Attackers Use Hidden HTML to Manipulate AI Email Summary Tools
Security researchers found that attackers can embed HTML invisible to human readers—such as white-on-white text or zero-size fonts—inside emails. When an AI-powered summarizer processes the message, it reads this hidden text as legitimate content and can produce a summary containing false or malicious instructions for the recipient.