
thehackernews.com
AI Recommendation Poisoning: How 'Ask AI' Buttons Silently Alter LLM Memory
A new class of prompt injection is spreading across commercial websites, abusing a standard feature built into almost every major AI assistant: pre-filled deep links. These links can permanently manipulate the model's memory without the user's knowledge or consent.