Market intelligence

Comet AI Browser: From Viral Sensation to Catastrophic Crash in March 2026

Perplexity AI's Comet browser experienced a meteoric rise and catastrophic fall in March 2026, primarily due to critical security flaws and severe technical instability.

3 min readLinkedIn companion

The Lead: Viral Launch and Sudden Collapse

Perplexity AI's much-hyped Comet browser, designed as an autonomous AI assistant, experienced a dramatic and rapid descent on the iOS App Store in March 2026. After a launch week that saw it soar to a peak of #3 Overall, the app quickly plummeted to "Not Ranked" status, marking one of the swiftest high-profile collapses in recent App Store history. The primary culprits behind this catastrophic failure appear to be a combination of severe technical instability under load and, more critically, the public exposure of inherent security vulnerabilities within its 'agentic AI' architecture.

Market Impact: From #3 Overall to Technical Flop

The initial launch of Comet was nothing short of a viral breakthrough. Following its global iOS release on March 18, 2026, the app saw an unprecedented surge, recording over 430,000 global downloads in its first week.[3] This massive spike, which propelled it to a dominant position on the App Store charts, was largely attributed to Perplexity AI's strategic decision to offer the previously premium, enterprise-focused tool as a 100% free-to-use mobile app.[4] While the move generated significant top-of-funnel success, evidenced by the emergence of several thousand dollars in weekly revenue from newly introduced Pro/Max subscription tiers, the app's infrastructure was ill-prepared for the[7] influx of users.

Forensic analysis of the app's version history reveals a frantic and chaotic patching cycle immediately post-launch. In just one week, Perplexity pushed five rapid-fire updates (v26.11.1 through v26.12.1) to triage what was clearly a broken application. Updates cited fixes for "bad cras[10]hes" and "broken sign-in flows," indicating a fundamentally unstable platform that buckled under the weight of its new iOS user base. This technical chaos severely crippled user retention and directly contributed to a sharp decline to just tens of thousands of downloads the following week.

Expert Verdict: The Smoking Gun of 'Agentic AI' Security Flaws

While app stability issues undoubtedly played a role, the definitive reason for Comet's rapid fall from grace was the widespread exposure of critical, zero-click security vulnerabilities inherent to its 'agentic AI' design. By enabling the browser to act autonomously on behalf of the user, Perplexity inadvertently created unprecedented attack surfaces.

The cybersecurity community swiftly publicized several catastrophic exploits.
[17] Security firm Zenity Labs disclosed the "PerplexedBrowser" vulnerability, where a benign calendar invite could trigger a zero-click attack, forcing Comet's AI agent to bypass security protocols, read local device files, and exfiltrate sensitive data like 1Password vaults.[18] Furthermore, researchers from LayerX and Guardio demonstrated "CometJacking," showcasing how malicious URLs could hijack the AI to autonomously siphon user Gmail data or fall for sophisticated phishing scams in mere minutes.[6] Compounding the negative press, a federal court issued a ruling on March 11, 2026, ordering Perplexity to halt Comet's AI from making automated purchases on Amazon, citing computer fraud allegations.[30] This confluence of intense media scrutiny over data exfiltration, severe app crashes, and the specter of Apple's strict App Store privacy enforcement ultimately decimated user trust and led to its algorithmic suppression.[15]

Citations

  1. [1]

    ### VERDICT Comet achieved a massive top-of-funnel victory by offering a previously $200/month AI tool for free

  2. [2]

    **The Catalyst:** This viral breakthrough, which propelled the app to #3 Overall on the App Store, was engineered by a drastic shift in Perplexity AI's monetization strategy

  3. [3]

    Market Telemetry & The Massive Download Spike (Week of March 16, 2026) **Finding:** The unprecedented surge in telemetry data—jumping from 11,015 global downloads (March 9) to **432,330 global downloads** (March 16)—aligns precisely with the app's official global iOS release on **Wednesday, March 18, 2026**

  4. [4]

    Originally launched on desktop as a premium, enterprise-focused tool costing $200 per month, the iOS version debuted as a **100% free-to-use** mobile app

  5. [5]

    The sudden appearance of weekly revenue ($5,474)

  6. [6]

    * **"CometJacking" & Phishing Traps:** Research from LayerX and Guardio went viral, demonstrating how malicious URLs could use base64-encoded instructions to hijack the AI into autonomously siphoning a user's Gmail data

  7. [7]

    **The Evidence:** Forensic review of the app's version history reveals a chaotic, frantic deployment schedule immediately following its viral launch

  8. [8]

    11.1):* Launch day release

  9. [9]

    11.2):* Emergency patch specifically citing "Fixed a few bad crashes"

  10. [10]

    11.3):* Deployed to fix broken sign-in flows

  11. [11]

    12.1):* Back-to-back emergency patches labeled "Bug fixes and improvements"

  12. [12]

    12.1):* Back-to-back emergency patches labeled "Bug fixes and improvements"

  13. [13]

    Instead, it was the culmination of a severe **technical "flop"** characterized by severe app instability and emergency security patching

  14. [14]

    Instead, it was the culmination of a severe **technical "flop"** characterized by severe app instability and emergency security patching

  15. [15]

    The combination of intense media scrutiny over data exfiltration, severe app crashes, and Apple's notoriously strict App Store privacy/security enforcement forced Perplexity into a frantic patching loop

  16. [16]

    The combination of intense media scrutiny over data exfiltration, severe app crashes, and Apple's notoriously strict App Store privacy/security enforcement forced Perplexity into a frantic patching loop

  17. [17]

    ** By turning a passive web browser into an autonomous "agent" that executes tasks on behalf of the user, Perplexity introduced unprecedented attack surfaces

  18. [18]

    During the week of the iPhone launch, the cybersecurity community and tech media heavily publicized several catastrophic exploits: * **Zero-Click Calendar Exploit (PerplexedBrowser):** Security firm Zenity Labs disclosed a vulnerability where a seemingly benign Google Calendar invite could execute a zero-click attack on the browser

  19. [19]

    When Comet's AI agent accepted the meeting, hidden prompt injections forced the browser to bypass cross-origin restrictions, read local device files, and exfiltrate active session cookies (including 1Password vaults) to attacker-controlled servers

  20. [20]

    is attributed to power users purchasing the newly introduced $20/month Pro/Max subscription tiers via in-app purchases

  21. [21]

    ** By turning a passive web browser into an autonomous "agent" that executes tasks on behalf of the user, Perplexity introduced unprecedented attack surfaces

  22. [22]

    However, the "agentic" capabilities that made the browser innovative also made it a massive security liability

  23. [23]

    The combination of intense media scrutiny over data exfiltration, severe app crashes, and Apple's notoriously strict App Store privacy/security enforcement forced Perplexity into a frantic patching loop

  24. [24]

    Guardio also proved Comet's AI could be tricked into falling for phishing scams in under four minutes

  25. [25]

    During the week of the iPhone launch, the cybersecurity community and tech media heavily publicized several catastrophic exploits: * **Zero-Click Calendar Exploit (PerplexedBrowser):** Security firm Zenity Labs disclosed a vulnerability where a seemingly benign Google Calendar invite could execute a zero-click attack on the browser

  26. [26]

    When Comet's AI agent accepted the meeting, hidden prompt injections forced the browser to bypass cross-origin restrictions, read local device files, and exfiltrate active session cookies (including 1Password vaults) to attacker-controlled servers

  27. [27]

    Market Telemetry & The Massive Download Spike (Week of March 16, 2026) **Finding:** The unprecedented surge in telemetry data—jumping from 11,015 global downloads (March 9) to **432,330 global downloads** (March 16)—aligns precisely with the app's official global iOS release on **Wednesday, March 18, 2026**

  28. [28]

    * **"CometJacking" & Phishing Traps:** Research from LayerX and Guardio went viral, demonstrating how malicious URLs could use base64-encoded instructions to hijack the AI into autonomously siphoning a user's Gmail data

  29. [29]

    However, the "agentic" capabilities that made the browser innovative also made it a massive security liability

  30. [30]

    * **Legal Friction:** Compounding the negative press, a federal court issued a ruling on March 11, 2026, ordering Perplexity to halt Comet's AI from making automated purchases on Amazon due to computer fraud allegations

Sources

12 references

Companion post

On LinkedIn

Measured May 16, 2026

The post

Reach

147.6k

Impressions

214

Reactions

44

Comments

4

Reposts

Hashtags

  • #CTO
  • #CyberSecurity
  • #MobileGrowth
  • #AI
  • #AppDevelopment
  • #MWMai
Maxime Doussin, CTO at MWM

Maxime Doussin

CTO

Maxime Doussin is the CTO of MWM, where he leads engineering, data infrastructure, and the mobile-app market-intelligence platform. He writes MWM's weekly app trend analysis, drawing on proprietary ranking data covering millions of iOS and Android apps across 150+ countries.

This article is an independent editorial analysis. App names, trademarks, and brands mentioned are the property of their respective owners. Market data and rankings referenced are based on MWM's proprietary estimates.

Believe this article infringes your intellectual property? File a dispute