💻
Single code edit could hijack Google Dialogflow CX AI agents, researchers found
💻 Technology

Single code edit could hijack Google Dialogflow CX AI agents, researchers found

Security firm Varonis discovered CVE-level vulnerabilities in Google Cloud's Dialogflow CX conversational AI platform. Malicious Code Blocks in Playbooks could hijack AI agents, steal chat logs and exfiltrate credentials; a shared Cloud Run environment with excessive privileges meant one compromised agent could control all others in a project. Google patched the flaws between April and June 2026. Researchers advise reviewing audit logs and manually inspecting Code Blocks for unauthorised code.

Comments

No comments yet