New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data
Summary
Researchers at Adversa AI discovered a cryptographic context injection attack (a technique that hides malicious instructions in encrypted code) that could trick xAI's Grok chatbot into sending sensitive user data like names, locations, and chat history to an attacker's server when the user asks it to summarize a web page. The attack works by embedding encrypted instructions in a webpage that Grok decrypts and executes, bypassing content filters that can't read encrypted text, then uses Grok's built-in tools to send the stolen data without asking the user first.
Classification
Affected Vendors
Related Issues
Original source: https://thehackernews.com/2026/08/new-cryptographic-context-injection.html
First tracked: August 20, 2026 at 02:01 PM
Classified by LLM (prompt v3) · confidence: 92%