<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Ide-Security on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/ide-security/</link><description>Recent content in Ide-Security on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Thu, 12 Jun 2025 12:04:33 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/ide-security/index.xml" rel="self" type="application/rss+xml"/><item><title>Agentjacking: AI Coding Agents Tricked Into Running Maliciou</title><link>https://zxcloudsecurity.co.uk/posts/agentjacking-ai-coding-agent-malicious-code-execution-sentry/</link><pubDate>Fri, 12 Jun 2026 12:04:33 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/agentjacking-ai-coding-agent-malicious-code-execution-sentry/</guid><description>Agentjacking exploits AI coding agents via fake Sentry error reports, tricking them into executing arbitrary code on developer machines.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://thehackernews.com/2026/06/agentjacking-attack-tricks-ai-coding.html">The Hacker News</a></p>
<hr>
<p>A newly identified attack technique called &lsquo;Agentjacking&rsquo; manipulates AI coding agents — such as those integrated into developer IDEs — into executing malicious code on developer machines. The attack is triggered by injecting a crafted fake error report via Sentry, a widely used error-tracking platform, which the AI agent then acts upon without sufficient validation. This is significant because AI coding agents operate with broad system permissions and are increasingly prevalent in software development workflows.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Enforce least-privilege execution environments for AI coding agents and treat their runtime as an untrusted surface — sandbox agent execution, audit the tools and integrations agents are permitted to invoke, and implement controls to validate the provenance of external data sources such as error-tracking platforms before agents act on them.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://thehackernews.com/2026/06/agentjacking-attack-tricks-ai-coding.html">Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code</a></p>
]]></content:encoded></item></channel></rss>