
SafeBreach Labs finds WhatsApp bug hijacks Google Gemini
SafeBreach Labs found that attackers may be able to hijack Google Gemini through a WhatsApp message using a method called indirect prompt injection. This bug lets hidden commands in notifications trick Gemini into following attacker instructions without the user's okay. The issue appears to work with other messaging apps too, and could allow data theft or other dangerous actions. Google says it has updated its defenses and these changes appear to have stopped the exploit. The report suggests this kind of attack may also be a problem for other AI assistants.













