Ghostjacking attack uses poisoned logs to turn AI agents bad

Demonstrated at DEF CON, Tenet's 'Ghostjacking' attack plants attacker instructions in logs to hijack AI agents, succeeding 9 out of 10 times against Claude Code. It abused Cloudflare, Datadog, and Sentry — hijacking domains, stealing cloud credentials, and turning one AI into an insider that vouched for the attacker.
1 source
Daily brief
Get tomorrow's AI brief in your inbox
More stories today
- Tool provides persistent memory for AI agents across sessions
- Anthropic documentary explores Iceland's national AI education pilot
- Kavak automates 95% of transactions using AI agents
- Agentic memory replaces token-maxxing in AI development
- Google Ads and Analytics get AI Overviews and agentic insights