Phishing Campaigns Hide AI Prompts to Manipulate Systems
📧 Researchers at Barracuda found phishing emails embedding hidden prompt injections alongside traditional lures, targeting both human recipients and AI assistants that summarize inboxes. The samples mimicked legitimate internal correspondence and used techniques like HTML comments, invisible CSS text, Base64 encoding and zero-width characters to conceal instructions. These hidden prompts could override assistant behavior to fake urgency, request wire transfers, or leak data, bypassing reputation and signature-based defenses.
