Close Menu
GeekBlog

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    OpenAI’s Astra Just Crossed a Line No AI Model Has Crossed Before. It Found Two Zero Days on Its Own.

    September 3, 2026

    The Pentagon Had to Confirm the Bombing Never Happened. The Video Came From the President’s Account.

    September 3, 2026

    Sonos Built Headphones You Can Actually Repair, and They Cost $100 Less Than AirPods Max

    September 3, 2026
    Facebook X (Twitter) Instagram Threads
    GeekBlog
    • Home
    • Mobile
    • Tech News
    • Blog
    • Gaming
    • Smartwatch
    • How-To Guides
    • AI & Software
    Facebook
    GeekBlog
    Home»Uncategorized»Researcher finds Microsoft’s agentic HTML can leak passwords, AI keys
    Uncategorized

    Researcher finds Microsoft’s agentic HTML can leak passwords, AI keys

    Michael ComaousBy Michael ComaousAugust 7, 20252 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    AI PC art
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    With new AI systems comes new AI vulnerabilities, and a big one was just discovered. It’s a flaw in Microsoft’s method of allowing agents to interact with websites on your behalf.

    Microsoft calls this technique NLWeb, which is a kind of HTML for AI agents. The company unveiled this at its Build conference this spring, and has since leaned into that vision with an experimental Copilot Mode for its Edge browser. (Microsoft hasn’t confirmed whether it uses NLWeb for this.)

    Researcher Aonan Guan, however, has discovered a vulnerability in NLWeb: a path traversal bug that lets any remote user read sensitive files like system configurations and cloud credentials via a malformed URL.

    In a Medium post, Guan showed how he was able to download a list of the system passwords along with Google Gemini and OpenAI keys. This would let an attacker run additional server-dependent AI applications “for free,” without being charged by OpenAI.

    According to Guan, Microsoft’s Security Response Center pushed a patch to the GitHub repository in June, confirming the problem was fixed. Microsoft hasn’t issued an official patch report. Users, however, don’t need to take any actions.

    It’s fair to say that AI development has proceeded at breakneck speed. But, as Guan points out, the line between chatting with an AI and issuing it commands can blur.

    “The very nature of NLWeb is to interpret natural language,” Guan said. “This blurs the line between user input and system commands. Future attack vectors could involve crafting sentences that, when parsed by an agent, translate into malicious file paths or actions.”

    We’ve already seen ChatGPT interactions leak out into Google’s search results. (ChatGPT has now reportedly turned off the flag that makes ChatGPT chats discoverable.) As Guan (and The Verge, which reported the story) note, leaks of such magnitude in an AI agent can be catastrophic for all involved.

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
    Previous ArticleGoogle search boss says AI isn’t killing search clicks
    Next Article Redmi 15C 5G is still on the way, new certification reveals its charging power
    Michael Comaous
    • Website

    Michael Comaous is a dedicated professional with a passion for technology, innovation, and creative problem-solving. Over the years, he has built experience across multiple industries, combining strategic thinking with hands-on expertise to deliver meaningful results. Michael is known for his curiosity, attention to detail, and ability to explain complex topics in a clear and approachable way. Whether he’s working on new projects, writing, or collaborating with others, he brings energy and a forward-thinking mindset to everything he does.

    Related Posts

    6 Mins Read

    MakuluLinux’s New AI-OS Wants to Run Your Whole Desktop, Not Just Answer Questions

    7 Mins Read

    The Light Flip Wants to Sell You a Phone That Does Less

    8 Mins Read

    Made by Google 2026: Everything to Expect From the Pixel 11 Launch on August 12

    6 Mins Read

    The iPhone 18 Pro Just Leaked Through a Breach at One of Apple’s Own Suppliers

    6 Mins Read

    Anthropic Is Reportedly Building Its Own AI Chip, and Samsung Wants In

    6 Mins Read

    Samsung Killed Its $2,899 TriFold Phone After Just 3 Months. Here Is Why.

    Top Posts

    How to Change HEIC to JPG on iPhone, Mac, Android and Windows (No Software Needed)

    September 3, 20263 Views

    How to Spot AI Generated Images in 2026 (The Old Tricks Stopped Working)

    September 3, 20262 Views

    Check Which Apps Can Read Your Gmail, and Cut Them Off in 60 Seconds

    September 3, 20262 Views
    Stay In Touch
    • Facebook

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    A Toddler Needed a $20,000 Wheelchair. A High School Robotics Team Built Him One Instead.

    August 5, 20264 Views

    How to Change HEIC to JPG on iPhone, Mac, Android and Windows (No Software Needed)

    September 3, 20263 Views

    The EU AI Act Just Became Enforceable, and Most AI Companies Are Not Ready

    August 6, 20263 Views
    Our Picks

    OpenAI’s Astra Just Crossed a Line No AI Model Has Crossed Before. It Found Two Zero Days on Its Own.

    September 3, 2026

    The Pentagon Had to Confirm the Bombing Never Happened. The Video Came From the President’s Account.

    September 3, 2026

    Sonos Built Headphones You Can Actually Repair, and They Cost $100 Less Than AirPods Max

    September 3, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    HEICJPG.online - Convert HEIC to JPG online
    Facebook
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2026 GeekBlog

    Type above and press Enter to search. Press Esc to cancel.