GhostJacking: New Attack Exploits AI Agents to Bypass Security Controls

GhostJacking: New Attack Exploits AI Agents to Bypass Security Controls

First seen 11 Aug 2026, 12:08 UTC Infosecurity-MagazineGbhackersScworld 75% similarity 68.0

Article Content

Browse articles
ThreatCluster

Researchers from Tenet Security revealed a new attack method named 'GhostJacking' at DEF CON 34, which exploits AI agents' trusted access to manipulate infrastructure. This attack can reroute web and email traffic, effectively bypassing firewall controls without raising alarms. The technique has a 90% success rate against AI agents like Claude Code, affecting at least half of Fortune 500 companies. Attackers can leverage poisoned error logs to execute unauthorized commands and create backdoors in the AI agents' configurations. The attack targets widely used platforms, including Cloudflare, DataDog, and Sentry, with thousands of exposed tokens and DSNs found. Tenet's findings indicate that GhostJacking represents an evolution of previous attack methods, allowing attackers to use their own security systems against them. The implications are significant, as organizations increasingly rely on AI agents with extensive access to their infrastructure.

Key Points: • GhostJacking exploits AI agents' trusted access to bypass firewalls and reroute traffic. • The attack has a 90% success rate against AI agents like Claude Code, affecting many Fortune 500 companies. • Attackers can manipulate error logs to execute unauthorized commands and create persistent backdoors.

ThreatCluster AI How this analysis works

Timeline

2026-08-09
GhostJacking technique presented at DEF CON 34
Tenet Security demonstrated how GhostJacking can exploit AI agents to bypass security controls and reroute traffic.
Infosecurity-Magazine
2026-08-10
Research findings published on GhostJacking
Tenet Security reported that half of Fortune 500 companies are vulnerable to GhostJacking attacks, which exploit AI agents.
Infosecurity-Magazine
2026-08-11
GhostJacking attack details released
Scworld reported on the specifics of GhostJacking, including methods and affected platforms like Cloudflare and DataDog.
Scworld

Community

Browse all →