1 article on this topic.
Google's Threat Intelligence teams scanned a large public web crawl for indirect prompt injection and found real attempts, mostly crude, with malicious ones rising. For anyone deploying browsing agents, the threat is now observable rather than theoretical.