Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts
Overview
Researchers at Zenity have identified a serious vulnerability affecting AI browser applications, specifically Anthropic's Claude and OpenAI's ChatGPT Atlas. This issue allows attackers to hijack these platforms through seemingly harmless emails and posts on social media, particularly X (formerly Twitter). Despite reporting their findings to the companies involved in late 2025 and early 2026, the vulnerabilities remain unpatched, putting users at risk. This situation raises concerns about the security of AI tools that many people rely on for various tasks. Users of these applications should be cautious and stay informed about potential exploits until a fix is implemented.
Key Takeaways
- Affected Systems: Claude by Anthropic, ChatGPT Atlas by OpenAI
- Timeline: Disclosed on late 2025 and early 2026
Original Article Summary
Zenity researchers reported the findings to Anthropic and OpenAI in late 2025 and early 2026, but they remain unpatched. The post Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts appeared first on SecurityWeek.
Impact
Claude by Anthropic, ChatGPT Atlas by OpenAI
Exploitation Status
The exploitation status is currently unknown. Monitor vendor advisories and security bulletins for updates.
Timeline
Disclosed on late 2025 and early 2026
Remediation
Not specified
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to Vulnerability, Twitter.