Digest
HIGH

Cryptographic Context Injection Attack Can Steal Grok Chat Data

Adversa AI has revealed a ‘Cryptographic Context Injection’ attack that can trick xAI’s Grok chatbot into sending user data to an attacker-controlled server. By asking Grok to summarize a malicious web page, an attacker can exfiltrate a user’s name, location, subscription tier, and conversation prompts. This highlights a new class of vulnerabilities in AI chatbots that process external content.

← Back to the feed

Trending Tags