Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I'm sorry, I think I might have used "privilege escalation" in a confusing way here. To clarify, these services sometimes need access to the surrounding environment to enhance the AI's context and prevent misuse. For example, according to the Chrome Web Store, Grammarly may need to monitor network, mouse, and keystrokes (from non-sensitive input fields), as well as location data. Meanwhile, Copilot may require access to adjacent code or open tabs, which I believe is now configurable. As I'm not a security researcher or user of these products, I may get these details wrong.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: