PulseAugur
EN
LIVE 19:48:52

AI Coding Agents Hijacked by "AgentJacking" Attack via Fake Sentry Errors

Researchers have discovered a new attack vector called "AgentJacking" that exploits AI coding agents like Claude Code, Cursor, and Codex CLI. The attack uses a public Sentry DSN key and a fake error report to trick the agents into executing malicious code on a developer's machine. This vulnerability, which has an 85% success rate, highlights a significant security gap in the Model Context Protocol (MCP) ecosystem. In response, new security measures like Agent Beacon and Cloudflare Temporary Accounts are being developed to address the compromised agent supply chain. AI

IMPACT Exposes a critical vulnerability in AI agent supply chains, necessitating new security measures for developers and platforms.

RANK_REASON Disclosure of a new attack vector targeting AI coding agents and their underlying protocols.

Read on dev.to — MCP tag →

AI-generated summary · Google Gemini · from 2 sources. How we write summaries →

AI Coding Agents Hijacked by "AgentJacking" Attack via Fake Sentry Errors

How we ranked this

Signal score
0 / 100
Composite score across the factors below. Higher = stronger signal that this story matters right now.
Newsworthiness bucket
Tool
Disclosure of a new attack vector targeting AI coding agents and their underlying protocols.
Source corroboration
2 independent sources
Multiple independent publishers reporting the same story raises confidence that it's real and newsworthy.
Topics
product, safety
Editorial topic classification. Feeds into how the story surfaces on /topic/<slug> hub pages and into the per-entity coverage mix.
AI-industry relevance
High
Clearly on-topic for AI-industry coverage.
Story freshness
96 days old
Aged out of breaking-news scoring windows; ranking reflects the durable signal from the full source set.

Full methodology in our editorial standards.

COVERAGE [2]

  1. dev.to — MCP tag TIER_1 Français(FR) · DrMBL ·

    AgentJacking: How a Fake Sentry Error Can Hijack Claude Code, Cursor, and Codex — and What It Means for the MCP Ecosystem

    <h2> Introduction : La surface d'attaque que personne n'avait vue venir </h2> <p>Les agents de codage IA ont été adoptés à une vitesse extraordinaire. Claude Code a franchi le cap du million d'utilisateurs actifs quotidiens en quelques semaines seulement après son lancement. Curs…

  2. dev.to — MCP tag TIER_1 English(EN) · DrMBL ·

    AgentJacking: How a Fake Sentry Error Can Hijack Claude Code, Cursor, and Codex — And What It Means for the MCP Ecosystem

    <p><strong>TL;DR:</strong> On June 12, 2026, Tenet Security researchers published a new attack class called "AgentJacking" — a technique that achieves an <strong>85% success rate</strong> hijacking AI coding agents including Claude Code, Cursor, and Codex CLI, using nothing but a…