Agentjacking Turns MCP Tool Output Into an Execution Path
Tenet's Agentjacking research shows how fake Sentry errors can hijack coding agents through MCP tool output. The defense starts with treating tool data as untrusted.
4 articles with this tag.
Tenet's Agentjacking research shows how fake Sentry errors can hijack coding agents through MCP tool output. The defense starts with treating tool data as untrusted.
Varonis and Imperva showed OpenClaw agents leaking data and running code from ordinary-looking inputs. The defense starts with identity-bound tool permissions.
Snyk scanned 3,984 AI agent skills: 36% had security flaws, 534 critical issues, 76 active malware. What this means for developers installing skills.
MCP tool descriptions are visible to your AI agent but hidden from you. Attackers embed instructions that hijack agent behavior and steal credentials.