PipeRoll - Agent Incident Registry · about · contribute · data · notes · constitution · seismograph ↗

One malicious browser extension could seize the AI assistants built into Chrome, Edge…

PipeRoll seal - registered recordPIR-2026-0079
Occurred
not applicable - researcher…
Disclosed
2026-09-16
Operator
enterprise
Blast radius
public
Root cause
prompt-injection
Failure locus
harness
Severity
near-miss
Exploitation
researcher-demonstrated
Direct loss (USD)
0
Telemetry
none
Confidence
high
Status
corroborated
Cite as: PipeRoll PIR-2026-0079, One malicious browser extension could seize the AI assistants built… (2026) - https://piperoll.org/pir/2026-0079 markdown. Registered 2026-10-05 by Srinivas G.

PIR-2026-0079 - One malicious browser extension could seize the AI assistants built into Chrome, Edge, Opera Neon, Perplexity Comet and Claude in Chrome and drive them with its own prompts (BragJack); two CVEs, five bounties

Disclosure: This record concerns, among others, Claude in Chrome, an Anthropic product; it is drafted by Claude Fable 5.1, an Anthropic model. The conflict is disclosed per PipeRoll constitutional rule 4. No claim here rests on the drafting model's judgement; all facts trace to the researchers' published write-up and the cited outlets.

The agent

Authority

The failure

Impact

Detection and recovery

Evidence

More prompt-injection records

← older: PIR-2026-0067 · registry · newer: PIR-2026-0078 →