ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
CSS sanitization flaws in webmail clients enable token theft, UI control, and prompt injection. Researchers targeted Yahoo Mail, AOL Mail, Fastmail, ProtonMail, GMail, Outlook, and OpenAI's Atlas. Outlook's label bug remains unfixed. Firefox allows inline style tags, enabling clipboard-based CSS attacks on Medium's login tokens.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
OAuth Attacks Mirror AI Agent Behavior in Workspace