conv.

All stories
Person

PromptArmor

Security researcher — in 1 story, 3 quotes on record.

What they said verbatim

“Atlassian assigned a case number and expressed thanks, but after multiple follow-ups by PromptArmor over more than two months, Atlassian has made no further communication, and Rovo remains vulnerable.”

PromptArmor report (Hacker News) · Aug 4 · Atlassian Rovo AI Vulnerable to Data Exfiltration via Prompt Injection

“Rovo's URL retrieval tool is insecure: there are no protections against opening a URL that has been dynamically created by the agent.”

PromptArmor report · Aug 4 · Atlassian Rovo AI Vulnerable to Data Exfiltration via Prompt Injection

“This attack succeeds even if an organization has disabled web search for Rovo. This is because the web search setting fails to remove the tool for opening the search results.”

PromptArmor report · Aug 4 · Atlassian Rovo AI Vulnerable to Data Exfiltration via Prompt Injection