
Microsoft researchers detailed AutoJack, an exploit chain that lets a malicious web page hijack an AI browsing agent to execute code on the host machine. The flaw exists in AutoGen Studio pre-release builds 0.4.3.dev1 and 0.4.3.dev2, which shipped an unauthenticated MCP WebSocket route. The stable release 0.4.2.2 is not affected.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw