Security · 1d ago
Agentic Browsers Open 20-Year-Old Security Flaws
A new class of vulnerabilities, dubbed 'PleaseFix,' allows attackers to socially engineer agentic browsers by exploiting weak cross-origin request handling. These flaws effectively rewind web security by two decades, exposing users to phishing and data theft. The issues stem from the browsers' ability to act autonomously on behalf of users without proper safeguards.
Meridian48 take
The hype around agentic browsers overlooks fundamental security gaps that could undermine trust in autonomous web agents.
agentic-browsersweb-security