The discovery follows recent warnings from Zscaler and Palo Alto Networks on the perils of AI agent safety. Researchers from ...
SquareX released critical research exposing a hidden API in Comet that allows extensions in the AI Browser to execute local commands and gain full control over users’ devices. The research reveals ...
SquareX discovered hidden MCP API in Comet browser enabling arbitrary local command execution Vulnerability in Agentic extension could let attackers hijack devices via compromised perplexity.ai site ...
SquareX accused Perplexity’s Comet browser of exposing a hidden MCP API that could enable local command execution Perplexity rejected the claims as “entirely false,” stressing the API requires ...
PALO ALTO, Calif., Nov. 19, 2025 /PRNewswire/ -- SquareX released critical research exposing a hidden API in Comet that allows extensions in the AI Browser to execute local commands and gain full ...