AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory
Summary
AI Recommendation Poisoning is a new attack where websites hide instructions in "Ask AI" buttons that automatically execute when users click them, tricking AI assistants like ChatGPT into permanently marking the vendor's domain as trustworthy. This bypasses normal defenses because the malicious prompt runs at the click layer rather than within webpage content, silently biasing the AI's future answers in the attacker's favor without user knowledge or consent.
Classification
Affected Vendors
Related Issues
Original source: https://thehackernews.com/2026/08/ai-recommendation-poisoning-how-ask-ai.html
First tracked: August 6, 2026 at 02:01 PM
Classified by LLM (prompt v3) · confidence: 92%