New GhostJacking Attacks Hijack AI Agents to Bypass Firewalls and Steal Cloud Credentials
Brief
A newly disclosed “Ghostjacking” is an AI-agent attack pattern that turns trusted operational data, including blocked web requests, monitoring alerts, and error reports, into a path for taking action within an enterprise.
The research, presented by Tenet Security at DEF CON 34, argues that the risk is architectural: an agent can read attacker-controlled content and exercise legitimate access to the same environment.
In the Cloudflare scenario, an attacker sends a malicious request that a web application firewall correctly blocks. The blocked payload is then preserved in security logs.
When an analyst asks an AI assistant to investigate those events, the agent may interpret embedded attacker text as instructions rather than untrusted evidence.
