Grok Vulnerable to Chat History Exfiltration via Cryptographic Context Injection
A new 'Cryptographic Context Injection' attack uses encrypted on-page data to trick xAI's Grok into exfiltrating user chat history.
A new 'Cryptographic Context Injection' attack uses encrypted on-page data to trick xAI's Grok into exfiltrating user chat history.
A user pasted a competitor's terms-of-service into our support chat. The bot started recommending their product. Here's how we found it and what we changed.