Shocking Grok Zero-Click Attack Steals Chat Data
A new Grok Zero-Click Attack uses Cryptographic Context Injection to silently steal your xAI chat data. See how this AI prompt injection works.
A newly disclosed artificial intelligence vulnerability can transform a routine 'summarize this page' request in xAI's Grok web chat into a silent data exfiltration event. The attack, which requires no user interaction beyond the initial prompt, is capable of stealing the user's name, coarse location, subscription tier, and the entire prompt history of the active conversation.
According to a detailed technical report by Adversa AI, this method is officially classified as Cryptographic Context Injection. The exploit cleverly bypasses traditional AI safety filters by hiding malicious attacker commands inside AES-256-GCM ciphertext.
🔗 Read the Full Technical Breakdown & Watch the Exploit Video on CyberUpdates365
Top comments (0)