Back Feeds.4Sysops Agentjacking attacks exploit AI coding agents via malicious error reports
Researchers have identified a new attack class called agentjacking that tricks AI coding assistants into executing malicious code on developer workstations. The technique exploits an architectural flaw in how AI agents ingest data from Sentry, a popular platform used for tracking application errors and performance. By injecting crafted markdown into Sentry error events, attackers can deceive agents like Claude Code and Cursor into treating malicious instructions as legitimate diagnostic steps. Source
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
