NeuralTrust
aidefend-sf0021
OpenAI Atlas Omnibox Prompt Injection
- Edge & Client AI
- Autonomous Agents
- Tool Integrations & MCP
- Model Evasion & Bypass
NeuralTrust showed that a malformed URL-like string in OpenAI Atlas could carry natural-language instructions that fail URL parsing, fall back into prompt mode, and be treated as high-trust user intent. The published demonstration opened an attacker-chosen destination; phishing and destructive authenticated-session actions were described as potential abuse rather than demonstrated outcomes.