New AI-powered browsers from OpenAI, Perplexity, and others promise to automate Web tasks but are vulnerable to prompt injection attacks that could manipulate the browser or steal private information ...