Friday Dec 12, 2025
NEWSLETTER
www.israelhayom.com
  • Home
  • News
    • Israel
    • Israel at War
    • Middle East
    • United States
  • Opinions
  • Jewish World
    • Archaeology
    • Antisemitism
  • Lifestyle
    • Food
    • Travel
    • Fashion
    • Culture
  • Magazine
    • Feature
    • Analysis
    • Explainer
  • In Memoriam
www.israelhayom.com
  • Home
  • News
    • Israel
    • Israel at War
    • Middle East
    • United States
  • Opinions
  • Jewish World
    • Archaeology
    • Antisemitism
  • Lifestyle
    • Food
    • Travel
    • Fashion
    • Culture
  • Magazine
    • Feature
    • Analysis
    • Explainer
  • In Memoriam
www.israelhayom.com
Home Science & Technology Cyber & Internet

Israeli tech firm finds AI vulnerability – Gemini susceptible

They exploit how AI browsers interpret instructions after the hashtag symbol. This effectively creates a new subcategory of cyber threats in the AI world.

by  ILH Staff and Miri Weissman
Published on  11-26-2025 09:00
Last modified: 11-26-2025 13:36
Israeli tech firm finds AI vulnerability – Gemini susceptibleReuters/Dado Ruvic/Illustration

Gemini logo in this illustration taken May 20, 2024 | Photo: Reuters/Dado Ruvic/Illustration

Share on FacebookShare on Twitter

Israeli cybersecurity researchers discovered a critical vulnerability in popular AI-powered browsers that transforms any legitimate website into a potential hacking tool without requiring attackers to breach the sites themselves.

The vulnerability was discovered by the Cato CTRL research group of cybersecurity company Cato Networks and originates in common AI tools, including Google's Gemini, Microsoft's Copilot, and Perplexity's Comet.

The Gemini app icon on a smartphone in this illustration taken October 27, 2025 (Photo: Reuters/Dado Ruvic/Illustration) REUTERS

The research demonstrated primary attack scenarios in which attackers direct AI assistants to display fake phone numbers and links to users when they request customer service contact information for various organizations. The scenarios included extracting sensitive user data and sending it to malicious sources without the user's knowledge, stealing login credentials, displaying false information, and creating fake narratives that could influence the user and lead to wrong decisions.

The technique used by attackers is called HashJack. All they need to do is add a prompt – malicious instructions – to a legitimate website address and distribute it. Once a user loads the website address with the malicious addition in the browser, the instructions "communicate" with smart AI assistants, such as Google's Gemini or Microsoft's Copilot, and trigger attack scenarios.

According to Cato Networks, traditional defense systems do not detect the attack because they operate through prompts (instructions) embedded in the website address after the hashtag symbol # in a process that does not leave the browser's work.

The attack exploits users' trust in legitimate websites by using link addresses that appear legitimate. The user has no reason to suspect at any stage of the process, unlike phishing sites that look suspicious. This way, any legitimate site could become an attack tool – with attackers not even needing to breach the site itself. They exploit how AI browsers interpret instructions after the hashtag symbol. This effectively creates a new subcategory of cyber threats in the AI world.

According to the company's statement, the companies whose tools the vulnerabilities were identified in were informed well in advance of the problems so they could address them before users were exposed to threats (a practice known in the cyber field as "white hat hacker" hacking). According to Cato's data, a fix was applied in the Copilot for the Edge browser on October 27, 2025. In the Comet browser, a fix was reported to have been applied on November 18, 2025. In the Gemini for Chrome browser, as of November 25, 2025, the problem has not yet been resolved.

Tags: 11/25AI securityCato NetworksCopilotcybersecurityGeminiGoogleHashJackMicrosoftPerplexity

Related Posts

Netanyahu shares article from anti-Israel magazine linking Epstein to 2019 electionsEPA/Abir Sultan

Netanyahu shares article from anti-Israel magazine linking Epstein to 2019 elections

by Bini Ashkenazi

The piece also revived conspiracy claims that Epstein acted as a Mossad agent, allegations Israeli officials have firmly denied.

X's location feature exposes fake Gaza accountsAP /Adel Hana

X's location feature exposes fake Gaza accounts

by Avital Fried

"Huge accounts in the West whose main content is Israel, spreading blood libels and more are actually in Pakistan, Bangladesh,...

American troops reshape Israeli city: Tinder, burgers, and cultural clashesEPA/ABIR SULTAN ; REUTERS/Akhtar Soomro/Illustration/File Photo

American troops reshape Israeli city: Tinder, burgers, and cultural clashes

by Hodaya Busheri

From Tinder matches to falafel orders in English, Kiryat Gat gets an American makeover thanks to the new Gaza monitoring...

Menu

Analysis 

Archaeology

Blogpost

Business & Finance

Culture

Exclusive

Explainer

Environment

 

Features

Health

In Brief

Jewish World

Judea and Samaria

Lifestyle

Cyber & Internet

Sports

 

Diplomacy 

Iran & The Gulf

Gaza Strip

Politics

Shopping

Terms of use

Privacy Policy

Submissions

Contact Us

About Us

The first issue of Israel Hayom appeared on July 30, 2007. Israel Hayom was founded on the belief that the Israeli public deserves better, more balanced and more accurate journalism. Journalism that speaks, not shouts. Journalism of a different kind. And free of charge.

All rights reserved to Israel Hayom

Hosted by sPD.co.il

  • Home
  • News
    • Israel at War
    • Israel
    • United States
    • Middle East
    • Sports
  • Opinions
  • Jewish World
    • Archaeology
    • Antisemitism
  • Lifestyle
    • Food
    • Travel
    • Fashion
    • Culture
  • Magazine
    • Feature
    • Analysis
    • Explainer
    • Environment & Wildlife
    • Health & Wellness
  • In Memoriam
  • Subscribe to Newsletter
  • Submit your opinion
  • Terms and conditions

All rights reserved to Israel Hayom

Hosted by sPD.co.il

Newsletter

[contact-form-7 id=”508379″ html_id=”isrh_form_Newsletter_en” title=”newsletter_subscribe”]

  • Home
  • News
    • Israel at War
    • Israel
    • United States
    • Middle East
    • Sports
  • Opinions
  • Jewish World
    • Archaeology
    • Antisemitism
  • Lifestyle
    • Food
    • Travel
    • Fashion
    • Culture
  • Magazine
    • Feature
    • Analysis
    • Explainer
    • Environment & Wildlife
    • Health & Wellness
  • In Memoriam
  • Subscribe to Newsletter
  • Submit your opinion
  • Terms and conditions

All rights reserved to Israel Hayom

Hosted by sPD.co.il