Comet Browser Flaw Lets Hidden API Run Commands on Usersβ Devices
20 November 2025 at 07:30
SquareX warns Perplexity's Comet AI browser contains a hidden MCP API that bypasses security, allowing attackers to install malware and seize full device control.