xAI's Grok chatbot is vulnerable to a Cryptographic Context Injection attack that allows malicious web pages to steal user data. The attack was reported to xAI in June 2026 but remains unpatched as of August 2026.
xAI's Grok chatbot is vulnerable to a Cryptographic Context Injection attack that allows malicious web pages to steal user data. The attack was reported to xAI in June 2026 but remains unpatched as of August 2026.