Superhuman AI exfiltrates emails

promptarmor.com

47 points by takira 14 hours ago


sarelta - 14 hours ago

I'm impressed Superhuman seems to have handled this so well - lots of big names are fumbling with AI vuln disclosures. Grammarly is not necessarily who I would have bet on to get it right

0xferruccio - 10 hours ago

The primary exfiltration vector for LLMs is making network requests via images with sensitive data as parameters.

As Claude Code increasingly uses browser tools, we may need to move away from .env files to something encrypted, kind of like rails credentials, but without the secret key in the .env

djaouen - 8 hours ago

Programming used to prevent this by separating code from data. AI (currently) has no such safeguards.