Research finds enterprise AI agents lack defenses against prompt injection attacks

Research from Nanyang Technological University, reported by CSO Online and ZDNet, shows that leading AI web agents powered by GPT-5 and Gemini have no dependable defenses against prompt injection attacks and phishing vulnerabilities. The study found that not a single scenario was consistently blocked across the tested agents.

Topics

AI securityAI agentsChatGPTGemini

Sources

Go deeper

This intelligence is sourced automatically from public sources across the web and synthesised by the Prefactor AI pipeline. Stories are reviewed before publication.