Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Ghostjacking Threatens AI Security Through Trusted Tools

Ghostjacking Threatens AI Security Through Trusted Tools

Posted on August 10, 2026 By CWS

In a groundbreaking revelation at DEF CON, Tenet security researchers demonstrated a new AI hijacking technique called Ghostjacking. This attack manipulates AI agents using trusted tools to inject malicious commands, posing a significant threat to cybersecurity.

Exploring the Ghostjacking Method

The Israeli startup Tenet, which came into the spotlight in June, showcased how attackers can corrupt AI agents by embedding harmful instructions within logs or alerts. This method, known as Ghostjacking, expands on their earlier concept of ‘Agentjacking,’ where data poisoning alters AI behavior.

Ghostjacking exploits vulnerabilities in widely trusted platforms such as Cloudflare, Datadog, and Sentry. Cloudflare manages 20% of internet traffic, while Datadog and Sentry are integral to many Fortune 500 companies and millions of developers, respectively.

Impact on Cloudflare, Datadog, and Sentry

The attack strategy involves leveraging Cloudflare’s security settings, which inadvertently allow malicious requests to be logged verbatim. When an AI analyzes these logs, it may execute the embedded malicious instructions, redirecting DNS settings to attacker-controlled domains.

Datadog’s vulnerability stems from exposed API keys, which attackers can use to send fake alerts. These alerts trick AI agents into executing unauthorized commands, compromising sensitive data and cloud credentials.

Sentry’s AI agent, known as Seer, can be deceived into adopting bogus fixes, which are then executed by trusted systems. This chain reaction underscores the potential for widespread disruption.

Broader Implications and Preventative Measures

Tenet’s research highlights a broader security concern: AI agents reading and acting on external data without proper safeguards. This pattern is not limited to Cloudflare, Datadog, and Sentry, but is also seen in other systems like Splunk and Kubernetes.

In a controlled test, Tenet demonstrated how AI agents can be manipulated into executing self-targeted attacks, revealing critical insights for strengthening AI security. They also identified and reported a vulnerability in Claude Desktop, which was promptly addressed by Anthropic.

As AI technology becomes more integrated into organizational infrastructures, understanding and mitigating risks like Ghostjacking is crucial. Enhanced security protocols and vigilant monitoring are essential to protect against such sophisticated cyber threats.

Security Week News Tags:Agentjacking, AI attack, AI security, Anthropic, Claude Code, Cloudflare, Cybersecurity, Datadog, Ghostjacking, Sentry

Post navigation

Previous Post: Passkey Flaws Exposed: New Attacks on Authentication Methods
Next Post: Ransomware Tactics: Disabling Security Before Encryption

Related Posts

AI Cyberattack Breaches Hugging Face Security AI Cyberattack Breaches Hugging Face Security Security Week News
OpenAI Launches GPT-5.6-Cyber for Advanced Cybersecurity OpenAI Launches GPT-5.6-Cyber for Advanced Cybersecurity Security Week News
Fraud: A Growth Industry Powered by Gen-AI Fraud: A Growth Industry Powered by Gen-AI Security Week News
Data Breach at Madera Hospital Affects 150,000 People Data Breach at Madera Hospital Affects 150,000 People Security Week News
900 FreePBX Systems Compromised by Web Shell Attacks 900 FreePBX Systems Compromised by Web Shell Attacks Security Week News
Critical Linux Kernel Vulnerabilities Demand Immediate Attention Critical Linux Kernel Vulnerabilities Demand Immediate Attention Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Innovative Method Challenges RSA Security Without Factoring
  • AI-Induced Hacks Challenge Legal Frameworks
  • SCOUTz Launches Beta for MSPs with New Intelligence Platform
  • AI Search Poisoning and Security Risks: Key Cyber News
  • Hackers Target Critical VPN Flaws in Check Point Systems

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Innovative Method Challenges RSA Security Without Factoring
  • AI-Induced Hacks Challenge Legal Frameworks
  • SCOUTz Launches Beta for MSPs with New Intelligence Platform
  • AI Search Poisoning and Security Risks: Key Cyber News
  • Hackers Target Critical VPN Flaws in Check Point Systems

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark