
Microsoft's Defender Security Research Team disclosed AutoJack, a vulnerability chain in AutoGen Studio that lets a malicious website achieve remote code execution on a device running an AI agent. The chain exploits localhost trust, skipped login checks, and arbitrary code execution. The issue existed only in early GitHub builds and was fixed before release.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
AutoJack Attack Hijacks AI Agents for Code Execution