Skip to content
The Nexus
SECURITYJul 23 · 13:02 UTCTHE REGISTER

One ChatGPT link could smuggle a rogue AI agent into your company

Researchers at Zenity Labs discovered a security flaw in OpenAI's ChatGPT workspace agents, dubbed 'AgentForger,' which allows attackers to create malicious AI agents by tricking victims into clicking a disguised link. These agents can access connected corporate services like Outlook, Teams, and Google Drive to steal data or send phishing messages, leveraging the victim's permissions without requiring password theft.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this
Related Signal

Adjacent reporting