AI threats in the wild: The current state of prompt injections on the web

2026-06-23T13:23:41Z90bcf19135562eaf8e5947edaed7ffc2c783006e0e6b75212e22cddf89d1feed
AI adversarialAndroid 17Chrome 146DBSCDNS parserDevice Bound Session CredentialsGeminiGoogle WorkspaceIPILLM securityLummaC2PQCPixel modemRustVRPbaseband securitybrowser securitycookie theftfirmware securityindirect prompt injectioninfostealermemory safetypost-quantum cryptographyquantum-safe HTTPS','Merkle Tree Certificates','MTC','Chrome','Ivulnerability rewards program

What happened

Collection of Google Security Blog posts covering multiple platform- and ecosystem-level security advances and active threats: (1) analysis of real-world indirect prompt injection (IPI) activity and ongoing mitigation work for AI agents and Google Workspace/Gemini to reduce IPI risk; (2) rollout of Device Bound Session Credentials (DBSC) to Chrome (Windows, expanding to macOS) to proactively prevent session-cookie theft by infostealers; (3) integration of a memory-safe Rust DNS parser into Pixel modem/baseband firmware to reduce memory-safety vulnerabilities; (4) Google VRP 2025 program recap;

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
google_security_blog
Record identifier
90bcf19135562eaf8e5947edaed7ffc2c783006e0e6b75212e22cddf89d1feed
Enrichment time
2026-06-23T13:23:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.