VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews · rss_376accbc001ddf742f0da6f6ce1bb86b

AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory

Published Aug 6, 2026

A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zero-day exploit. It abuses a standard feature built into almost every major AI assistant: pre-filled deep links.

We observed production websites embedding hidden prompt injection payloads inside "Ask AI" buttons on marketing and competitor comparison pages. When a user

Affected AI Products

prompt injection llm
Get the weekly digest. Every Monday: top AI security stories of the week. Free.