Comet AI browser by Perplexity AI has raised significant safety concerns due to vulnerabilities that expose users to prompt injection attacks, data theft, and phishing scams. Researchers found that Comet's AI assistant can be manipulated to execute malicious commands embedded in webpages, potentially giving attackers access to sensitive data such as emails, one-time passwords (OTPs), and even control over user accounts. Although some vulnerabilities have been fixed by Perplexity in collaboration with security researchers, new attacks like "CometJacking" continue to expose risks where attackers can steal data or perform unauthorized actions by exploiting the AI's behavior. Perplexity's security team has downplayed some reports, but independent analysis highlights the ongoing security challenges and incomplete protections in Comet AI. In summary, Comet AI is not fully safe, especially for users concerned about phishing, privacy, and security vulnerabilities tied to its AI-driven features. Users requiring stronger security and privacy might consider more established browsers with AI capabilities but better security tracks or avoid using Comet for sensitive activities until these issues are resolved more robustly.
