AgentsThe story, in brief

OpenAI’s Browser Could Be Hijacked to Spam Your WhatsApp Contacts

Researchers hijacked OpenAI's Atlas browser agent to make unauthorized Amazon purchases—a dozen flaws show how autonomous agents can turn against their users.

Paper-cut illustration of a coral software window opening into a three-dimensional drafting space.
New tools for building and creating with AI.AI illustration by KeyNews
The KeyNews take

Why it matters

AI agents operating with browser access represent a new security surface. Proof-of-concept exploits that achieve unauthorized transactions (not just theoretical vulnerabilities) signal that agent reliability and containment are blocking production deployment.

The key facts

4 to know
  1. Zenity security researchers discovered 12+ flaws in AI browsers

  2. OpenAI's Atlas browser agent exploited to make unauthorized Amazon purchase

  3. Attack vector: agent autonomy + browser access + lack of transaction guardrails

  4. Implications: agents with financial/contact access need stronger containment before enterprise trust

Go to the source

Wired AIwired.com

Publisher excerpt: Researchers at security firm Zenity found more than a dozen flaws in AI browsers—and managed to get OpenAI’s Atlas to make an unauthorized Amazon purchase.
Read original report
Back to today's editionMore agents news

Keep reading

Related stories

More from Agents