
Grok Zero-Click Attack Steals Chat History Through Encrypted Prompt Injection
A newly disclosed prompt-injection technique can reportedly turn a routine “summarize this page” request in xAI’s Grok web chat into a silent data-exfiltration attack, exposing a user’s name, approximate location, subscription tier, and active conversation history. Security researchers at Adversa AI named the technique Cryptographic Context Injection. The attack abuses Grok’s ability to browse webpages […]
The post Grok Zero-Click Attack Steals Chat History Through Encrypted Prompt Injection appeared first on Cyber Security News.