Agentjacking: the attack where nothing is unauthorized
This week, researchers at Tenet Security disclosed a new attack class they're calling agentjacking. After seeing Apple's new iOS 27 agentic password features, it's the first AI agent attack in a while that made me stop and actually think about the IR side of it, and I wanted to jot some of that down. The mechanics are wicked simple. Tenet's proof-of-concept involves Sentry Data Source Name (DSN), a project-specific address your app uses to send errors and performance events to the service, which is public and write-only by design. An attacker who finds one can write their own "error events"…
· 3 min read