplete Deals

The Graveyard Of OpenAI’s Dead Products And Incomplete Deals

1 April 2026
How The Children’s Movie “Cars” Forewarns A Post-Human Era

How The Children’s Movie “Cars” Forewarns A Post-Human Era

1 April 2026
Inside The New Deal Pipelines Female Founders Are Quietly Building

Inside The New Deal Pipelines Female Founders Are Quietly Building

1 April 2026
Apple Did The Unthinkable With Its 9 MacBook Neo

Apple Did The Unthinkable With Its $599 MacBook Neo

1 April 2026
Multimodal Fusion Used In Self-Driving Cars Is Uplifting AI That Provides Mental Health Guidance

Multimodal Fusion Used In Self-Driving Cars Is Uplifting AI That Provides Mental Health Guidance

1 April 2026
Don't Miss
Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

By Press Room27 December 2024

Every year, millions of people unwrap Christmas gifts that they do not love, need, or…

Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

30 December 2024
Moltbook is the talk of Silicon Valley. But the furor is eerily reminiscent of a 2017 Facebook research experiment

Moltbook is the talk of Silicon Valley. But the furor is eerily reminiscent of a 2017 Facebook research experiment

6 February 2026
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Latest Articles
Markets rally hard on Iran’s promise to play nice at Hormuz

Markets rally hard on Iran’s promise to play nice at Hormuz

3 April 20260 Views
Renewable energy transition could accelerate as Iran war shocks oil and gas supply

Renewable energy transition could accelerate as Iran war shocks oil and gas supply

3 April 20260 Views
Mercor, a  billion AI startup, confirms it was the victim of a major cybersecurity breach

Mercor, a $10 billion AI startup, confirms it was the victim of a major cybersecurity breach

3 April 20263 Views
Paul Krugman smacks down Trump speech with argument that  gas is ‘less than half’ of the Hormuz hit. Here’s what he’s talking about

Paul Krugman smacks down Trump speech with argument that $4 gas is ‘less than half’ of the Hormuz hit. Here’s what he’s talking about

2 April 20260 Views

Recent Posts

  • I was rejected 33 times and built a $390 million company — at 48 years old. Age bias in tech is costing us all
  • UK accuses Iran of Hormuz ‘hijack,’ holding global economy hostage
  • U.S. gas prices are at their highest since 2022, and it’s primarily hurting low-income households
  • Jack Dorsey and Roelof Botha think AI can make middle management obsolete 
  • Markets rally hard on Iran’s promise to play nice at Hormuz

Recent Comments

No comments to show.
About Us
About Us

Alpha Leaders is your one-stop website for the latest Entrepreneurs and Leaders news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
I was rejected 33 times and built a 0 million company — at 48 years old. Age bias in tech is costing us all

I was rejected 33 times and built a $390 million company — at 48 years old. Age bias in tech is costing us all

3 April 2026
UK accuses Iran of Hormuz ‘hijack,’ holding global economy hostage

UK accuses Iran of Hormuz ‘hijack,’ holding global economy hostage

3 April 2026
U.S. gas prices are at their highest since 2022, and it’s primarily hurting low-income households

U.S. gas prices are at their highest since 2022, and it’s primarily hurting low-income households

3 April 2026
Most Popular
Jack Dorsey and Roelof Botha think AI can make middle management obsolete 

Jack Dorsey and Roelof Botha think AI can make middle management obsolete 

3 April 20261 Views
Markets rally hard on Iran’s promise to play nice at Hormuz

Markets rally hard on Iran’s promise to play nice at Hormuz

3 April 20260 Views
Renewable energy transition could accelerate as Iran war shocks oil and gas supply

Renewable energy transition could accelerate as Iran war shocks oil and gas supply

3 April 20260 Views

Archives

  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • March 2022
  • January 2021
  • March 2020
  • January 2020

Categories

  • Blog
  • Business
  • Entrepreneurs
  • Global
  • Innovation
  • Leadership
  • Living
  • Money & Finance
  • News
  • Press Release
© 2026 Alpha Leaders. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.