IBM’s ‘Bob’ AI Could Be Manipulated to Download and Run Malware


  • IBM’s GenAI Tool ‘Bob’ Is Vulnerable to Indirect Rapid Injection Attacks During Beta Testing
  • CLI faces risks of rapid injection; IDE exposed to AI-specific data exfiltration vectors
  • Exploitation requires “always allow” permissions, allowing arbitrary shell scripts and malware deployment.

IBM’s generative artificial intelligence (GenAI) tool, Bob, is susceptible to the same dangerous attack vector as most other similar tools: indirect prompt injection.

Indirect prompt injection occurs when the AI ​​tool is allowed to read content found in other apps, like email or calendar.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top