AgentForger: New Phishing Attack Creates Autonomous AI Insiders

AgentForger: New Phishing Attack Creates Autonomous AI Insiders

First seen 23 Jul 2026, 14:24 UTC TheregisterFeeds.4SysopsMorningstarcts.businesswire.comCsoonline 89% similarity 69.8

Article Content

Browse articles
ThreatCluster

Zenity Labs has identified a critical vulnerability named AgentForger in OpenAI's ChatGPT Workspace Agents. This flaw allows attackers to create a malicious AI agent within an organization by embedding instructions in a phishing link. Once activated, the agent operates autonomously, inheriting the victim's permissions and accessing connected applications like Outlook, Slack, and Google Drive. The attack requires only one click from a logged-in user, enabling the agent to perform tasks such as data exfiltration and impersonation without further interaction. OpenAI resolved the vulnerability four days after it was disclosed, but organizations remained exposed until the fix was implemented. This incident highlights a new class of AI security risks where attackers can forge insiders rather than relying on traditional malware. The vulnerability underscores the need for enhanced security measures in AI agent deployment.

Key Points: • AgentForger allows attackers to create autonomous AI agents with victim permissions via phishing links. • The attack requires only one click from a logged-in user, enabling persistent insider threats. • OpenAI patched the vulnerability within four days of disclosure, but organizations were at risk until then.

ThreatCluster AI

Timeline

2024-09-13
CVE-2024-6587 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-23
AgentForger vulnerability disclosed
Zenity Labs revealed the AgentForger vulnerability allowing phishing-based creation of malicious AI agents.
cts.businesswire.com
2026-07-23
OpenAI vulnerability patched
OpenAI resolved the AgentForger vulnerability four days after it was disclosed, securing affected systems.
Csoonline
Recent
Ongoing risk awareness
Organizations are urged to implement security measures to prevent similar AI agent vulnerabilities in the future.
Morningstar

Community

Browse all →