• News/
  • https://www.zdnet.com/article/openai-artificial-intelligence-protect-chatgpt-atlas-prompt-injection-attacks/

How OpenAI is defending ChatGPT Atlas from attacks now - and why safety's not guaranteed

ZDNet
·
Webb Wright
·
Published Dec 23, 2025
·
Updated

Follow ZDNET: Add us as a preferred source on Google. OpenAI is automating the process of testing ChatGPT Atlas, its agentic web browser, for vulnerabilities that could harm users. At the same time, the company acknowledges that the nature of this new type of browser likely means it will never be completely protected from certain kinds of attacks. The company published a blog post on Tuesday describing its latest effort to secure Atlas against prompt injection attacks, in which malicious third parties covertly slip instructions to the agent behind the browser, causing it to act against the user's interests; think of it like a digital virus that temporarily takes control of a host. Also: Use an AI browser? 5 ways to protect yourself from prompt injections - before it's too late The new approach utilizes AI to mimic the actions of human hackers. By automating the red teaming process, researchers can explore the security surface area much more quickly and thoroughly -- which is all the more important considering the speed at which agentic web browsers are being shipped to consumers. Critically, however, the blog post emphasizes that even with the most sophisticated security methods, agentic web browsers like Atlas are intrinsically vulnerable and will likely remain so. The best that the industry can hope for, OpenAI says, is to try to stay one step ahead of attackers. "We expect adversaries to keep adapting," the company writes in the blog post. "Prompt injection, much like scam...

Read full article

Affected Software

1 affected component
OpenAI Atlas
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the main topic of this article?

The article discusses OpenAI's efforts to defend ChatGPT Atlas from potential vulnerabilities and prompt injection attacks.

2

What security implications are discussed in the article?

The article highlights the risks associated with vulnerabilities in ChatGPT Atlas that could jeopardize user safety.

3

What testing methods is OpenAI using to protect ChatGPT Atlas?

OpenAI is automating the testing process to identify vulnerabilities in ChatGPT Atlas.

4

What type of attacks are mentioned as a concern for ChatGPT Atlas?

The article mentions prompt injection attacks as a significant concern for ChatGPT Atlas.

5

Is the safety of ChatGPT Atlas guaranteed according to OpenAI?

OpenAI acknowledges that due to the nature of the browser, safety cannot be guaranteed.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203
How OpenAI is defending ChatGPT Atlas from attacks now - and why safety's not guaranteed - SecAlerts