New 'Cryptographic Context Injection' Attack Could Exfiltrate Grok User Data via Malicious Web Pages
Adversa AI has disclosed an attack technique dubbed 'Cryptographic Context Injection' that could cause xAI's Grok chatbot to send a user's name, approximate location, subscription tier, and ongoing conversation prompts to an attacker-controlled server. The attack is triggered when a user asks Grok to summarize a malicious web page. The technique is reported but not yet independently verified.












