/top/
/new/
/best/
/ask/
/show/
/job/
^
slacker news
login
about
←back to thread
Hidden risk in Notion 3.0 AI agents: Web search tool abuse for data exfiltration
(www.codeintegrity.ai)
156 points
abirag
| 4 comments |
19 Sep 25 21:49 UTC
|
HN request time: 0.693s
|
source
1.
lacoolj
◴[
19 Sep 25 23:20 UTC
]
No.
45307967
[source]
▶
>>45307095 (OP)
#
This attack was demonstrated a couple years ago, it's not really a new thing.
https://simonwillison.net/2023/Oct/14/multi-modal-prompt-inj...
replies(2):
>>45309716
#
>>45311544
#
ID:
GO
2.
judge2020
◴[
20 Sep 25 02:36 UTC
]
No.
45309716
[source]
▶
>>45307967 (TP)
#
The problem is that this was a vulnerability in Notion without any mitigations or safeguards against it.
3.
jhealy
◴[
20 Sep 25 08:32 UTC
]
No.
45311544
[source]
▶
>>45307967 (TP)
#
Not really a new vulnerability, and yet Notion just shipped it this week. All caution thrown to the wind in the name of an announce-able AI feature
replies(1):
>>45311975
#
4.
zwnow
◴[
20 Sep 25 10:08 UTC
]
No.
45311975
[source]
▶
>>45311544
#
And people will still continue to glaze AI over and over again.
↑