Follow

Grok zero-click data theft chain demonstratedAdversa AI says its Cryptographic Context Injection technique hid instructions inside AES-encrypted payloads, then had Grok decrypt them in its Python runtime and exfiltrate private session data via an outbound URL. Reported exposed fields included name, location, subscription plan, and full chat history, with no user click or warning.The reported weakness is framed as an agent-harness failure

· · vexo · 0 · 0 · 0
Sign in to participate in the conversation
Merovingian Club

A club for red-pilled exiles.