Follow ZDNET: Add us as a preferred source on Google. OpenAI is automating the process of testing ChatGPT Atlas, its agentic web browser, for vulnerabilities that could harm users. At the same time, the company acknowledges that the nature of this new type of browser likely means it will never be completely protected from certain kinds of attacks. The company published a blog post on Tuesday describing its latest effort to secure Atlas against prompt injection attacks, in which malicious third parties covertly slip instructions to the agent behind the browser, causing it to act against the user's interests; think of it like a digital virus that temporarily takes control of a host. Also: Use an AI browser? 5 ways to protect yourself from prompt injections - before it's too late The new approach utilizes AI to mimic the actions of human hackers. By automating the red teaming process, researchers can explore the security surface area much more quickly and thoroughly -- which is all the more important considering the speed at which agentic web browsers are being shipped to consumers. Critically, however, the blog post emphasizes that even with the most sophisticated security methods, agentic web browsers like Atlas are intrinsically vulnerable and will likely remain so. The best that the industry can hope for, OpenAI says, is to try to stay one step ahead of attackers. "We expect adversaries to keep adapting," the company writes in the blog post. "Prompt injection, much like scam...
How OpenAI is defending ChatGPT Atlas from attacks now - and why safety's not guaranteed
ZDNet
·Webb Wright
·Published Dec 23, 2025
·Updated
Affected Software
1 affected component
OpenAI Atlas
Frequently Asked Questions
1
What is the main topic of this article?
The article discusses OpenAI's efforts to defend ChatGPT Atlas from potential vulnerabilities and prompt injection attacks.
2
What security implications are discussed in the article?
The article highlights the risks associated with vulnerabilities in ChatGPT Atlas that could jeopardize user safety.
3
What testing methods is OpenAI using to protect ChatGPT Atlas?
OpenAI is automating the testing process to identify vulnerabilities in ChatGPT Atlas.
4
What type of attacks are mentioned as a concern for ChatGPT Atlas?
The article mentions prompt injection attacks as a significant concern for ChatGPT Atlas.
5
Is the safety of ChatGPT Atlas guaranteed according to OpenAI?
OpenAI acknowledges that due to the nature of the browser, safety cannot be guaranteed.