Key facts
- Rovo AI assistant can be manipulated to exfiltrate data through hidden instructions in PDF files.
- The vulnerability is a 'zero-click' attack, requiring no user approval.
- The exploit remains effective even if Rovo's web search functionality is disabled.
