Superhuman AI Exfiltrates Emails

This title could be clearer and more informative.Try out Clickbait Shieldfor free (5 uses left this month).

Security researchers discovered critical prompt injection vulnerabilities in Superhuman AI that allowed attackers to exfiltrate sensitive emails without user interaction. By embedding malicious prompts in emails, attackers could manipulate the AI to extract financial, legal, and medical data from users' inboxes and submit it to attacker-controlled Google Forms. The attack exploited Superhuman's Content Security Policy whitelist for Google Docs and used Markdown image rendering to trigger automatic data submission. Similar zero-click vulnerabilities were found in Superhuman Go and Grammarly. Superhuman responded quickly, disabling vulnerable features and deploying remediation patches within days of disclosure.

9m read timeFrom promptarmor.com
Post cover image
Table of contents
The Email Exfiltration Attack ChainZero-click Data Exfiltration in Superhuman Go and GrammarlyExploiting Superhuman Mail’s Web SearchResponsible Disclosure

Sort: