7 mar. 2023

Oh, the Bing Chat attack didn’t rely on injecting prompts into the search results, but apparently used the bot’s optional ability to look at your currently open tab(s?). I’ve looked around in Edge and can’t figure out how you enable or disable that functionality, but Microsoft has so poorly designed every aspect of this chatbot that I’m quite willing to believe that’s a thing they did, without thinking of the possible consequences.

Prompt Injections are bad, mkay?

