AI browsers can be hacked with just a hashtag in a URL, leaving users exposed without noticing anything at all.


  • Hidden URL fragments allow attackers to manipulate AI assistants without the user’s knowledge
  • Some AI assistants automatically transmit sensitive data to external endpoints
  • Misleading advice and fake links can appear on otherwise normal websites

Many AI browsers are coming under scrutiny after researchers explained how a simple URL fragment can be used to influence browsing assistants.

New research from Cato Networks has revealed that the “HashJack” technique allows malicious instructions to quietly install themselves after a hashtag in an otherwise legitimate link, creating a path for secret commands that remain invisible to traditional monitoring tools.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top