macOS Terminal Prompt Injection Leak Chain
wunderwuzzi23 · x · 2026-07-17
An attack chain targeting macOS Terminal: combining indirect prompt injection with DNS-based data exfiltration to leak information that should otherwise be isolated.
The author noted that Apple has patched the behavior triggering this attack chain and thanked several researchers for laying the groundwork for the PoC.
More from Safety
- Substack starts labeling AI-generated or AI-influenced writing — StewartalsopIII · 2026-07-22
- ControlAI CEO says an international ban on superintelligence is needed to avert extinction risk — zetalyrae · 2026-07-22
- Coding agents are heading toward an AI-writes, AI-reviews, human-approves workflow — aftahi_ai · 2026-07-22
- AI security course launches with a small cohort to train the next generation of hackers — wunderwuzzi23 · 2026-07-22
- OpenAI says long-horizon models need safety and alignment checks across full action sequences — rhiever · 2026-07-22
- Stanford HAI’s PNAS feature maps the legal questions around generative AI — StanfordHAI · 2026-07-22