BragJack hijacks AI browser agents via malicious extensions

Executive Summary

BragJack, a proof‑of‑concept attack by Forever Security’s Gal Weizman, hijacks AI assistants in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome by installing a single malicious extension. The Prompt Forcing technique earned over $20,000 in bounties and led to two CVEs.


Intelligence Metadata - Source Publisher: Bleeping Computer - Published Date: 2026-09-19T14:56:31+00:00 - Category: threat-intel

Original Description: BragJack, a proof-of-concept attack from Forever Security's Gal Weizman, hijacks the AI assistants in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome using one malicious extension. The Prompt Forcing technique earned over $20,000 in bounties and two CVEs. [...]

"The truth is always exciting. Speak it, then. Life is dull without it."

— Pearl Buck
Source: Bleeping Computer