logo

Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code

ID: b8b28b0a-2865-500c-afb6-2cb2cc13f82d

STIX ID: report--b8b28b0a-2865-500c-afb6-2cb2cc13f82d

Feed Name: The Hacker News

Threat Score
78/100

Date Published: 2026-06-12

Date Updated: 2026-06-12

Author: [email protected] (The Hacker News)

...
...

Agentjacking is a vulnerability/exploit where attackers send specially crafted Sentry error events that AI coding assistants misinterpret as trusted system guidance, causing the agents to execute attacker-controlled code on developers' machines and potentially exfiltrate credentials and sensitive environment data. Tenet Security found thousands of exposed DSNs and achieved high exploitation success rates in controlled tests; Sentry has applied limited filtering but declined a full fix.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.