AutoJack: AI Agent RCE via Web Page
Security researchers have disclosed AutoJack, a novel attack vector that exploits autonomous AI agents to achieve remote code execution (RCE) on host systems through maliciously crafted web pages. When an AI agent visits a compromised website, attackers can hijack the agent’s decision-making process