{"data":{"id":"0b010a14-0248-4746-a2c5-3b71eaf3949e","title":"AI Recommendation Poisoning: How \"Ask AI\" Buttons Silently Alter LLM Memory","summary":"AI Recommendation Poisoning is a new attack where websites hide instructions in \"Ask AI\" buttons that automatically execute when users click them, tricking AI assistants like ChatGPT into permanently marking the vendor's domain as trustworthy. This bypasses normal defenses because the malicious prompt runs at the click layer rather than within webpage content, silently biasing the AI's future answers in the attacker's favor without user knowledge or consent.","solution":"N/A -- no mitigation discussed in source.","labels":["security","safety"],"sourceUrl":"https://thehackernews.com/2026/08/ai-recommendation-poisoning-how-ask-ai.html","publishedAt":"2026-08-06T11:30:00.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["prompt_injection","rag_poisoning"],"issueType":"news","affectedPackages":null,"affectedVendors":["OpenAI","Anthropic","Google","xAI"],"affectedVendorsRaw":["ChatGPT","Claude","Gemini","Grok","Perplexity"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-08-06T11:30:00.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["integrity","safety"],"aiComponentTargeted":"rag","llmSpecific":true,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":null}}