Researchers found a technique that tricks AI browsers into treating credential theft as a game objective, bypassing safety controls.