Close Menu
GeekBlog

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Magic: The Gathering PAX Panel Previews Seriously Sinister Supervillains

    August 30, 2025

    Meta will sell you refurbished Ray-Ban smart glasses for $76 off – how to find them

    August 30, 2025

    Garmin Fenix 8 Pro rumors swirl, and new leaks point to 4 new subscription tiers – mere months after the Connect+ debacle

    August 30, 2025
    Facebook X (Twitter) Instagram Threads
    GeekBlog
    • Home
    • Mobile
    • Reviews
    • Tech News
    • Deals & Offers
    • Gadgets
      • How-To Guides
    • Laptops & PCs
      • AI & Software
    • Blog
    Facebook X (Twitter) Instagram
    GeekBlog
    Home»Laptops & PCs»Researcher finds Microsoft’s agentic HTML can leak passwords, AI keys
    Laptops & PCs

    Researcher finds Microsoft’s agentic HTML can leak passwords, AI keys

    Michael ComaousBy Michael ComaousAugust 7, 2025No Comments2 Mins Read0 Views
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    AI PC art
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    With new AI systems comes new AI vulnerabilities, and a big one was just discovered. It’s a flaw in Microsoft’s method of allowing agents to interact with websites on your behalf.

    Microsoft calls this technique NLWeb, which is a kind of HTML for AI agents. The company unveiled this at its Build conference this spring, and has since leaned into that vision with an experimental Copilot Mode for its Edge browser. (Microsoft hasn’t confirmed whether it uses NLWeb for this.)

    Researcher Aonan Guan, however, has discovered a vulnerability in NLWeb: a path traversal bug that lets any remote user read sensitive files like system configurations and cloud credentials via a malformed URL.

    In a Medium post, Guan showed how he was able to download a list of the system passwords along with Google Gemini and OpenAI keys. This would let an attacker run additional server-dependent AI applications “for free,” without being charged by OpenAI.

    According to Guan, Microsoft’s Security Response Center pushed a patch to the GitHub repository in June, confirming the problem was fixed. Microsoft hasn’t issued an official patch report. Users, however, don’t need to take any actions.

    It’s fair to say that AI development has proceeded at breakneck speed. But, as Guan points out, the line between chatting with an AI and issuing it commands can blur.

    “The very nature of NLWeb is to interpret natural language,” Guan said. “This blurs the line between user input and system commands. Future attack vectors could involve crafting sentences that, when parsed by an agent, translate into malicious file paths or actions.”

    We’ve already seen ChatGPT interactions leak out into Google’s search results. (ChatGPT has now reportedly turned off the flag that makes ChatGPT chats discoverable.) As Guan (and The Verge, which reported the story) note, leaks of such magnitude in an AI agent can be catastrophic for all involved.

    agentic Finds HTML keys leak Microsofts passwords Researcher
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
    Previous ArticleGoogle search boss says AI isn’t killing search clicks
    Next Article Redmi 15C 5G is still on the way, new certification reveals its charging power
    Michael Comaous
    • Website

    Related Posts

    2 Mins Read

    Leak suggests new Philips Hue lights will have direct Matter support

    4 Mins Read

    Why did Laura Loomer leak that deposition?

    4 Mins Read

    These CFOs are devoting 25% of their AI budgets to agentic AI

    8 Mins Read

    I answered the million-dollar question about buying laptops – here’s the ultimate guide

    7 Mins Read

    “Speed is everything” – how Arm and Aston Martin’s new wind tunnel venture looks to bring in a new era of success

    4 Mins Read

    Tablo over-the-air DVRs still struggling to record following server outage

    Top Posts

    8BitDo Pro 3 review: better specs, more customization, minor faults

    August 8, 202512 Views

    WIRED Roundup: ChatGPT Goes Full Demon Mode

    August 2, 202512 Views

    Framework Desktop Review: A Delightful Surprise

    August 7, 202511 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    8BitDo Pro 3 review: better specs, more customization, minor faults

    August 8, 202512 Views

    WIRED Roundup: ChatGPT Goes Full Demon Mode

    August 2, 202512 Views

    Framework Desktop Review: A Delightful Surprise

    August 7, 202511 Views
    Our Picks

    Magic: The Gathering PAX Panel Previews Seriously Sinister Supervillains

    August 30, 2025

    Meta will sell you refurbished Ray-Ban smart glasses for $76 off – how to find them

    August 30, 2025

    Garmin Fenix 8 Pro rumors swirl, and new leaks point to 4 new subscription tiers – mere months after the Connect+ debacle

    August 30, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest Threads
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2025 geekblog. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.