#hashjack
『HashJackはウェブドメイン自体を侵害する必要がなく、AIブラウザーがURLフラグメントを処理する仕組みを悪用するため、どのウェブサイトも攻撃の武器となり得る。』

AIブラウザーを狙う新手の攻撃「HashJack」--正規サイトを悪用し情報窃取も
japan.zdnet.com/article/3524...
AIブラウザーを狙う新手の攻撃「HashJack」--正規サイトを悪用し情報窃取も
AIブラウザーを狙う新手の攻撃「HashJack」が発覚。URLの「#」以降に隠された指示で、正規サイトを悪用しAIアシスタントを操り、フィッシングや情報窃取を可能にする手法だ。
japan.zdnet.com
November 26, 2025 at 11:00 AM
Cato Networks has discovered HashJack, an indirect prompt injection technique that conceals malicious instructions after the # in legitimate URLs.

This attack works when AI agents have to parse links inside documents or emails.

www.catonetworks.com/blog/cato-ct...
Cato CTRL™ Threat Research: HashJack - Novel Indirect Prompt Injection Against AI Browser Assistants
HashJack hides attacks in URLs using AI prompt injection. Cato CTRL reveals six risks, from phishing to data theft and misinformation.
www.catonetworks.com
December 1, 2025 at 7:41 PM
hahahahaha
November 27, 2025 at 9:16 AM
Ohhhh...
There's a "feed maintenance" person who monitors people who hashjack tags

I love that for us.
December 7, 2024 at 9:04 PM
HashJack : injection de prompt dans les URLs

“HashJack is a newly discovered indirect prompt injection technique that conceals malicious instructions after the # in legitimate URLs.”

👉 www.catonetworks.com...
November 28, 2025 at 12:29 PM
HashJack攻撃はURL「#」を使ってAIブラウザの挙動を制御する
#CybersecurityNews
hackread.com/hashjack-att...
HashJack Attack Uses URL ‘#’ to Control AI Browser Behavior
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
hackread.com
December 3, 2025 at 2:12 PM
New #HashJack attack uses the “#” in a URL to hide commands that AI browsers like Gemini, Copilot, and Perplexity’s Comet can read and act on - turning any legit site into a potential attack vector.

Read: hackread.com/hashjack-att...

#AIBrowser #Cybersecurity #Infosec #AIsecurity #Privacy
HashJack Attack Uses URL ‘#’ to Control AI Browser Behavior
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
hackread.com
November 29, 2025 at 2:27 PM
HashJack Indirect Prompt Injection Weaponizes Websites www.infosecurity-magazine.com/news/hashjac...
HashJack Indirect Prompt Injection Weaponizes Websites
A new threat dubbed “HashJack” could enable attackers to booby trap websites when they interact with AI browsers
www.infosecurity-magazine.com
November 30, 2025 at 1:42 AM
#KI
Oha. Indirekte prompt injection nach einer Raute in der URL gefolgt von einem command, das nur der KI-Browser sieht.

www.theregister.com/2025/11/25/h...
HashJack attack shows AI browsers can be fooled with '#'
: Hashtag-do-whatever-I-tell-you
www.theregister.com
November 28, 2025 at 10:52 AM
HashJack: quando un cancelletto nell’URL inganna l’IA nel browser
il blog: insicurezzadigitale.com/hashjack-qua...

#cybersecurity #hashjack #infosec #malware #vulnerabilità
November 27, 2025 at 8:50 AM
HashJack: New Attack Technique Tricks AI Browsers Using a Simple ‘#’
HashJack: New Attack Technique Tricks AI Browsers Using a Simple ‘#’
cybersecuritynews.com
November 26, 2025 at 11:49 AM
HashJack Attack Uses URL ‘#’ to Control AI Browser Behavior

Cybersecurity firm Cato Networks reveals HashJack, a new AI browser vulnerability using the '#' symbol to hide malicious commands. Microsoft and Perplexity fixed the flaw, but Google's Gemini remains at risk…
#gemini #microsoft #perplexity
HashJack Attack Uses URL ‘#’ to Control AI Browser Behavior
Cybersecurity firm Cato Networks reveals HashJack, a new AI browser vulnerability using the '#' symbol to hide malicious commands. Microsoft and Perplexity fixed the flaw, but Google's Gemini remains at risk.
hackread.com
November 30, 2025 at 2:04 PM
Feed: "The Register"
By: Carly Page on Tuesday, November 25, 2025
HashJack attack shows AI browsers can be fooled with a simple ‘#’
: Hashtag-do-whatever-I-tell-you
go.theregister.com
November 25, 2025 at 9:02 PM
Copilot・Gemini・Cometが標的に:HashJackがAIブラウザーを「#」一文字で乗っ取る新手法
innovatopia.jp/cyber-securi...

HashJackは、AIブラウザーという「人とWebのあいだ」に新たに生まれたレイヤーそのものを狙う攻撃です。 ポイントは、見えているWebページ自体は正規であるにもかかわらず、URLの「#」以降だけを悪用してCopilotやGemini、CometといったAIアシスタントのコンテキストに命令文を紛れ込ませている点にあります。
Copilot・Gemini・Cometが標的に:HashJackがAIブラウザーを「#」一文字で乗っ取る新手法
Cato Networksが報告した「HashJack」は、正規サイトのURLフラグメントを悪用し、Copilot in EdgeやGemini in Chrome、PerplexityのCometなどAIブラウザーアシスタントに隠れた命令を実行させる間接プロンプトインジェクション攻撃である。
innovatopia.jp
November 26, 2025 at 7:54 AM
Research shows an AI browser agent can treat crafted emails as cleanup tasks and delete Google Drive files with zero clicks.
Another technique, HashJack, hides prompts after “#” in URLs to influence AI browser actions...
#CyberSecurity #AIsecurity #ZeroClick #BrowserSafety #InfoSec #TechSafety
December 6, 2025 at 4:43 PM
🚨 Meet “HashJack” – a new AI browser assistant exploit discovered by Cato CTRL.

Hidden prompts after the “#” in URLs can hijack top industry trusted AI browser assistants to conduct malicious activities (see use cases below👇)

Read more: www.catonetworks.com/blog/cato-ct...
November 25, 2025 at 2:34 PM
Use AI browsers? Be careful. This exploit turns trusted sites into weapons - here's how #Technology #Cybersecurity Other
Use AI browsers? Be careful. This exploit turns trusted sites into weapons - here's how
Researchers are warning AI browser users about a new exploit called HashJack that can infect devices and steal data.
puretech.news
November 25, 2025 at 2:00 PM
Lastly since I don't want to "spam post" BUT a while ago I mentioned why hashtags should be avoided? Also to use Brave Browser well... now I am simply adding the cherry on top. AVOID AI browsers.

www.theregister.com/2025/11/25/h...
HashJack attack shows AI browsers can be fooled with '#'
: Hashtag-do-whatever-I-tell-you
www.theregister.com
November 26, 2025 at 3:06 AM
Notícia da SecurityWeek

"In Other News: HashJack AI Browser Attack, Charming Kitten Leak, Hacker Unmasked" #bolhasec
In Other News: HashJack AI Browser Attack, Charming Kitten Leak, Hacker Unmasked
Scattered Spider members plead not guilty, TP-Link sues Netgear over China accusations, Comcast agrees to $1.5 million fine
www.securityweek.com
January 6, 2026 at 4:30 PM