💻
GhostJacking attack: AI agent rewrote company DNS after reading a malicious log entry
💻 Technology

GhostJacking attack: AI agent rewrote company DNS after reading a malicious log entry

Security firm Tenet Security demonstrated a new attack class called "GhostJacking" at DEF CON 34: an attacker's prompt-injection payload, blocked by Cloudflare's firewall and stored in its logs, was later read by an AI coding agent (Claude Code on Sonnet 4.6) that mistook it for a legitimate company instruction and rewrote the firm's DNS settings. The attack succeeded in 9 out of 10 attempts under Cloudflare's recommended configuration. The recommended fix is a "propose but don't approve" model, where AI agents can suggest changes but require human sign-off before executing them.

Comments

No comments yet